- Company Name
- TalentHawk
- Job Title
- Information Security Assurance Manager
- Job Description
-
Job title: Information Security Assurance Manager
Role Summary: Lead security assurance, governance, and control effectiveness for a regulated energy delivery organization, ensuring compliance with ISO 27001, NIST, and SOC 2 across cyber, IT, cloud, and third‑party environments. Act as the primary liaison for internal and external audit readiness and executive risk reporting.
Expectations: • Deliver end‑to‑end assurance of security controls in complex, regulated settings. • Maintain accurate risk register and drive remediation. • Provide clear, executive‑level reporting on security posture and risk. • Collaborate with Cyber, Risk, IT, and Compliance functions to align security strategy with business objectives.
Key Responsibilities: • Conduct security assurance reviews (cyber, IT, cloud, third‑party). • Validate controls against ISO 27001, NIST, SOC 2, and relevant frameworks. • Own audit readiness, support internal and external audits, and address findings. • Manage security risk register and track remediation progress. • Provide assurance on IAM/PAM, vulnerability management, and data protection. • Generate concise executive‑level security dashboards and reports. • Partner with technology, risk, and compliance teams to embed secure practices.
Required Skills: • Deep experience in Information Security Assurance and GRC. • Proven track record in regulated environments (energy, utilities, finance, etc.). • Expertise in ISO 27001, NIST, SOC 2 frameworks and related controls. • Effective stakeholder management at senior management level. • Proficient with security tools (risk management platforms, SIEM, vulnerability scanners, IAM, PAM). • Strong analytical, communication, and project‑management abilities.
Required Education & Certifications: • Bachelor’s degree in Information Security, Computer Science, or related field (Master’s preferred). • Relevant certifications: CISSP, CISM, CRISC, ISO 27001 Lead Auditor, or equivalent.