Assoc, Information Security Governance & Data Privacy Madison-DavisAssoc, Information Security Governance & Data PrivacyNew York, NYCatalog and oversee remediation of TISR issues arising from audits, regulatory exams, root cause analyses, and control testing;track control gaps and annually refresh CISO policies to reflect enhanced controls. The role sits at the intersection of IT/IS risk and regulatory compliance requiring someone equally comfortable building and maintaining security frameworks as they are managing data privacy programs, preparing regulatory exam responses, and driving CISO metrics and reporting.
AVP, Information Security Strategy & Governance Madison-DavisAVP, Information Security Strategy & GovernanceNew York, NY$100,000–$150,000 / yearThis is a well-established financial institution with a mature and growing information security program seeking a seasoned IT/IS risk and governance professional to serve as a key strategic partner to the CISO. Coordinate Information Security strategy in alignment with broader organizational goals, maintaining KRIs and tracking strategic initiative execution through quarterly reviews.
Lead IT Security Analyst i IV Integrated Resources, IncLead IT Security Analyst i IVNewark, New JerseyFull timeIT Security Governance: Responsibilities include providing guidance and direction regarding security control elements in policies throughout the organization, documenting relevant business processes and their implications on information security, designing workflow diagrams showing the production of, transmission and use of electronic Protected Health Information (ePHI) and other sensitive information, developing information security risk identification, tracking and mitigation processes strategy and methodology, developing the information security awareness, training and education program-s strategy and methodology, facilitating or leading development of accurate and relevant information security process and operational metrics, establishing monitoring measures to detect and ensure correction of security breaches and policy violations, proactively keeping current on information security issues related to business processes as input into departmental policies and procedures, analyzing and enhancing the effectiveness of the Enterprise wide information security program. IT Security Operations: Responsibilities include recommending Firewall change requests for approval, analyzing and taking appropriate action on intrusion detections, analyzing and recommending action on security related incidents, reviewing and approving access requests, providing Role Based Access Control (RBAC) to individual users and performing recertification based on segregation of duties and roles, mapping workflows in provisioning users into our systems and infrastructure, complying with internal and external audit requests, monitoring the effectiveness of the Enterprise wide information security program, providing data for audit indicating changes made to access control lists to facilitate audits and other investigations, participating in investigating possible security violations, tracking and maintaining operational security access metrics.
IT Security Manager Phaxis LLCIT Security ManagerNew York, NY$180,000–$225,000 / yearProven ability to manage security programs, guide technical teams, and advise leadership on complex security challenges. Identify, assess, and mitigate cybersecurity risks, including conducting vulnerability assessments and penetration tests.
Technology and Information Security Risk Specialist IdbnyTechnology and Information Security Risk SpecialistNew York City, New YorkThis position strengthens the Bank’s risk posture by providing effective review and challenge, supporting risk assessments and control reviews, and connecting technology and information security risk themes to operational risk, vendor risk, change management, resilience, data management, and broader ERM processes. The role requires technical credibility, sound judgment, strong communication skills, and the ability to work effectively with First Line teams, senior leaders, auditors, regulators, Head Office, and executive stakeholders while maintaining Second Line independence.
Data Security Governance Analyst eTeam Inc.Data Security Governance AnalystNew York, NY$50–$55 / hourThe Data Security Governance Analyst supports the enterprise data security and information protection program by defining, maintaining, and operationalizing governance frameworks, policies, and controls that protect sensitive data throughout its lifecycle. The role focuses on data classification, policy enforcement, risk alignment, and governance reporting, working closely with cybersecurity, data governance, privacy, risk, and technology teams.
Infrastructure Security Service Manager Artech LLCInfrastructure Security Service ManagerStamford, CT$50–$58 / hourCollaborate closely with IAM management, architects, and service providers to implement IAM Program modernization efforts & contribute to IAM component designs, IAM service development, service integration, implementation and operations of business-wide IAM services: Provide thought leadership on IAM implementation. Reporting to the Infrastructure Security Service Manager you will demonstrate your proven track record designing and deploying Active Directory in a large enterprise and will bring IAM operational leadership and coordination for security services including but not limited to Active Directory/LDAP, Azure-AD, SailPoint, CyberArk, OKTA, Venifi, Entrust, Thales, and ADFS.
Senior Director, Security Operations Gibson DunnSenior Director, Security OperationsNew York City, New YorkBased in New York, the Senior Director, Security Operations will be responsible for the ongoing development and oversight of all aspects of the threat hunting, detection and incident response program, including developing processes, procedures and policies that ensure threats are timely detected, responded to and resolved. Strong knowledge of security implications involving a variety of technologies, including but not limited to SaaS platforms and SaaS as infrastructure, Microsoft, Cisco, Unix/Linux, and other market leaders in technology solutions, including mobile devices.
Lead, Information Security GRC Automation Prudential FinancialLead, Information Security GRC AutomationNewark, New JerseyPartner with technology teams and control owners to onboard new evidence sources, improve data quality, and enhance traceability across controls, assets, risks, and reporting. Design and implement automated control testing, continuous monitoring, telemetry, and evidence collection capabilities that improve visibility into control effectiveness and reduce reliance on manual processes.
Deputy Chief Information Security Officer Touro University New YorkDeputy Chief Information Security OfficerNew York, New YorkRemoteFull timeIn collaboration with the CISO, contribute to maintaining risk registers, control gap analysis, and mitigation strategies aligned with NIST CSF, NIST AI RMF and privacy frameworks; ensure risks, incorporate AI risks and all institutional risks are clearly mapped to HIPAA, FERPA, PCI DSS, and other regulatory obligations, with defensible documentation and audit-ready evidence. Demonstrate knowledge and experience across a broad range of information security management technologies and processes, including identity provisioning, life cycle management, governance, separation of duties analysis, role management, access request systems, privileged access management, entitlement reviews, data loss prevention, firewalls, privacy, and incident response.
Chief Information Security Officer Public Company Accounting Oversight BoardChief Information Security OfficerNew York, NY$248,100–$400,000 / yearProvide leadership supporting a team to streamline and maintain a modern compliance model for cybersecurity safeguards, including access controls, MFA, encryption, asset classification, change management, patch management, network segmentation, firewalls, detection technologies including network and endpoint security, insider threat protection, logging and network monitoring, and vulnerability management. Proactively identify, assess, and prioritize IT risks to data and systems in coordination with OT portfolio management and OERM including internal/external threats, cyber-crimes, and vendor/third-party risks; partner with OERM or relevant stakeholders on the appropriate courses of action to mitigate or eliminate risk.
Chief Information Security Officer Lewis BrisboisChief Information Security OfficerNew York, New YorkFull timeThe CISO will develop and execute a firm-wide security strategy encompassing cybersecurity, data protection, and operational resilience, establish governance frameworks aligned with industry best practices (e.g., NIST, ISO, SOC 2) and lead the design, implementation, and continuous improvement of the firm’s information security program. The Chief Information Security Officer (CISO) is a senior executive responsible for developing, implementing, and overseeing a comprehensive, enterprise-wide security strategy to protect the firm’s clients, information, and reputation.
Lead, Business Intelligence, Information Security Governance Prudential FinancialLead, Business Intelligence, Information Security GovernanceNewark, New JerseyLeveraging Microsoft Power Platform, Power BI, Microsoft Fabric, Claude, and Copilot, you will deliver executive-ready insights, improve data quality, strengthen trust in critical metrics, and help shape a modern analytics capability that supports Information Security Governance. This hands-on, influence-based role combines Power BI dashboard development, AI-enabled reporting, data modeling, SQL, metric governance, and stakeholder engagement to help leaders make faster, better-informed decisions.
IT Infrastructure & Security Manager GTN Technical StaffingIT Infrastructure & Security ManagerNorwalk, CTReporting to senior IT leadership, this individual will oversee day-to-day IT operations, infrastructure planning, budgeting, security, technology projects, and end-user support while serving as the primary technology leader for the corporate office. Manage endpoint deployments, imaging, encryption, endpoint security, vulnerability remediation, hardware lifecycle, software deployments, and procurement.
Enterprise Information Security Architect Integrated Resources, IncEnterprise Information Security ArchitectNewark, New JerseyFull timeBasic Qualifications: • Bachelor's degree in Information Technology or related discipline from an accredited college or university, advanced degree or other professional certification in Management Information Systems is preferred. • 10+ years of professional business experience in Security Architecture, including security with Applications, Infrastructure, external internet security, or Access and Identity Management.
Saviynt-IAM Tech Solns. Arch. Sr. Specialist Advisor- Remote NTT DATASaviynt-IAM Tech Solns. Arch. Sr. Specialist Advisor- RemoteNew York, NYRemote$100–$120 / hourKnowledge, Skills, and Experience Requirements: The individual in this role must be well educated in general aspects of Information Security, namely: • Experience architecting IAM solutions such as SailPoint, Saviynt, • Intimately familiar with IAM related protocols such as SAML, JML, SPML, XACML, SCIM, OpenID, and OAuth. • Strong understanding of cloud computing architecture, technical design, and implementations, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) delivery models.
Summer Analyst - Information Security Rockefeller Capital ManagementSummer Analyst - Information SecurityNew York, New YorkFull timeOriginally founded in 1882 as the family office of John D. Rockefeller, the Firm has evolved to offer strategic advice to ultra- and high-net-worth individuals and families, institutions, and corporations from offices in 35 markets throughout the United States, as well as an office in London. Our Summer Analyst program is a ten-week (June-August) internship program designed to provide an opportunity to experience the culture and atmosphere of Rockefeller Capital Management.
Sr Information Security Analyst Expert In Recruitment SolutionsSr Information Security AnalystJersey City, NJCloud Security (Azure, AWS, GCP) GCP: IAM, Security Command Center, Cloud Audit Logs, VPC Service Controls, CMEK/KMS, Cloud Armor, Workload Identity; container security (GKE). Azure: Defender for Cloud, Microsoft Sentinel, Entra ID (Azure AD), Conditional Access, Key Vault, NSGs/Azure Firewall, storage encryption, Defender for Endpoint integration.
NewCenter for Internet Security (CIS) Implementation Analyst Macpower Digital Assets Edge Private LimitedCenter for Internet Security (CIS) Implementation AnalystStamford, CT$100,000–$110,000 / yearWorking knowledge of network switches, routers, firewalls and VPN, network security, administration of DLP, antivirus, antimalware, IDSIPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. Develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, remediation as well as advises and implements configurations for a variety of security tools.
Chief Information Security Officer Lewis Brisbois Bisgaard & Smith LLPChief Information Security OfficerNew York, NYThe CISO will develop and execute a firm-wide security strategy encompassing cybersecurity, data protection, and operational resilience, establish governance frameworks aligned with industry best practices (e.g., NIST, ISO, SOC 2) and lead the design, implementation, and continuous improvement of the firm's information security program. The Chief Information Security Officer (CISO) is a senior executive responsible for developing, implementing, and overseeing a comprehensive, enterprise-wide security strategy to protect the firm's clients, information, and reputation.