IT Security and Compliance Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

Encore Talent Solutions · 3 weeks ago

IT Security and Compliance Manager

Encore Talent Solutions is a trusted professional services firm dedicated to helping organizations achieve their goals by providing exceptional talent solutions. The IT Security and Compliance Manager is responsible for developing and managing security and compliance frameworks to ensure the integrity and confidentiality of systems and data while collaborating with various stakeholders to maintain compliance with relevant standards.

Staffing & Recruiting
Hiring Manager
Conner Sullivan
linkedin

Responsibilities

Develop and lead the organization’s cybersecurity program aligned with recognized frameworks such as NIST CSF, CIS Controls, and ISO 27001
Establish and maintain security policies, procedures, and standards across network, application, and cloud environments
Conduct periodic risk assessments, vulnerability scans, and security audits; coordinate remediation efforts with IT and business units
Monitor and enhance identity, access, and endpoint security controls across Microsoft 365, Azure/Entra ID, and other enterprise systems
Serve as a subject-matter expert on cybersecurity, ensuring alignment with DAV’s operational goals and compliance obligations
Oversee organizational compliance with PCI DSS, data privacy laws, vendor risk frameworks, and insurance security standards
Partner with internal stakeholders in Fundraising, CRM/Development, Finance, and HR to maintain compliance in payment systems and donor data handling
Coordinate security assessments for vendors, partners, and third-party systems; ensure appropriate due diligence documentation is maintained
Support audit readiness and external assessments, including responses to security questionnaires and evidence collection
Serve as the primary liaison for IT security and compliance matters with NITO, IT Directors, department heads, and executive leadership
Provide clear, actionable communication of security risks and compliance priorities to both technical and non-technical audiences
Build strong relationships with internal teams to promote a culture of accountability and proactive risk management
Represent the IT department in cross-functional committees and strategic planning initiatives related to cybersecurity and data governance
Lead employee cybersecurity training and phishing simulation campaigns to strengthen organizational awareness
Promote continuous improvement in security posture through education, communication, and cross-departmental engagement
Stay current on emerging threats, technologies, and compliance standards relevant to the client's mission and IT ecosystem

Qualification

Cybersecurity frameworksRisk managementCompliance programsPCI DSSCISSPCISMCISACRISCCompTIA Security+Analytical skillsCommunication skillsOrganizational skillsProblem-solving skills

Required

Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field (Master's degree preferred)
Minimum 5–7 years of experience in IT security, risk management, or compliance roles
Demonstrated success developing and managing enterprise security frameworks and compliance programs
In-depth understanding of PCI DSS, SOC 2, NIST, and related security standards
Proven ability to work collaboratively across departments and communicate effectively with executives, managers, and staff
Strong analytical, organizational, and problem-solving skills

Preferred

CISSP – Certified Information Systems Security Professional
CISM – Certified Information Security Manager
CISA – Certified Information Systems Auditor
CRISC – Certified in Risk and Information Systems Control
CompTIA Security+ or ISO 27001 Lead Implementer

Company

Encore Talent Solutions

twitter
company-logo
The more you’ve been looking for.

Funding

Current Stage
Growth Stage
Company data provided by crunchbase