Cybersecurity Program Manager

🕒 vor 4 Tagen

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Alaska Power & Telephone Company

Alaska Power & Telephone Company

51 - 200 Mitarbeiter

Gegründet 1957

⚡ Energie

📡 Telekommunikation

💰 €33.017.636 Grant - Alaska Power and Telephone im 2022-09

Energy • Telecommunications

Die Alaska Power & Telephone Company (AP&T) ist ein mitarbeitergeführtes Versorgungsunternehmen, das seit 1957 über 40 entlegene Gemeinden in Alaska entlang von 1. 100 Kilometern mit Strom, Breitbandinternet und Festnetztelefonie versorgt. AP&T betreibt Glasfaser- und Mikrowellennetze, die bis zu 2,5 Gbit/s für Haushalte und Unternehmen liefern, und produziert etwa 75 % seiner Energie aus erneuerbarer Wasserkraft, um nachhaltige Initiativen wie Wärmepumpen und die Elektrifizierung von Elektrofahrzeugen zu unterstützen. Das Unternehmen bietet Kundentools (SmartHub), Live-Webcams, Störungsberichte und Geschäftsdienste an und investiert aktiv in lokale Gemeinschaftsprogramme und Energieanreize.

Beschreibung

• Maintain, administer, and continuously improve AP&T's cybersecurity program. • Develop, update, and maintain cybersecurity policies, procedures, standards, and supporting documentation. • Track cybersecurity initiatives, remediation efforts, and program objectives. • Support alignment with recognized frameworks and best practices, including NIST Cybersecurity Framework (CSF), CIS Controls, and CISA Cybersecurity Performance Goals. • Prepare reports, metrics, and risk summaries for leadership. • Monitor security alerts, events, and system activity across the organization's technology environment. • Investigate and respond to cybersecurity incidents and suspicious activity. • Maintain secure configurations and cybersecurity tools. • Coordinate with internal teams and external vendors to address identified security concerns. • Support endpoint, network, email, and cloud security initiatives. • Conduct and coordinate vulnerability scanning activities. • Analyze findings and prioritize remediation based on business risk. • Track corrective actions through completion. • Monitor patch management and system hardening efforts. • Participate in external security assessments, penetration testing, and remediation planning. • Administer and oversee access control processes. • Support privileged access management and least-privilege security practices. • Manage multifactor authentication (MFA) and identity security controls. • Conduct user access reviews and ensure appropriate account management practices. • Maintain incident response plans, procedures, and supporting documentation. • Coordinate cybersecurity event response activities. • Facilitate incident response exercises and tabletop simulations. • Support disaster recovery, business continuity, and backup validation activities. • Assist in post-incident reviews and corrective action planning. • Identify, assess, document, and track cybersecurity risks. • Support audits, compliance reviews, and cybersecurity assessments. • Review third-party and vendor cybersecurity practices. • Assist with cyber insurance submissions, questionnaires, and related requirements. • Maintain evidence and documentation supporting compliance activities. • Support cybersecurity practices across information technology, telecommunications, and operational technology environments. • Assist in securing distributed systems supporting utility and broadband operations. • Coordinate security efforts involving critical infrastructure and field operations technologies. • Support cybersecurity requirements for remote and rural operational environments. • Lead employee cybersecurity awareness and education efforts. • Coordinate phishing awareness campaigns and training activities. • Promote cybersecurity best practices throughout the organization. • Foster a culture of shared responsibility for information security.

🎯 Anforderungen

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field; or Equivalent combination of education, training, certifications, and relevant professional experience. • Minimum of five (5) years of hands-on experience in information technology, systems administration, network administration, infrastructure management, cybersecurity, or related technical disciplines. • Minimum of three (3) years of cybersecurity-related experience. • Experience with: Security operations, Network security, System administration, Endpoint protection and endpoint detection and response (EDR), Identity and access management (IAM), Vulnerability management, Backup and recovery solutions, Incident response and investigations. • Experience developing policies, procedures, incident reports, risk assessments, and technical documentation. • Ability to communicate effectively with both technical and non-technical stakeholders. • Ability to manage sensitive and confidential information with discretion and sound judgment. • Proven ability to coordinate remediation efforts and drive issues to resolution. • Current cybersecurity certification preferred, including but not limited to: CompTIA Security+, CompTIA CySA+, ISC² SSCP, ISC² CISSP, ISACA CISM, GIAC GSEC, GIAC GCIH, GIAC GICSP, ISA/IEC 62443 Certification. • Equivalent industry-recognized cybersecurity certification. • Candidates with significant relevant experience who do not currently hold a certification may be considered but will be expected to obtain an approved certification within 6-12 months of hire. • Working knowledge of: NIST Cybersecurity Framework (NIST CSF), CIS Critical Security Controls, CISA Cybersecurity Performance Goals (CPGs), Security Operations Center (SOC) practices, Incident response lifecycle, Vulnerability management, Least privilege and access control, Multifactor authentication (MFA), Endpoint security, Email security, Security logging and monitoring, Backup and disaster recovery best practices.

🏖️ Vorteile

• Employee-owned company through our ESOP program • Opportunity to secure critical infrastructure serving Alaska communities • Collaborative and mission-driven culture • Professional development and certification support • Competitive compensation and comprehensive benefits • Meaningful work with visible impact

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 4 Tagen

dataSpring Inc.

51 - 200

🤝 B2B

📣 Marketing

☁️ SaaS

Senior AI Security Engineer at DataSpring securing AI-driven technology in healthcare. Leading security lifecycle for AI systems and ensuring compliance with regulations.

🇺🇸 Vereinigte Staaten – Remote

💵 $180.000 - $195.000 / Jahr

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Alight Solutions

10.000+ Mitarbeiter

🤝 B2B

🏥 Gesundheitswesen

☁️ SaaS

Lead security and controls for AI adoption at Alight, focusing on AI governance and risk management. Collaborate with engineering and security teams to ensure safe AI systems implementation.

🇺🇸 Vereinigte Staaten – Remote

💵 $140.000 - $180.000 / Jahr

💰 €22.500.000 Post-IPO Secondary - Alight Solutions im 2023-08

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cloud

Cyber Security

🕒 vor 5 Tagen

KBR, Inc.

10.000+ Mitarbeiter

💼 Beratung

🎖️ Verteidigung

📦 Logistik

Cybersecurity Architect designing and implementing secure enterprise architectures aligned with RMF standards for U.S. Department of War and Government software programs.

🇺🇸 Vereinigte Staaten – Remote

💵 $117.300 - $176.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Azure

Cloud

Cyber Security

🕒 vor 6 Tagen

rockITdata

11 - 50

🤖 Künstliche Intelligenz

💼 Beratung

Security Control Assessor supporting federal healthcare modernization initiatives with cybersecurity assessment and authorization activities. Collaborating with stakeholders to meet federal security requirements.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 7 Tagen

AECOM

10.000+ Mitarbeiter

💼 Beratung

🏥 Gesundheitswesen

📦 Logistik

Transit Safety Security Specialist coordinating risk management projects across the U.S. at AECOM, delivering safety and security solutions for public transportation systems.

🇺🇸 Vereinigte Staaten – Remote

💵 $100.000 - $150.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich