Information Security Manager
Cayuse HoldingsAbout the role
Overview
JOB TITLE:
Information Security Manager - Multiple Levels Available
CAYUSE COMPANY:
Cayuse Civil Services, LLC
LOCATION
Austin, TX - Hybrid (3 day remote | Mon & Fri Onsite)
SALARY:
Based on experience and position level
**This position is posted for future opportunities. Please submit your application to be considered for similar upcoming roles**
Responsibilities
The Work
The Information Security Manager is responsible for ensuring the organization’s data, systems, and networks remain secure against internal and external threats. They lead the development, implementation, and monitoring of information security policies, practices, and controls to protect the company's information assets and technology infrastructure. This position plays a critical role in identifying vulnerabilities, evaluating security risks, and responding promptly to security incidents, ensuring regulatory compliance and adherence to best practices.
This position aligns with Cayuse’s core values of Innovation, Excellence, Collaboration, Adaptability, and Integrity by fostering technical solutions that meet customer needs, promoting teamwork, and prioritizing quality in deliverables.
Key Responsibilities
- Develop, implement, and continuously improve organizational information security policies, standards, and procedures.
- Ensure alignment of security policies with organizational goals, regulatory requirements, and industry best practices (e.g., NIST, ISO 27001).
- Monitor and enforce compliance with security standards for staff and third-party vendors.
- Conduct regular audits, gap analyses, and performance assessments of security policies and controls, addressing deficiencies and making recommendations.
- Conduct periodic risk assessments for IT systems, infrastructure, and vendors to identify vulnerabilities, threats, and weaknesses.
- Work with internal teams to mitigate known vulnerabilities and prioritize remediation strategies.
- Utilize vulnerability scanning tools and methodologies to proactively safeguard systems.
- Supervise the management and monitoring of security information and event management (SIEM) systems to promptly detect and respond to security breaches.
- Direct security incident response efforts, including managing containment, analysis, and remediation actions, and leading post-incident investigations.
- Analyze root causes of security violations and design proactive measures to prevent recurrence.
- Collaborate with cybersecurity teams, IT departments, and third-party vendors in supporting a robust incident response process.
- Oversee the configuration, management, and monitoring of security systems, such as firewalls, intrusion detection/prevention systems, encryption protocols, and antivirus software.
- Safeguard sensitive data by managing access controls and permissions, ensuring compliance with data protection regulations such as GDPR, HIPAA, and CCPA.
- Implement and enforce secure protocols for data at rest, in transit, and during processing.
- Develop and deliver ongoing cybersecurity awareness and training programs to all organizational employees.
- Advocate for a security-first culture by providing guidance and resources to non-technical teams.
- Conduct phishing simulations and other exercises to assess and improve employee preparedness.
- Ensure compliance with relevant laws, regulations, and standards, such as SOC 2, PCI DSS, FISMA, or other industry-specific requirements.
- Maintain detailed documentation and prepare reports for stakeholders, auditors, and regulatory organizations.
- Other duties as assigned.
Qualifications
Qualifications – Here’s What You Need
The qualifications and skills listed below are intended to provide a general overview of the requirements for this position. However, due to the anticipated nature of the contract and the absence of a finalized task order from the client, this list should not be considered all-encompassing. Additional qualifications, certifications, skills, or experience specific to the client’s requirements may be identified and requested upon award of the task order. Candidates should demonstrate flexibility and a willingness to adapt to evolving responsibilities as outlined by the client.
- Level 1: 1-3 years of experience in the field or in a related area. Has knowledge of commonly used concepts, practices, and procedures within a particular field. Relies on instructions and pre-established guidelines to perform the functions of the j
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s