Recent Searches

You haven't searched anything yet.

9 Senior Manager - Information Security Jobs in BETHESDA, MD

SET JOB ALERT
Details...
Marriott
Bethesda, MD | Full Time
$134k-165k (estimate)
5 Days Ago
Marriott
Bethesda, MD | Full Time
$134k-165k (estimate)
4 Days Ago
HMSHost
BETHESDA, MD | Full Time
$144k-179k (estimate)
2 Months Ago
Marriott International, Inc.
Bethesda, MD | Full Time
$141k-178k (estimate)
Just Posted
Marriott International, Inc.
Bethesda, MD | Full Time
$119k-150k (estimate)
6 Days Ago
Marriott International, Inc.
Bethesda, MD | Full Time
$117k-148k (estimate)
2 Months Ago
Marriott International, Inc.
Bethesda, MD | Full Time
$150k-185k (estimate)
2 Months Ago
Marriott International, Inc.
Bethesda, MD | Full Time
$150k-185k (estimate)
2 Months Ago
Senior Manager - Information Security
HMSHost BETHESDA, MD
$144k-179k (estimate)
Full Time | Restaurants & Catering Services 2 Months Ago
Save

HMSHost is Hiring a Senior Manager - Information Security Near BETHESDA, MD

Purpose: The Senior Manager Information Security is responsible for overseeing Information Security and compliance programs for infrastructure applications. This role is responsible for corporate policies and procedures, and for providing expert advice in risk assessment, business continuity planning, information security, change management and executing a comprehensive risk-based internal audit plan for the Company’s information technology controls.

Essential Functions:
• Executes and delivers Information Security strategy through assessment, design and implementation of governance frameworks, controls, processes and infrastructure
• Designs, implements and manages security solutions and remediation programs to address security risks
• Evaluates identity and access management (IDAM) practices and develops solutions to improve IDAM processes, privileged access and recertification programs
• Develops security policies, procedures, standards, and controls in line with regulation and current standards, ISO27001, NIST, SANS etc.
• Implements data protection and privacy programs to ensure confidentiality and security of personal data
• Develops and implements programs to improve IT Disaster Recovery and Business Continuity
• Creates secure patterns for reuse and delivery of architectural reviews using TOGAF or SABA
• Evaluates security of emerging technology platforms – mobile device platforms (iOS, Android), cloud services (IaaS, PaaS, SaaS), Big Data, social media
• Performs security risk and controls assessments and penetration testing to evaluate and analyze threat, vulnerability, impact, risk and security issues
• Assists client in evaluating, enhancing, developing, and managing various programs including Cybersecurity, Business Continuity and Disaster Recovery, Data Protection and Privacy, Threat and Vulnerability, Security Incident Detection and Response, Identity and Access Management, Security Operation Centre and SIEM, Data Loss Prevention, Security Awareness and Training, Phishing Campaigns
• Ensures infrastructure and applications are compliant with regulatory and IT best practice standards and internally established IT policies and procedures
• Assists with design, implementation and management of CCPA/CPRA, SOC2, ISO, and PCI audit process
• Provides subject matter expert advisory services to IT and the business as it relates to regulatory and industry compliance issues
• Manages, coordinates and executes internal compliance testing, documentation and follow-up
• Performs operational audits to ensure compliance of infrastructure/applications with regulatory or internally established IT policies and procedures; provides written reports to senior management regarding recommendations and conclusions
• Assists in the development of procedures and policies governing the management and operation of key regulated computer systems

Reporting Relationship: This position reports to the VP Infrastructure and Security

Major Interdependencies: All Corporate departments

Minimum Qualifications, Knowledge, Skills, and Work Environment:
• Education and Experience: The combination of education and professional experience must exceed 6 years:
- In a technical role: Requires 6 years of experience engaged in delivering IT security and compliance programs
- A bachelor’s degree in Computer Science, Information Systems, Cybersecurity or a program related to the functional area can count for 2 of the 6-year requirement
- In the industry: 3-5 years of Hospitality, F&B and/or Retail experience desirable

• Specialized Training:
- Extensive knowledge of compliance and privacy regulations such as PCI-DSS, Law 262, SOC-2, ISO, HIPAA and CCPA/CPRA
- Information Technology Infrastructure Library (ITIL) experience
- Strong Knowledge of common IT service management, cybersecurity and risk management frameworks, such as ITIL, ISO 27000 and NIST

• Specialized Skillset/Competencies/Traits
- Business acumen and also has the mindset required to understand the long-term implications of IT security and compliance planning and to advance the organizations goals
- Demonstrated history of understanding the needs of the business, stakeholders, the employee population, and individual circumstances
- Demonstrated history of creating and maintaining positive work environments through coaching, developing, and leading teams to achieve common goals

• Travel/Location:
- Location: Requires a regular presence in F&B and/or Retail Center of Excellence locations

Disclaimer:
All job requirements are subject to change to reflect the evolving position requirements or to reasonably accommodate individuals with disabilities. Some requirements may exclude individuals who pose a threat or risk to the health and safety of themselves or other employees. This job description in no way states or implies that these are the only duties to which will be required in this position. Employees will be required to follow other job-related duties as requested by their supervisor/manager (within guidelines and compliance with Federal and State Laws). Continued employment remains on an "at-will" basis.

Dufry, Hudson and HMSHost are equal opportunity employers and do not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factors.

Job Summary

JOB TYPE

Full Time

INDUSTRY

Restaurants & Catering Services

SALARY

$144k-179k (estimate)

POST DATE

03/31/2024

EXPIRATION DATE

06/29/2024

WEBSITE

hmshost.com

HEADQUARTERS

BETHESDA, MD

SIZE

15,000 - 50,000

FOUNDED

1897

TYPE

Private

CEO

STEVE JOHNSON

REVENUE

$3B - $5B

INDUSTRY

Restaurants & Catering Services

Related Companies
About HMSHost

HMSHost specializes in providing food services for highway and airport venues.

Show more

HMSHost
Full Time
$25k-31k (estimate)
Just Posted
HMSHost
Full Time
$34k-44k (estimate)
Just Posted
HMSHost
Full Time
$36k-42k (estimate)
Just Posted

The job skills required for Senior Manager - Information Security include Information Security, Risk Management, IT Security, Cybersecurity, Computer Science, SIEM, etc. Having related job skills and expertise will give you an advantage when applying to be a Senior Manager - Information Security. That makes you unique and can impact how much salary you can get paid. Below are job openings related to skills required by Senior Manager - Information Security. Select any job title you are interested in and start to search job requirements.

For the skill of  Information Security
ARK Solutions
Full Time
$115k-138k (estimate)
1 Day Ago
For the skill of  Risk Management
Science Technology
Full Time
$114k-145k (estimate)
7 Days Ago
For the skill of  IT Security
Dansources Technical Services
Full Time
$67k-82k (estimate)
0 Months Ago
Show more

The following is the career advancement route for Senior Manager - Information Security positions, which can be used as a reference in future career path planning. As a Senior Manager - Information Security, it can be promoted into senior positions as a Cross-Platform Security Manager that are expected to handle more key tasks, people in this role will get a higher salary paid than an ordinary Senior Manager - Information Security. You can explore the career advancement for a Senior Manager - Information Security below and select your interested title to get hiring information.