Talent.com
Manager-IT Risk Management

Manager-IT Risk Management

S&C ElectricChicago, IL, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

As an S&C Electric team member, you'll work on projects that have real-world impact. You'll help transform the grid for resilient and reliable power worldwide. S&C has more than a 100-year history of innovation and has been 100% employee-owned since 2012. We continue this legacy as a trusted, forward-thinking leader in the electrical industry. You will advance a safer, more reliable, and more resilient electrical grid. Our products help the grid adapt to severe weather and transition to clean energy. We're big enough to be a respected industry leader but small enough for you to impact our company directly. Our commitment gives you opportunities to impact on and off the job positively.

Join S&C to make an impact on tomorrow's energy challenges and become an employee-owner!

Hours

8 : 00 am - 5 : 00 pm (Mon-Fri) Remote

Compensation

At S&C, we are dedicated to providing competitive and equitable compensation for all our team members, and we are committed to transparency in our pay practices. The estimated annual base salary range for this position in the United States is $125,000 - $165,572. Individual pay within this salary range is determined by several compensable factors, including performance, knowledge, job-related skills and experience, and relevant education or training. This role is also eligible for S&C's annual incentive plan (AIP), subject to eligibility criteria.

Join Our Team as Manager-IT Risk Management!

The Information Technology team is responsible for designing, implementing, and maintaining a robust technology infrastructure to support the organization's operations. Through improving cybersecurity and troubleshooting technical issues to driving innovation through cutting-edge solutions, the IT team ensures seamless connectivity, data security, and optimal functionality, empowering the company with a reliable and efficient digital ecosystem aligned with strategic goals.

The Manager-IT Risk Management manages a team of cybersecurity professionals and operationalizes the Cyber Security Operations Center (CSOC) Model of key CSOC functions and tiers. The manager is responsible for proactive and reactive risk mitigation through threat intelligence, technical and procedural controls, and incident preparation, management, and remediation. Responsibilities also include configuration and monitoring of security technologies for security posture management. While directly executing day-to-day CSOC activities, this role involves cross-functional collaboration and problem solving to communicate with other teams and stakeholders. Using a risk-based, proactive approach, the Manager works closely with the Director-IT Risk Management to maintain resilient security controls and processes and foster a culture of awareness within the organization.

Key Responsibilities

  • CSOC Program Development : Plan and execute operational plans with a 1-2 year focus to establish and mature comprehensive programs for Incident Management (IM) and applicable areas of Security Posture Management (SPM). Communicate with and influence key stakeholders within and outside of the CSOC to ensure effective establishment and execution of program policies, practices, and procedures. Manage SOC resources and service providers. Ensure continuous monitoring of the threat landscape and modify security technologies and procedures as appropriate to continually mature and improve CSOC programs.
  • IM : Lead and exercise the full implementation of the IT Cybersecurity Incident Response Team (IT CSIRT) and its processes, and integration of the IT CSIRT with the Corporate Critical Incident Response Team (CCIRT). Ensure all needed security log information is received and rules are configured to capture relevant information and generating useful alerts that are actioned to best address risks.
  • SPM : Implement, administer, and monitor technology and processes to detect and analyze weaknesses in the enterprise environment and ensure the prioritized adjudication of findings. This includes establishing and driving the implementation of security configuration baselines for endpoints and information assets.
  • Leadership & People Management : Lead, inspire, and develop a high-performing team of experienced professionals. Foster appropriate and professional workplace behaviors, address / mediate conflicts to restore harmony, and support a positive, healthy, and inclusive workplace culture by S&C's mission, vision, values, and guiding principles. Consulting the Director, manage administrative team member processes, including but not limited to recruitment, hiring, induction, vacation management, performance reviews, performance improvement plans, firing, promotion, and workforce / succession planning. Proactively establish, monitor, and hold team members accountable to clear responsibilities and accountabilities; provide ongoing performance feedback, both positive and developmental; address performance gaps promptly; recognize and reward achievements; and initiate decisions for corrective actions and terminations where required. Foster a culture that supports the growth and development of team members and proactively train, mentor, and coach team members.
  • KPI / KRI Tracking : Develop critical Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) that identify crucial measurements of success in improving CSOC operations and managing risk. Provide insights and use data to illustrate a succinct narrative for both technical and non-technical decision-makers. Establish useful KPIs and other metrics, measuring CSOC process and team member effectiveness, to then fine-tune operational plans. Provide regular, operational communications and status reports to direct leader and key stakeholders.
  • Strategy Support : Provide recommendations for key results, initiatives, and individual goals based on CSOC processes, procedures and control implementation gaps in accordance with ISO 27001 controls, CIS benchmarks and identified risks. Regularly assess and report the effectiveness and impact of cybersecurity initiatives, applying a continuous improvement and risk-based mindset to manage the overall security posture.
  • Information Security Culture : Collaborate with leadership, other IT teams, and S&C's functional areas to identify, develop, implement, and maintain processes and controls to reduce information technology risks. Recommend objectives and ensure that business functions are aware of the importance and impacts of information and cyber security risk management on their specific function. Encourages others to champion information risk management.
  • Training & Awareness : Build cybersecurity knowledge, skills resilience at all levels of the CSOC team. Design training & awareness activities and measure of success through metrics that demonstrate training program effectiveness.
  • Documentation : Maintain thorough, organized, current, and accurate records and documentation. Develop and present regular reports on CSOC performance, metrics, and project status to senior management.
  • Budget Management : Program expenditures for the CSOC technology stack in accordance with the strategic roadmap and inform the team's strategic spend. Monitor and manage the day-to-day of CSOC impacts to the IT budget and ensure expenses adhere to planned spend and cost efficiency whilst supporting the achievement of departmental strategies and objectives.
  • Compliance : Understand and comply with all applicable Company policies and rules.

What you'll Need To Succeed

  • Bachelor's degree in Information Systems, Computer Science, Business, or equivalent experience.
  • 7+ years of experience in Information Security or a related role.
  • Demonstrated experience managing an IT team focused on risk management and / or security-related projects.
  • Strong knowledge of information and cyber security principles, technology and best practices.
  • Experience in using and administering document management systems, Microsoft cybersecurity technology, including Sentinel and Purview or similar platforms.
  • Practical knowledge of ISO 27001 : 2022 and CIS critical controls and safeguards and the ability to understand and apply evolving standards and requirements.
  • Ability to collaborate effectively with cross-functional teams and external stakeholders.
  • Possess a collaborative and risk-based mindset and great communication skills.
  • Strong leadership skills with an ability to lead, guide, motivate, and delegate to deliver results, embrace change, drive decisions and outcomes, embrace culture and inclusion, and exhibit integrity.
  • Excellent organizational, planning, and project management skills, creatively problem-solving issues and juggling a portfolio of initiatives.
  • Excellent communication skills (written, verbal, listening, and presentation); able to liaise effectively with internal and external stakeholders to drive decisions and achieve targeted results.
  • Strong interpersonal skills to establish meaningful relationships built on mutual trust and respect, navigate and resolve conflict, moderate behaviors, and foster collaborative working relationships amongst a diverse audience.
  • Ability to use business acumen and analytical skills to analyze data to drive informed decisions and problem-solve issues.
  • Foundational financial acumen with the ability to provide input to budgetary processes for fiscal effectiveness.
  • Ability to travel as required.
  • 7+ years of experience in Information or Cybersecurity roles including at least 3 years in Incident Management / Security Operations.
  • 2+ years experience managing a Security Operations team that handles Incident Response.
  • Preferred

  • 4+ years leadership experience of Security Operations teams and processes including Incident Response.
  • Demonstrated leadership experience with building cybersecurity capabilities and process improvement initiatives.
  • Advanced degree or relevant certifications.
  • Relevant cybersecurity certifications (e.g., Security+, CISM, CISSP)
  • Demonstrated leadership experience within an IT function.
  • Leadership experience specific to Incident Management.
  • S&C Electric is committed to equal-opportunity employment. All employees and applicants will be considered without regard to age, color, disability, gender, national origin, race, religion, sexual orientation, gender identity, protected veteran status, or any other classification protected by federal, state, or local law. If you are an individual with a disability and need an accommodation to complete the application, please email us at TAsupport@sandc.com.

    No fixed deadline

    #LI-BB1

    serp_jobs.job_alerts.create_a_job

    Risk Management • Chicago, IL, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    IT Audit Manager

    IT Audit Manager

    Robert HalfChicago, IL, US
    serp_jobs.job_card.full_time
    The salary for this position is up to $140,000 plus bonus, and it comes with benefits, including medical, vision, dental, life, and disability insurance. To apply to this hybrid role please send you...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    IT Audit Manager

    IT Audit Manager

    Cushman & WakefieldChicago, IL, US
    serp_jobs.job_card.full_time
    This is a Senior role within the Internal Audit Department, reporting to the Director of Internal Audit.This role is responsible for providing risk and control leadership, guiding audit teams and s...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Manager - IT

    Manager - IT

    Bally's CorporationChicago, IL, United States
    serp_jobs.job_card.full_time
    Bally's Corporation is a global casino-entertainment company with a growing omni-channel presence, currently owning and managing 15 casinos across 10 states, a golf course in New York, a horse race...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IT Security Manager

    IT Security Manager

    CodalChicago, IL, United States
    serp_jobs.job_card.full_time
    Codal is an award-winning web design and development consultancy that helps enterprise organizations solve complex problems and accelerate growth through elegant, data-driven digital solutions.Our ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Manager, Platform Operations Risk Management

    Manager, Platform Operations Risk Management

    Capital OneChicago, IL, US
    serp_jobs.job_card.full_time +1
    Manager, Platform Operations Risk Management.Do you like working in the spotlight? Are you ready to work on the front line of a top 10 Bank? Can you build relationships as well as develop and imple...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Managing Director, Cyber Risk

    Managing Director, Cyber Risk

    KrollChicago, IL, US
    serp_jobs.job_card.full_time
    Managing Director, Digital Forensic and Incident Response (DFIR).As the Managing Director for our DFIR business, you will lead a high-performing team of cybersecurity professionals in providing rap...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Manager, IT PMO

    Manager, IT PMO

    NorthShore University HealthSystemArlington Heights, IL, United States
    serp_jobs.job_card.full_time +1
    The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors.Location : choice of Warrenville, IL / Arlington Heights, IL / Skokie, IL.Hours : Mon...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Technology Payments Network Risk Senior Manager-Enterprise Services Risk Office

    Technology Payments Network Risk Senior Manager-Enterprise Services Risk Office

    Capital OneCHICAGO, Illinois, United States
    serp_jobs.job_card.full_time +1
    Technology Payments Network Risk Senior Manager-Enterprise Services Risk Office.We are hiring! The Enterprise Services Business Risk Office provides risk management support to several lines of busi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director - IT

    Director - IT

    Bally's CorporationChicago, IL, United States
    serp_jobs.job_card.full_time
    The Director of IT is responsible for overseeing all technology operations for the casino, ensuring the security, efficiency, and compliance of IT systems that support gaming, hospitality, surveill...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Managing Director - Technology & Cyber Risk

    Managing Director - Technology & Cyber Risk

    CrossCountry ConsultingChicago, IL, US
    serp_jobs.job_card.full_time
    Managing Director - Technology & Cyber Risk.From the beginning, our goal was to establish an advisory firm that stands apart from the rest one that is grounded in our core values and dedicated to ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IT Security GRC Manager

    IT Security GRC Manager

    Shure IncorporatedNiles, IL, United States
    serp_jobs.job_card.full_time +1
    Join our Global IT Team at Shure!.Manager, IT Governance, Risk & Compliance.You'll manage the Risk Register, Vulnerability Management, and Audit and Reporting programs and collaborates closely with...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    IT Governance and Compliance Manager

    IT Governance and Compliance Manager

    Arizona State GovernmentChicago, IL, US
    serp_jobs.job_card.full_time +1
    Arizona Health Care Cost Containment System.Accountability, Community, Innovation, Leadership, Passion, Quality, Respect, Courage, Teamwork. The Arizona Health Care Cost Containment System (AHCCCS),...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior Manager, Risk Management

    Senior Manager, Risk Management

    Capital OneChicago, IL, US
    serp_jobs.job_card.full_time +1
    Senior Manager, Risk Management.As a Senior Manager, Project Manager in the Risk Remediation Program Office, you will drive strategy and execute on high priority projects for the company.You will t...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Manager, Risk Advisor, Technology and Data Risk Management

    Senior Manager, Risk Advisor, Technology and Data Risk Management

    Capital OneCHICAGO, Illinois, United States
    serp_jobs.job_card.full_time +1
    Senior Manager, Risk Advisor, Technology and Data Risk Management.Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers.We are serious...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    IT Audit, Cybersecurity & Risk Advisory Senior

    IT Audit, Cybersecurity & Risk Advisory Senior

    Baker Tilly Advisory Group, LPUSA, Illinois, Chicago
    serp_jobs.job_card.full_time
    Baker Tilly is a leading advisory, tax and assurance firm, providing clients with a genuine coast-to-coast and global advantage in major regions of the U. New York, London, San Francisco, Los Angele...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IT Manager

    IT Manager

    PierceWheeling, IL, US
    serp_jobs.job_card.full_time
    It Infrastructure Operations Manager.We are seeking a strategic and hands-on IT Infrastructure Operations Manager to lead our infrastructure team. This role is responsible for overseeing the design,...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    IT Security Manager

    IT Security Manager

    Renewance IncElmhurst, IL, United States
    serp_jobs.job_card.full_time
    Renewance : Renewance is a leading provider of cradle-to-grave stewardship solutions for industrial batteries in the energy and electric vehicle industries. Our innovative SaaS product, RenewanceConn...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    IT Security GRC Manager

    IT Security GRC Manager

    ShureNiles, IL, United States
    serp_jobs.job_card.full_time +1
    Join our Global IT Team at Shure!.Manager, IT Governance, Risk & Compliance.You'll manage the Risk Register, Vulnerability Management, and Audit and Reporting programs and collaborates closely with...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days