Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Building Service 32BJ Benefit Funds

Manager, Information Security

Building Service 32BJ Benefit Funds

Manager of Information Security responsible for protecting systems and data. Leading the IT Security Operations team, designing security architectures, and enhancing policies.

Posted 7/23/2026full-timeNew York City • New York • 🇺🇸 United StatesSeniorLead💰 $150,000 - $160,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in Information Security Management, including risk management, incident response, and the development of security policies and procedures. Proficient in managing security technologies and ensuring compliance with regulatory frameworks while leading a team of security professionals.

Highest-signal resume keywords
Information Security ManagementIncident Response ExperienceRisk Assessments and Vulnerability ManagementSecurity Technologies ManagementRegulatory Compliance Knowledge

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information Security DesignNetwork Security Systems MonitoringWindows/Unix ForensicsVulnerability ManagementSecurity Frameworks (ISO, NIST)Endpoint Protection SolutionsPenetration TestingIAM and RBAC ImplementationCloud Security (Microsoft Azure)Database Technologies (SQL, MySQL, Oracle)
Soft Skills
Excellent Communication SkillsDetail OrientedAnalytical SkillsOrganizational SkillsTeam Collaboration
Tools & Technologies
SIEM TechnologiesDLP SolutionsFirewallsIDS/IPSVulnerability ScannersWeb ProxiesMulti-Factor AuthenticationSSL VPNsThreat Intel PlatformsNetwork Security Groups
Industry Keywords
Risk ManagementBusiness Continuity PlanningIncident Response PlansCybersecurity ThreatsRegulatory Compliance (PCI, PII, HIPAA, GDPR)

Tech Stack

Tools & technologies
AzureCloudCyber SecurityDNSFirewallsiOSLinuxMySQLOracleSQLTCP/IPUnix

About the role

Key responsibilities & impact
  • Lead and manage the IT Security Operations team, including Information Security Analysts, Engineers, and Incident Responders.
  • Provides guidance and expertise in the field of risk management regarding the protection and security of digital assets in the cloud and on-premises.
  • Designs and develop Information Security architectures to prevent unauthorized access to our system, networks, data, and information.
  • Develops, maintains, enhances, and implements information security policies and procedures, including the Information Security Policy Manual, Incident Response plans, playbooks, runbooks, and the Business Continuity Plan documents on a regular basis as changes occur.
  • Coordinates and performs business continuity planning and incident response exercises on an annual basis within IT and with business champions.
  • Coordinates and leads response efforts during security incidents.
  • Manages, maintains, and monitors security technologies such as vulnerability scanning solutions, IDS/IPS, anti-virus technologies, DLP capabilities, SIEM technologies, EDR, host forensics and malware analysis, core and web application firewalls, network security groups, threat intel platforms, and proxy solutions.
  • Oversees and collaborates with our Security Operations Center (SOC) provider to review threat alerts, reports, and ensures the team follows up on all actionable information.
  • Receives guidance and collaborates with our vCISO to manage all security initiatives, risk mitigation plans, annual assessments, security audits, and penetration testing activities.
  • Manages real time threat detection technologies to identify and quarantine threats, monitors endpoint security alerts and takes corrective action.
  • Minimizes security threats by examining governance, technology infrastructure, and facilities to identify security deficiencies, using risk analysis and follow up with corrective action plan.
  • Monitors internal control systems to ensure appropriate access levels are maintained, protects against unauthorized system access, modification and destruction.
  • Reviews security related reports, logs and occurrences; escalates issues and initiates security response procedures.
  • Creates and reviews vulnerability reports, tracks compliance with vulnerability management policies, and escalates.
  • Researches and evaluates emerging technologies, latest cybersecurity threats, trends, tools, and best practices in support of security technology enhancements applicable to the organization’s environment, proposes technical solutions to management, to address security weaknesses, and coordinates with relevant stakeholders to implement.
  • Reviews, updates, and enforces data security practices within the organization; tests for exposures to ensure adherence to relevant regulations and frameworks (e.g., NIST, ISO 27001, PCI-DSS, HIPAA) and procedures and works with platform experts to implement remedial measures as appropriate.
  • Tests security controls and manages the associated remediation of any deficiencies as needed.
  • Assesses security information, triaging and responding to security events, identifying false positives, and conducts correlation analysis across numerous internal and external data sources while prioritizing information security incidents.
  • Performs project management tasks for security initiatives and projects.
  • Manages incident-handling processes, which include implementation of containment, protection, and remediation activities.
  • Supports information security training and awareness by providing ideas and content and collaborates with the Training and Development department with updates to employee security awareness education and training.
  • Manage multiple priorities and deadlines concurrently.
  • Provides support after hours, on weekends, and through on-call rotation.

Requirements

What you’ll need
  • 7+ years in Information Security, or IT Operations management and systems administration with at least 5 years specific to IT Security and at least 2 years managing IT Security staff.
  • Strong knowledge of Information Security design, principles, and processes; Experience in writing and maintaining information security policies, standards, and guidelines.
  • Incident response experience is required; in-depth knowledge of Windows/Unix operating system forensics, event logging systems, authentication methods, remote and local web application security, and penetration testing.
  • Advanced experience in networking (TCP/IP) protocols, DNS, LDAP, AD, DHCP, HTTP, web browsers, firewalls, and other computer/network and application security and system administration.
  • Demonstrated ability to monitor and audit network security systems such as Firewalls, IPS, SIEM, DLP, web proxy, NAC, and Vulnerability Scanners.
  • Hands on experience with mitigating security controls (i.e., IAM, RBACs, anti-virus, IPS/IDS, DLP, web and network proxies, URL content filtering, multi-factor authentication, SSL VPNs).
  • Familiar with regulatory compliance regulations (PCI, PII, HIPAA, GDPR, etc.).
  • Strong knowledge of common security frameworks (ISO, NIST, etc.).
  • Experience in risk assessments and vulnerability management.
  • General knowledge of Endpoint protection solutions.
  • Knowledge of mainstream operating systems (Microsoft Windows, Linux, IOS) and a wide range of security technologies.
  • Microsoft Azure DevOps Security design implementation, automation is a plus.
  • General knowledge of Database technologies and queries (Microsoft SQL, MySQL, Oracle, etc.) is a plus.
  • Ability to independently identify, research and resolve issues with minimal amount of supervision, and ability to work with peers in a team effort.
  • Detail oriented with excellent communication, organization and analytical skills. Ability to plan, take initiatives to accomplish objectives in a timely fashion, and work independently. Ability to prioritize work and meet deadlines. Ability to establish and maintain effective working relationships with project team members, supervisors, and other employees.

Benefits

Comp & perks
  • 🌐 Worldwide ❌ Jobs You've Hidden ⭐️ Saved Jobs ✅ Applied Jobs ✉️ Email Alerts 👤 Account Building Service 32BJ Benefit Funds Website LinkedIn All Job Openings 501 - 1000 employees ⚕️ Healthcare Insurance 🤝 Non-profit 💸 Finance Healthcare Insurance
  • Non-profit
  • Finance Building Service 32BJ Benefit Funds is a labor union benefit trust that administers health, pension, retirement (including SRSP/401(k)), and training benefits for members of SEIU Local 32BJ. The organization provides member services, enrollment and eligibility support, benefit communications and materials, and manages vendor relationships for health plans and retirement services. It serves as an administrator and steward of benefits and related member resources for eligible union employees and their dependents. Manager, Information Security 🔥 2 hours ago 🏢 New York City – Onsite 💵 $150k - $160k / year ⏰ Full Time 🟠 Senior 🔴 Lead 👮‍♂️ Cybersecurity / Security Engineer Azure Cloud Cyber Security DNS Firewalls iOS Linux MySQL Oracle SQL TCP/IP Unix Apply Now Find Hiring Managers Customize resume + cover letter Report problem ☆ Save ☑️ Mark as applied ❌ Hide 📋 Description
  • Lead and manage the IT Security Operations team, including Information Security Analysts, Engineers, and Incident Responders.
  • Provides guidance and expertise in the field of risk management regarding the protection and security of digital assets in the cloud and on-premises.
  • Designs and develop Information Security architectures to prevent unauthorized access to our system, networks, data, and information.
  • Develops, maintains, enhances, and implements information security policies and procedures, including the Information Security Policy Manual, Incident Response plans, playbooks, runbooks, and the Business Continuity Plan documents on a regular basis as changes occur.
  • Coordinates and performs business continuity planning and incident response exercises on an annual basis within IT and with business champions.
  • Coordinates and leads response efforts during security incidents.
  • Manages, maintains, and monitors security technologies such as vulnerability scanning solutions, IDS/IPS, anti-virus technologies, DLP capabilities, SIEM technologies, EDR, host forensics and malware analysis, core and web application firewalls, network security groups, threat intel platforms, and proxy solutions.
  • Oversees and collaborates with our Security Operations Center (SOC) provider to review threat alerts, reports, and ensures the team follows up on all actionable information.
  • Receives guidance and collaborates with our vCISO to manage all security initiatives, risk mitigation plans, annual assessments, security audits, and penetration testing activities.
  • Manages real time threat detection technologies to identify and quarantine threats, monitors endpoint security alerts and takes corrective action.
  • Minimizes security threats by examining governance, technology infrastructure, and facilities to identify security deficiencies, using risk analysis and follow up with corrective action plan.
  • Monitors internal control systems to ensure appropriate access levels are maintained, protects against unauthorized system access, modification and destruction.
  • Reviews security related reports, logs and occurrences; escalates issues and initiates security response procedures.
  • Creates and reviews vulnerability reports, tracks compliance with vulnerability management policies, and escalates.
  • Researches and evaluates emerging technologies, latest cybersecurity threats, trends, tools, and best practices in support of security technology enhancements applicable to the organization’s environment, proposes technical solutions to management, to address security weaknesses, and coordinates with relevant stakeholders to implement.
  • Reviews, updates, and enforces data security practices within the organization; tests for exposures to ensure adherence to relevant regulations and frameworks (e.g., NIST, ISO 27001, PCI-DSS, HIPAA) and procedures and works with platform experts to implement remedial measures as appropriate.
  • Tests security controls and manages the associated remediation of any deficiencies as needed.
  • Assesses security information, triaging and responding to security events, identifying false positives, and conducts correlation analysis across numerous internal and external data sources while prioritizing information security incidents.
  • Performs project management tasks for security initiatives and projects.
  • Manages incident-handling processes, which include implementation of containment, protection, and remediation activities.
  • Supports information security training and awareness by providing ideas and content and collaborates with the Training and Development department with updates to employee security awareness education and training.
  • Manage multiple priorities and deadlines concurrently.
  • Provides support after hours, on weekends, and through on-call rotation. 🎯 Requirements
  • 7+ years in Information Security, or IT Operations management and systems administration with at least 5 years specific to IT Security and at least 2 years managing IT Security staff.
  • Strong knowledge of Information Security design, principles, and processes; Experience in writing and maintaining information security policies, standards, and guidelines.
  • Incident response experience is required; in-depth knowledge of Windows/Unix operating system forensics, event logging systems, authentication methods, remote and local web application security, and penetration testing.
  • Advanced experience in networking (TCP/IP) protocols, DNS, LDAP, AD, DHCP, HTTP, web browsers, firewalls, and other computer/network and application security and system administration.
  • Demonstrated ability to monitor and audit network security systems such as Firewalls, IPS, SIEM, DLP, web proxy, NAC, and Vulnerability Scanners.
  • Hands on experience with mitigating security controls (i.e., IAM, RBACs, anti-virus, IPS/IDS, DLP, web and network proxies, URL content filtering, multi-factor authentication, SSL VPNs).
  • Familiar with regulatory compliance regulations (PCI, PII, HIPAA, GDPR, etc.).
  • Strong knowledge of common security frameworks (ISO, NIST, etc.).
  • Experience in risk assessments and vulnerability management.
  • General knowledge of Endpoint protection solutions.
  • Knowledge of mainstream operating systems (Microsoft Windows, Linux, IOS) and a wide range of security technologies.
  • Microsoft Azure DevOps Security design implementation, automation is a plus.
  • General knowledge of Database technologies and queries (Microsoft SQL, MySQL, Oracle, etc.) is a plus.
  • Ability to independently identify, research and resolve issues with minimal amount of supervision, and ability to work with peers in a team effort.
  • Detail oriented with excellent communication, organization and analytical skills. Ability to plan, take initiatives to accomplish objectives in a timely fashion, and work independently. Ability to prioritize work and meet deadlines. Ability to establish and maintain effective working relationships with project team members, supervisors, and other employees. Apply Now 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score Similar Jobs Information Security Engineer – Bare Metal 🕒 6 days ago FluidStack 11 - 50 🤖 Artificial Intelligence Website LinkedIn All Job Openings Information Security Engineer securing AI infrastructure in dynamic environment. Leading initiatives in end-to-end security for servers and infrastructure supporting AI technology. 🏢 New York City – Onsite 💵 $168k - $225k / year ⏰ Full Time 🟡 Mid-level 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer Ansible Chef Cloud Linux Puppet Python Rust TCP/IP Go Product Security Principal 🕒 July 14 Flagstar Bank 5001 - 10000 🏦 Banking 💸 Finance 🏠 Real Estate Website LinkedIn All Job Openings Product Security Principal at Flagstar Bank responsible for security in product lines. Collaborating with technology and risk management teams to ensure security-first culture. 🏢 New York City – Onsite 💵 $159.1k - $242.1k / year ⏰ Full Time 🔴 Lead 👮‍♂️ Cybersecurity / Security Engineer 🦅 H1B Visa Sponsor AWS Azure Cloud Cyber Security Microservices Treasury Management Vertical Leader – Insurance & Security Brokers 🕒 July 13 U.S. Bank 10,000+ employees 🏦 Banking 💸 Finance 💳 Fintech Website LinkedIn All Job Openings Treasury Management Vertical Leader leading sales professionals in Insurance & Security Brokers vertical at U.S. Bank. Driving client acquisition and managing a high-performing sales organization. 🏢 New York City – Onsite 💵 $180.3k - $220.3k / year ⏰ Full Time 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer Executive Protection, Events Security Manager II – Major Events 🕒 July 3 Bank of America 10,000+ employees 🏦 Banking 💸 Finance 💳 Fintech Website LinkedIn All Job Openings Oversee executive protection and event security for Bank of America, ensuring safety and compliance with protocols. Develop security plans and coordinate with stakeholders for major events. 🏢 New York City – Onsite 💵 $120k - $154.8k / year ⏰ Full Time 🟡 Mid-level 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer 🦅 H1B Visa Sponsor Executive Protection & Events Security Manager II – Major Events Security Manager 🕒 July 3 Bank of America 10,000+ employees 🏦 Banking 💸 Finance 💳 Fintech Website LinkedIn All Job Openings Overseeing executive protection and ensuring safety at Bank of America events. Collaborating with teams for effective security planning and incident management. 🏢 New York City – Onsite 💵 $120k - $154.8k / year ⏰ Full Time 🟡 Mid-level 🟠 Senior 👮‍♂️ Cybersecurity / Security Engineer 🦅 H1B Visa Sponsor View More Security Engineer Jobs 🌐 Worldwide Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com Search Search Jobs by country Search jobs by city Search jobs by job title Search entry-level jobs Search junior-level jobs Search senior-level jobs Search jobs by tech stack Search jobs by contract type Search remote internships Search remote part-time jobs Remote jobs Anywhere in the World Companies Hiring Anywhere in the World Companies Hiring Sales People Anywhere in the World Companies Hiring Software Engineers Anywhere in the World Resources Advice Tips for finding remote jobs Interview questions and answers Resume examples Cover letter examples Post a job Affiliates Privacy policy Terms of service Job board SEO course AI Apply Copilot OpenClaw job finder Find jobs using your resume Jobs by Country Remote jobs anywhere in the world (Worldwide remote jobs) Remote jobs United States Remote jobs Australia Remote jobs Brazil Remote jobs Canada Remote jobs France Remote jobs Ireland Remote jobs Germany Remote jobs Netherlands Remote jobs Spain Remote jobs UK Popular Jobs Remote data analyst jobs Remote customer support jobs Remote executive assistant jobs Remote marketing jobs Remote product designer jobs Remote product manager jobs Remote project manager jobs Remote recruiter jobs Remote sales jobs Remote software engineer jobs Jobs by Type Remote full-time jobs Remote part-time jobs Remote contract jobs Remote internship jobs Remote entry-level jobs Remote jobs with no experience required Remote junior jobs (1-3 years of experience) Digital nomad jobs Remote jobs with no degree required Freelance remote jobs Temporary remote jobs Remote jobs hiring now Stay at home mom jobs