- Company Name
- Green Bay Packaging - Corporate
- Job Title
- IT Security Manager
- Job Description
-
Job title: IT Security Manager
Role Summary: Lead enterprise security strategy, operations, and incident response to protect organizational assets, ensure compliance, and embed security across all projects.
Expectations:
- Define and execute a multi‑year security roadmap aligned with business goals and regulatory requirements.
- Drive a security‑first culture and mentor a high‑performing security team.
Key Responsibilities:
- Develop and report security KPIs/OKRs; provide health updates to leadership.
- Own policy development, standards, and control baselines (CIS, IEC62443).
- Conduct risk assessments, third‑party/vendor reviews, and control testing; manage remediation.
- Coordinate internal/external audits, ensuring timely closure.
- Architect and govern a defense‑in‑depth stack (endpoint, identity, email, network, cloud).
- Lead SIEM/XDR operations: alert triage, correlation, playbook automation, continuous tuning.
- Embed security into infrastructure and application projects (segmentation, key management, code scanning, least privilege).
- Direct the end‑to‑end incident response lifecycle; conduct tabletop exercises.
- Manage vulnerability management: scanning, prioritization, patch SLAs, remediation.
- Translate threat intelligence into actionable detections and mitigations.
- Govern IAM: role design, JML, privileged access, conditional access, MFA enforcement.
- Implement data protection controls (DLP, encryption, classification, retention).
- Deliver security awareness programs; measure effectiveness.
- Provide consultative security advice to business units on secure design and vendor selection.
Required Skills:
- 7–10+ years in cybersecurity, 3–5+ years leading teams or programs.
- Enterprise security architecture and operations (SIEM, XDR, EDR, email, network, cloud).
- Hands‑on identity & access management with Microsoft Entra ID/Azure AD, Defender XDR, Sentinel, Intune.
- GRC and audit readiness expertise.
- Incident response leadership, playbooks, forensic coordination, executive communication.
- Strong stakeholder management, communication, and influence across technical and business audiences.
Required Education & Certifications:
- Bachelor’s degree in Cybersecurity, Computer Science, or related field.
- (Preferred) Relevant certifications: CISSP, CISM, CISA, CEH, Microsoft Certified: Azure Security Engineer Associate, or equivalent.