IT Security and Compliance Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

Encore Talent Solutions · 3 weeks ago

IT Security and Compliance Manager

Encore Talent Solutions is seeking an IT Security and Compliance Manager responsible for developing and managing security and compliance frameworks. This role involves collaborating with various departments to ensure the integrity and security of the company's systems and data.

Staffing & Recruiting

Responsibilities

Develop and lead the organization’s cybersecurity program aligned with recognized frameworks such as NIST CSF, CIS Controls, and ISO 27001
Establish and maintain security policies, procedures, and standards across network, application, and cloud environments
Conduct periodic risk assessments, vulnerability scans, and security audits; coordinate remediation efforts with IT and business units
Monitor and enhance identity, access, and endpoint security controls across Microsoft 365, Azure/Entra ID, and other enterprise systems
Serve as a subject-matter expert on cybersecurity, ensuring alignment with company’s operational goals and compliance obligations
Oversee organizational compliance with PCI DSS, data privacy laws, vendor risk frameworks, and insurance security standards
Partner with internal stakeholders in Fundraising, CRM/Development, Finance, and HR to maintain compliance in payment systems and donor data handling
Coordinate security assessments for vendors, partners, and third-party systems; ensure appropriate due diligence documentation is maintained
Support audit readiness and external assessments, including responses to security questionnaires and evidence collection
Serve as the primary liaison for IT security and compliance matters with NITO, IT Directors, department heads, and executive leadership
Provide clear, actionable communication of security risks and compliance priorities to both technical and non-technical audiences
Build strong relationships with internal teams to promote a culture of accountability and proactive risk management
Represent the IT department in cross-functional committees and strategic planning initiatives related to cybersecurity and data governance
Lead employee cybersecurity training and phishing simulation campaigns to strengthen organizational awareness
Promote continuous improvement in security posture through education, communication, and cross-departmental engagement
Stay current on emerging threats, technologies, and compliance standards relevant to company’s mission and IT ecosystem

Qualification

Cybersecurity frameworksRisk managementCompliance programsPCI DSSCISSPCISMCISACRISCISO 27001Analytical skillsOrganizational skillsProblem-solving skillsCommunication skills

Required

Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field (Master's degree preferred)
Minimum 5–7 years of experience in IT security, risk management, or compliance roles
Demonstrated success developing and managing enterprise security frameworks and compliance programs
In-depth understanding of PCI DSS, SOC 2, NIST, and related security standards
Proven ability to work collaboratively across departments and communicate effectively with executives, managers, and staff
Strong analytical, organizational, and problem-solving skills

Preferred

CISSP – Certified Information Systems Security Professional
CISM – Certified Information Security Manager
CISA – Certified Information Systems Auditor
CRISC – Certified in Risk and Information Systems Control
CompTIA Security+ or ISO 27001 Lead Implementer

Company

Encore Talent Solutions

twitter
company-logo
The more you’ve been looking for.

Funding

Current Stage
Growth Stage
Company data provided by crunchbase