Wisconsin Foundation and Alumni Association logo
Wisconsin Foundation and Alumni AssociationPosted 25 months ago

Information Security Manager

HybridMadison, Wisconsin, United States

Full TimeMedium

Job Summary

Lead the security program by overseeing compliance with HIPAA, PCI-DSS, and NIST, managing vulnerability remediation, and coordinating penetration testing and third-party risk assessments. Direct incident response operations, triage complex security events, and conduct root cause analysis while championing automation and AI adoption to improve operational efficiency. Manage the security team through hiring, performance reviews, and development planning, setting schedules, on-call rotations, and after-hours coverage to ensure reliable service delivery. Partner with stakeholders to define strategic roadmaps, oversee change management, and report on security posture and project status to senior leadership.

Required Qualifications

  • Bachelor's degree in Information Technology, Computer Science, or relevant experience that provides equivalent knowledge, skills, or abilities
  • 7 + years of progressive experience in cybersecurity, security engineering, or a related field
  • 3 + years of experience directly managing or leading technical security teams, including hiring, performance management, and staff development
  • 5 + years of hands-on experience with enterprise security tools and technologies, including SIEM, EDR, IDS/IPS, firewalls, and endpoint protection platforms
  • 5 + years of experience with security architecture, incident response, vulnerability management, and compliance programs
  • Experience managing relationships with Managed Detection & Response (MDR) providers, security vendors, and other third-party security partners
  • Demonstrated experience leading cross-functional security projects using established project management methodologies
  • Demonstrated success driving security process improvements, automation, or operational optimization initiatives
  • Familiarity with regulatory frameworks and compliance standards including HIPAA, PCI-DSS, and NIST
  • Deep understanding of cybersecurity principles, protocols, architecture, and best practices
  • Proven ability to lead, motivate, and develop technical security teams
  • Strong understanding of regulatory frameworks, compliance standards, and enterprise risk
  • Excellent analytical, problem-solving, and decision-making skills, with the ability to prioritize competing demands
  • Ability to work under pressure and manage multiple complex initiatives simultaneously
  • Strong communication, interpersonal, and stakeholder management skills, including the ability to present to senior leadership
  • Ability to design, document, and maintain effective procedures, processes, and automations
  • Capable of maintaining a high degree of confidentiality and responsibility regarding information related to WFAA and any affiliate organizations
  • Energetic, motivated, service-oriented, and able to effectively manage multiple competing priorities
  • Flexible to new situations and challenges, and an advocate for change
  • Experience implementing or managing AI-enabled security operations, security automation frameworks, or SOAR platforms
  • Ability to lead cross-functional projects using lightweight project management practices
  • Ability to understand business needs and balance usability and security
  • This is a hybrid position that will require you to work on-site in our Madison, WI office location at least two days a week

Desired Qualifications

  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM)

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce