Execute established security practices with consistency and discipline and continually look for ways to improve practices
Act as a technical lead for high-profile or high-risk incidents or investigations and consultations with affiliated Church entities
Oversee and mentor junior Information Security Engineers and/or interns
Direct the development of standard practices and tools within areas of expertise
Collaborate with engineers in other groups to implement standardized practices and follow routine process to promote secure systems
Participate in the development and refinement of Information Security programs
Participate in the evaluation, selection, testing and implementation of security-focused products and services
Develop and maintain documentation for security systems and procedures
Implement tools and processes that support information security initiatives
Improve and maintain security infrastructure, establish best practices and follow Church policies
Evaluate and help select methods and techniques for designing, defining, developing, testing, implementing and analyzing technical products and systems
Ensure information security controls are properly implemented, monitored and maintained to protect organizational data and systems
Assist the business in defining objectives, processes and measurements
Requirements
Bachelor’s degree in related field or equivalent professional experience
Five years of experience in security, privacy, business continuity, compliance or related area
Two years of demonstrable expertise and skills in the following areas: Attacker tactics for both enterprise and web systems, cyber threat intelligence, incident handling, continuous monitoring, intrusion detection, advanced network forensics, host forensics and malware analysis
Proven ability to successfully lead a highly technical team and design and implement security controls that meet business operational needs
Demonstrated ability to understand IT risk and effect change through indirect influence across workgroups or business units
Familiarity with programming and scripting
Excellent professional written and oral communication skills
This job operates in a professional office environment
Physical requirements: may include sitting for long periods of time and using computer monitors/equipment
Preferred: Relevant security certification from GIAC, CompTIA, ISC2, EC-Council, or equivalent