Jobs
>
Detroit

    Risk & Cyber Security Manager - Detroit, United States - Detroit Water and Sewerage Department

    Detroit Water and Sewerage Department
    Detroit Water and Sewerage Department Detroit, United States

    1 week ago

    Default job background
    Description

    Job Description

    Job Description

    This is not a Civil Service Position. DWSD employees are subject to provisions of Court Orders entered in United States District Court, Eastern District of Michigan, Southern Division, Case No with regard to certain terms and conditions of employment. DWSD does not honor reversion rights for internal candidates.

    Ensures adequate Governance and Compliance results with internal Technology Policies and Standards across all business units, including management of risk mitigation plans across all business units. Develops, tests, and maintains systems' security .Analyzes security of operations and integrated systems. Performs vulnerability assessments of systems and networks. Identifies where they deviate from acceptable configurations or applicable policies.

    The Manager – Cyber Security and Risk is responsible for establishing and maintaining the Detroit Water and Sewerage Department's enterprise-wide information technology risk and security management program ensuring that technology and information assets are highly available and adequately protected and to effectively translate business objectives and risk management strategies into specific security processes enabled by security technologies and services. This role requires continuous collaboration with the City of Detroit's Department of Innovation and Technology (DoIT) on infrastructure and enterprise applications to ensure secure and reliable services. The Department of Innovation and Technology (DoIT) has primary responsibility for security information and event management (SIEM), Security Awareness and Vulnerability Scanning.

    Essential Job Functions

    Identifying, evaluating, and reporting on technology and security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. Proactively work with the DWSD and DoIT and other functional areas to implement practices that meet defined policies and standards for effective and efficient technology risk management and information security. Develop, implement, and monitor a comprehensive enterprise information security and risk management program ensuring the integrity, confidentiality and availability of information owned, controlled, or processed by the Department.

    Institute a Cyber Security Incident Response Team comprised of key technical personnel from the various units and areas of DWSD and DoIT. Keep up to date of DWSD information security incidents and act as DWSD's primary control point during significant information security incidents.

    Develop a technology risk and security management framework and governance structure. Develop, implement, and maintain general CIS Critical Security Controls for DWSD. Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the DWSD Security program, facilitate appropriate resource allocation, and increase the maturity of the security posture.

    Provide regular reporting on the status of the technology risk and security program to DWSD Executive Staff and Board of Water Commissioners. Develop, maintain, and publish up-to-date information security policies, standards and guidelines including but not limited to general computer controls, general application controls and application specific controls.

    Related Job Functions

    Oversee the approval, training, and dissemination of security policies and practices in coordination with DoIT. Create, communicate, and implement a risk-based process for vendor risk management.

    Create and manage information security and risk management awareness training programs for all employees, contractors, and other approved system users. It is key to have a holistic approach to cybersecurity from a City Enterprise approach, so applicant will be point of contact between DWSD and DoIT for security related items.

    REQUIRED KNOWLEDGE, SKILLS AND ABILITIES

    • Plan security activities within the development life cycle, estimate costs and duration, their impacts related to tender/project execution and identify training needs.

    • Cybersecurity context and Cybersecurity Risk Analysis.

    • Cybersecurity Architecture Definition and requirement allocation.

    • Cascading requirements to suppliers, Managing Third Parties Risks.

    • Application of Cybersecurity Assurance Level.

    • Definition of Cybersecurity Operating Procedures.

    • Evaluation of the Tender/Project achieved Cybersecurity level.

    • Manage the budget of the project regarding Cybersecurity.

    • Manage the subcontractors in his/her perimeter.

    • Provide support during technical design meetings for cybersecurity activities.

    • Report on Tender / Project Cybersecurity status.

    • In case of external Cybersecurity audit, manage the relationship with auditors and establish lessons learned.

    • Knowledge of main Cybersecurity standards and regulations, such as ISO 2700X, 62443, NIST, NIS, and IEC 62443.

    • Architecture concepts and techniques of systems and networks, operating systems, and associated programming languages.

    Minimum Qualifications

    • Bachelor's degree in Information Technology, Engineering, Computer Science, Computer security, or related discipline A minimum of seven (7) years of broad Information Technology (IT) or Operational Technology (OT) experience including applications, infrastructure, operations, and controls.
    • A minimum of three (3) years of project management and operational experience gained through progressively more responsible positions.
    • Certifications: CISA, CRISC, CISSP, ISA/IEC 62443 or CISM desired
    • Master's Degree and/or Professional Accreditation in related functional field preferred

    Physical Requirements:

    Environment Working Requirements:
    Work is performed within an office, plant environment, remote sites, or other locations within the DWSD Service Area.

    Other Requirements:
    Must have a valid Michigan Driver's License

    Ability to work irregular hours, to commute to DWSD facilities and work sites, and respond to after hours emergencies and on-call responses.

    The above statement describe the general nature and level or work performed by
    employees assigned to the class. Incumbents may be required to perform job-related responsibilities and tasks other than those stated in this specification. Specific job duties may vary from position to position. Employees in this class are required to undergo
    alcohol and drug screening and are subject to a criminal background investigation.


  • A-Line Staffing Solutions

    IT Security Manager

    2 weeks ago


    A-Line Staffing Solutions Detroit, United States

    IT Security Manager · Location: Detroit - Hybrid · Rate: 50-55/hr on w-2 · Job Description: · Lead efforts to foster collaboration among project team members involved in internal information security functions. · Advocate for and enforce standards and recommendations regardi ...

  • V2soft

    IT Security Manager

    3 weeks ago


    V2soft Detroit, United States

    V2Soft ( · ) is a global company, headquartered out of Bloomfield Hills, Michigan, with locations in Mexico, Italy, India, China and Germany. At V2Soft, our mission is to provide high performance technology solutions to solve real business problems. We become our customer's true ...

  • A-Line Staffing Solutions

    IT Security Manager

    2 weeks ago


    A-Line Staffing Solutions Detroit, United States

    IT Security Manager · Location: Detroit - Hybrid · Rate: 50-55/hr on w-2 · Job Description: · Lead efforts to foster collaboration among project team members involved in internal information security functions. · Advocate for and enforce standards and recommendations regardi ...


  • Kering Wayne, United States OTHER

    Summary · Oversight and Management of the Kering Wayne on-site security, including contract guard force, CCTV, and access control systems. · Reports to Senior Manager, Compliance - Health, Safety, & Security. · 5 day per week on-site position is based in Wayne, NJ (subject to occ ...


  • Nemacolin Woodlands Farmington, United States

    ***: · As Security Operations Manager, you will be responsible for developing an environment that creates excitement for internal and external guests. In this position, you will also be responsible for creating "Real Life Magic" - as seen by our guests - as well as behind the sce ...


  • Cornerstone onDemand Detroit, United States Paid Work

    The Program Manager for Cornerstone is responsible for managing and implementing a comprehensive security program for the company's portfolio of applications. This involves identifying and assessing potential security risks, developing policies and procedures to mitigate those ri ...


  • FIS Global Detroit, United States OTHER

    Position Type : · Full time Type Of Hire : · Experienced (relevant combo of work and education) Education Desired : · Bachelor of Business Administration Travel Percentage : · 0%Job Description · GENERAL DUTIES & RESPONSIBILITIES · • Manages the Securities processing environm ...


  • Wells Fargo Sterling, United States

    **About this role**: · Wells Fargo is seeking a Data Center Security Manager to oversee a physical security staff that liaisons between multiple business lines and the technology organization. Will direct, plan, and provide physical security solutions for a high-risk complex. Man ...


  • CGH Medical Center Sterling, United States

    Shift · Monday - Friday, Days · Scheduled Weekly Hours · 40 · POSITION PURPOSE: · - Responsible for planning and organizing the emergency management activities and response on a twenty-four (24) hour basis to meet the organization's needs.- ESSENTIAL FUNCTIONS:- Oversees the secu ...


  • Intellibee Inc Detroit, United States

    Job Title: IT Security Manager(Risk and Regulatory) (Only W2) · Location: Detroit, MI · Top Skills: · Exceptional understanding of Risk and Regulatory requirements in Financial Services industry; · Exceptional written and verbal communication skills. Ability to interact acros ...


  • FIS - Fidelity Information Services Hamtramck, United States

    Manages the Securities processing environment to protect the production systems critical to the success of the business. - Delivers an operations environment that meets all service level agreements and availability targets. - Develops and recommends Operations Manager, Operations ...


  • Rock Family of Companies Detroit, United States

    The Rock Family of Companies is made up of nearly 100 separate businesses spanning fintech, sports, entertainment, real estate, startups and more. Were united by our culture a drive to find a better way that fuels our commitment to our clients, our community and our team members. ...


  • Rock Family of Companies Detroit, United States

    The Rock Family of Companies is made up of nearly 100 separate businesses spanning fintech, sports, entertainment, real estate, startups and more. We're united by our culture – a drive to find a better way that fuels our commitment to our clients, our community and our team membe ...


  • Rock Family of Companies Detroit, United States

    The Rock Family of Companies is made up of nearly 100 separate businesses spanning fintech, sports, entertainment, real estate, startups and more. We're united by our culture – a drive to find a better way that fuels our commitment to our clients, our community and our team membe ...


  • Jobs for Humanity Hamtramck, United States

    Company Description · Jobs for Humanity is collaborating with FIS Global to build an inclusive and just employment ecosystem. We support individuals coming from all walks of life. · Company Name: FIS Global · Job Description · Position Type : · Full time · Type Of Hire : ...


  • Motor City Casino Hamtramck, United States

    : · Join the best game in town · You already know that MotorCity is a great place to play. Now you can join the team that makes this a great place to work, too · We're hiring a Security Shift Manager to join our team. In this role, you'll supervise and direct security staff to he ...


  • USLI Wayne, United States

    Log analysis and triage: Review of security events to determine action items and prioritization thereof. · - Audit and compliance: Produce documentation in support of Company audit and compliance requirements. · - Validation and remediation: Review reports such as penetration tes ...


  • St. Joseph's Health Wayne, United States

    **Overview**: · **St. Joseph's Healthcare System **is recognized for the expertise and compassion of its highly skilled and responsive staff. The combined efforts of the organization's outstanding physicians, superb nurses, and dedicated clinical and professional staff have made ...


  • BAE Systems Wayne, United States

    You don't see it, but it's there. Our employees work on the world's most advanced electronics - from saving emissions in the City of Lights to powering the Mars Rover to protecting the F35 fighter jet. At Electronic Systems, you'll be among the brightest minds, working on the aer ...


  • BAE Systems Wayne, United States

    **Job Description · **The Supply Chain Planner (SCP) is the focal point for all supply chain activities. The planner supports execution of programs and coordination of new program / product launches. SCP assists with reporting of key performanceindicators, performance data, and m ...