Information Security Engineer/Manager
100% Remote
We are seeking an experienced Information Security Engineer / Manager to design, implement, and manage security controls to protect organizational systems, networks, and data. The candidate will be responsible for ensuring security best practices, managing risks, and supporting compliance initiatives.
Design, implement, and maintain information security policies, standards, and procedures.
Monitor and respond to security incidents and vulnerabilities.
Perform risk assessments, security audits, and gap analysis.
Implement and manage security tools (SIEM, endpoint protection, firewall, IDS/IPS, DLP).
Ensure compliance with security frameworks and regulations (ISO 27001, SOC2, GDPR, etc.).
Conduct vulnerability assessments and penetration testing coordination.
Provide security awareness training to employees.
Manage and mentor security team members (for Manager role).
Strong knowledge of information security principles and practices.
Experience with security technologies and tools.
Understanding of network, system, and cloud security.
Experience in incident response and threat management.
Good communication and documentation skills.
Security certifications such as CISSP, CISM, CEH, or ISO 27001 Lead Implementer/Auditor.
Experience in cloud security (AWS, Azure, GCP).
Experience in governance, risk, and compliance (GRC).