Job Closed

This listing is no longer active.

Hamilton Company logo
Hamilton Company

Specializing in precision measurement devices, automated liquid handling workstations, and sample management

Lead Information Security

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 501-1,000H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

131 days ago

Salary

0

Seniority

Senior

Bachelor DegreeEnglish

Job Description

Lead Information Security

Hamilton Company

• Lead and maintain the organization’s information security governance framework, aligned to ISO/IEC 27001, including policies, standards, and control frameworks. • Provide alignment between cyber security program and ISO 22301. • Drive compliance with DORA, including ICT risk management, incident reporting, resilience testing, and third-party oversight. • Ensure ongoing alignment with Lloyd's of London, FCA and PRA regulatory expectations. • Oversee compliance with NYDFS Cybersecurity Regulation (23 NYCRR 500) where applicable. • Monitor emerging regulatory requirements and translate them into actionable security and resilience initiatives. • Act as a senior point of contact for regulators, auditors, and external assessors. • Provide leadership for enterprise information and cyber security risk management. • Support the definition and maintenance of security risk appetite, tolerances, and risk acceptance processes. • Review and challenge security risk assessments for critical systems, cloud platforms, major change programs, and third-party arrangements. • Oversee security control assurance, testing, and remediation tracking. • Produce clear, risk-focused reporting for executive management, risk committees, and the Board. • Provide oversight of cyber incident management, ensuring compliance with regulatory notification and reporting requirements. • Act as a decision-maker during major incidents, crisis situations, and cyber events. • Ensure regular testing of incident response, crisis management, and business continuity plans. • Oversee third-party and supply-chain security risk management, including due diligence, contractual controls, and ongoing monitoring.

Job Requirements

  • Extensive senior experience as an information security leader or senior information security professional in complex, regulated environments.
  • Deep practical experience with ISO/IEC 27001 (ISMS design, implementation, and assurance).
  • Strong experience with ISO 22301 and operational resilience frameworks.
  • Demonstrable experience delivering or governing compliance with DORA.
  • Strong understanding of FCA and PRA supervisory expectations related to cyber security, technology risk, and operational resilience.
  • Experience with NYDFS Cybersecurity Regulation (23 NYCRR 500) or equivalent international frameworks.
  • Proven ability to engage confidently with regulators and auditors.
  • Strong ability to translate complex technical and regulatory issues into clear business risk decisions.

Benefits

  • Hybrid working
  • Matching 401K plan
  • Medical, dental, vision, life, disability
  • Generous time off (including parental leave)
  • Continued support for professional development
  • Gym subsidy
  • My day (additional days leave for personal interests/wellness/charity work)

Related Categories

Related Job Pages

More Security Engineer Jobs

NTNT Rotterdam logo

Security Engineer / Architect

NTNT Rotterdam

NTNT maakt kantoorautomatisering simpel

Security Engineer131 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Ontwerpen en implementeren van Microsoft security-architecturen • Werken met Microsoft Defender, Sentinel en Entra ID • Adviseren over identity, compliance en threat detection • Ondersteunen bij incidenten en security-vraagstukken • Vertalen van risico’s naar concrete maatregelen

Netherlands
€4.2K - €7.0K / month
Job Closed
Inmar Intelligence logo

Product Security Engineer

Inmar Intelligence

We make businesses smarter to improve consumers' lives.

Security Engineer131 days ago
OtherRemoteTeam 1,001-5,000Since 1983H1B No Sponsor

• Conduct comprehensive security assessments of mobile applications, IoT hardware/firmware, compiled software, and browser extensions • Perform reverse engineering and vulnerability analysis, and penetration testing to uncover security risks • Analyze binary file formats (PE, ELF, Mach-O) and runtime behaviors for security flaws • Review browser extensions and software plugins for security flaws and compliance with best practices • Perform product data analysis to identify potential vulnerabilities and determine access scope • Collaborate with cross-functional teams (e.g. - engineering, product, and security) to enhance security measures and improve resilience against cyber threats • Develop and recommend mitigation strategies and risk profiles for identified vulnerabilities • Document findings and communicate security recommendations to both technical and non-technical audiences • Maintain organizational product inventory with security assessment status and secure configuration requirements • Responsible for the production and maintenance of security documentation, such as bill of material repositories and analytical procedure guides.

United States
$110.9K - $184.9K / year
OtherRemoteTeam 1,001-5,000Since 2012H1B Sponsor

• Drive revenue and increase market share in a defined set of accounts, resulting in the acquisition of new customers. • Develop a territory execution plan to meet or exceed quarterly revenue and new customer targets using a defined target prospect list. • Research & qualify prospects using business development strategies and completing field based sales activities. • Manage numerous accounts concurrently & strategically. • Personally create new leads and relationships with prospects and customers. • Become an expert at articulating OPTIV’s unique value proposition. • Learn OPTIV’s extensive catalog of service offerings and the local practice leaders who can assist assessing customers needs and fitting services to match them. • Build trusted, effective and productive relationships with technical, financial and executive decision makers within assigned accounts. • Create Account Plans for new clients based upon identified business, technology and security goals, coupled with Optiv's understanding of security trends, threats and points of view for each assigned account. • Build a sales pipeline to ideally 3 times assigned targets. • Manage current and multi-quarter forecasts with a high degree of accuracy, currency and integrity. • Execute with discipline and in alignment with Force Management principles including MEDDICC and Command of the Message. • Build strong, collaborative and productive relationships with technology partners and their respective sales personnel. • Facilitate all necessary communications between clients, technology partners and members of the extended Optiv team within each assigned account. • Maintain collaborative and effective internal communications with Optiv team members relative to specific opportunities.

New Jersey + 1 moreAll locations: New Jersey | Pennsylvania
Job Closed
bswift logo

Senior Manager, Information Security

bswift

Helping companies be ready for all their benefits needs, today and tomorrow.

Security Engineer131 days ago
OtherRemoteTeam 1,001-5,000H1B No Sponsor

• Lead execution of the enterprise information security program aligned with business objectives, regulatory requirements, and risk tolerance. • Translate security strategy into prioritized roadmaps, operational plans, and measurable outcomes. • Maintain and evolve security policies, standards, and procedures for a healthcare SaaS environment. • Act as a trusted security advisor to Product, Engineering, IT, and Customer Operations. • Ensure strong safeguards for PII and PHI throughout the benefits lifecycle. • Support customer security due diligence (questionnaires, audits, BAAs). • Partner with Legal and Privacy on risk assessments and regulatory‑appropriate incident handling. • Own or support compliance with HIPAA/HITECH, HITRUST CSF, and SOC 2 Type II. • Oversee threat detection/response, vulnerability management, IAM, endpoint security, and incident response processes. • Lead or coordinate security incident response, including containment, communication, and executive updates. • Drive continuous improvement through post‑incident reviews and control enhancements. • Partner with Engineering and Infrastructure teams to secure AWS and/or Azure environments, CI/CD pipelines, and SaaS architecture. • Ensure security is embedded into SDLC, cloud design, configuration management, and change management. • Promote secure‑by‑design and defense‑in‑depth principles. • Manage MSSPs/MDRs supporting day‑to‑day security operations. • Lead RFPs, vendor evaluations, contract negotiations, and renewals. • Oversee third‑party risk for vendors accessing sensitive benefits data. • Define and track security KPIs, KRIs, and control maturity measures. • Provide concise, meaningful reporting to the CISO and executive leadership. • Communicate risks and recommendations in business‑focused language. • Build, mentor, and develop a high‑performing security team. • Foster a culture of accountability, collaboration, and continuous improvement. • Lead security awareness and training programs. • Champion a security‑first mindset that supports innovation.

United States
Job Closed