Lead Security Analyst
$30,000–$30,000 year
On-siteMiami, Florida, United States or Irving, Texas, United States
Job Summary
Lead and manage the cybersecurity team from a technical perspective, driving strategic direction for all GRC initiatives. Develop and maintain the GRC framework while serving as a subject matter expert to advise leadership on security risks and mitigation strategies. Foster a security-aware culture through training, mentor junior members, and create risk posture reports for management. Review vulnerability and penetration testing results, monitor remediation milestones, and liaise with business units on continuity and disaster recovery plans. Provide oversight of third-party vendors to safeguard against external risks. Requires a Bachelor's degree in Computer Science or Information Security, 7+ years of cybersecurity leadership experience, and advanced certifications like CISSP or CISM. In-person attendance at the Lennar office is required.
Required Qualifications
- Bachelor's degree in Computer Science, Information Security, or a related field
- 7+ years of experience in cybersecurity, with a focus on leadership, vulnerability management, GRC, and incident response
- Advanced certifications (e.g., CISSP, CISM, CRISC)
- Regular, in-person attendance at the Lennar office during regular work hours
- Ability to operate computer equipment, speak, hear, bend, stoop, reach, lift, and move and carry up to 25 lbs
- Finger dexterity
Desired Qualifications
- Master's degree
- Ideally familiar with one or more regulatory requirements and laws such as, but not limited to, PCI, FFIEC, Sarbanes-Oxley Act (SOX), HIPAA, GDPR, and GLBA
- Experience in one or more: ISO 17799, ITIL and NIST
- General understanding of the Factor Analysis of Information Risk (FAIR) methodology
- Strong leadership and management skills, with a proven track record of building and leading effective cybersecurity teams
- Excellent communication and presentation skills, with the ability to influence and engage stakeholders at all levels
- Preferable, but not required, one or more of the following: CRISC, CISSP, CISA, CGEIT, GCCC, GSEC and GISP
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.