onsite
Manager - Information Security and Compliance - Apexanalytix Careers
Software Engineer
Lead the organization’s information security and compliance program, driving risk management, governance, and audit initiatives across cloud and on‑prem environments.
About the role
Key Responsibilities
- Develop and execute a comprehensive information security strategy aligned with business objectives and regulatory requirements.
- Lead risk assessments, vulnerability management, and security audit programs, ensuring timely remediation and compliance with ISO 27001 and other standards.
- Collaborate with cross‑functional teams to embed security controls into product development, cloud architecture, and operational processes.
- Oversee incident response, investigation, and post‑incident analysis to strengthen defenses and reduce future risk.
- Manage third‑party security assessments, vendor risk, and contractual compliance.
Requirements
- 10+ years of experience in information security, with at least 5 years in a managerial role.
- Deep knowledge of security frameworks (ISO 27001, NIST, SOC 2) and cloud security best practices.
- Proven track record in risk management, audit, and incident response.
- Strong communication skills, able to translate technical concepts to non‑technical stakeholders.
- Relevant certifications (CISSP, CISM, or equivalent) preferred.
Skills
software developmentsystem designproblem solving