Cybersecurity Engineering Manager
DomaAbout the role
If you’re good at what you do, you can work anywhere. If you’re the best at what you do, come work for Doma.
Want to infuse a $34B sector of the insurance and real estate industry with predictive analytics and a tech-forward customer experience? Join Doma and send an entirely new type of real estate model into the world.
About Us
Doma offers solutions for lenders, real estate professionals, title agents, and homeowners that make closings vastly simpler and more efficient, reducing cost and increasing customer satisfaction.
Our Values
- Customer Obsessed – We always put our customers first.
- Solution Driven – We solve problems that other people are afraid to.
- People leaders – We grow all of our people into leaders.
- One Team – We believe inclusion and teamwork produce the best results.
- Direct with Respect – We communicate with honesty and respect to our colleagues, customers, and partners.
SUMMARY:
Reporting to the Director, Data & Cloud Infrastructure will actively participate in the cybersecurity programs strategic design as well as operational execution. Additional facets of participation include control design, implementation, and documentation and working with internal teams and external stakeholders on technical projects, sometimes as the single technical point of contact for one or more cybersecurity projects.
The Cybersecurity & Compliance Manager is responsible for performing various hands-on cybersecurity activities including controls analysis and implementation at every layer of the technology architecture (application, database, host, network) and conducting technical application & architecture design reviews and gap assessments to mitigate cyber risk. Additional responsibilities may include participating in cyber event/incident response, selection/implementation of appropriate security solutions, cybersecurity audit remediation follow ups, and other risk analysis activities as needed. The Cybersecurity & Compliance Manager promotes an efficient and secure technology environment in alignment with present and future cyber risks.
This is a unique opportunity to join a dynamic and growing team with a fantastic organization. In this role you will be exposed to various cutting-edge technologies, including various cloud platforms and the latest cybersecurity technologies to ensure their protection. Are you ready for the challenge?
QUALIFICATIONS:
Education/Experience/Knowledge:
- Bachelor's degree in computer science, information technology, management information systems, or a related study or equivalent experience.
- 8-10+ years Information/Cybersecurity experience with a minimum of 6 years of cybersecurity analyst, engineer, and/or architecture experience.
- Expert-level knowledge of cybersecurity, as well as industry trends.
- Expert-level knowledge and extensive experience working with various cybersecurity aspects of cloud environments including Microsoft Azure, O365, AWS or other similar relevant environments is highly desired.
- Expert-level knowledge and experience working with Microsoft Azure-ATP, Azure Information Protection (AIP), multi-factor authentication, CloudAppSec (MCAS), Defender for Endpoints, EOP-ATP, Sentinel SIEM, is highly desired.
- Strong knowledge and experience working as a cybersecurity engineer working with, securing, and extracting value from various technology systems including AV/EDR, DLP, Email filtering, Firewalls/IPS, MDM, SIEM, Vulnerability management, and Web content filtering systems.
- Expert-level knowledge and extensive experience in developing cybersecurity documentation and standards.
- Extensive experience conducting cyber event and incident analysis and consistently identifying root cause, or leading teams to identify root causes, as part of a CSIRP.
- Having an innate process-orientation and/or extensive experience working within a mature process-oriented culture/environment and being able to translate that skillset, is highly desired.
- Strong knowledge and experience with industry-standard risk/control frameworks: AICPA SOC 1 or 2, CIS Top 20, COSO, NIST, SOX, ISO 27001 etc. is a plus.
- Familiarity with SDLC, DevOps, as well secure software development practices and maturity models is a plus.
- Experience evangelizing cybersecurity practices across multiple technical teams.
- Experience in working with geographically distributed and culturally diverse stakeholders.
Event Monitoring & Incident Response:
- Lead the response to incident investigations. Identify the findings and associated mitigation and ensure timely implementation.
- Train and educate company personnel on incident response process, including periodic simulations and tabletop exercises.
Cybersecur
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s