Howmet Aerospace

Senior Manager, Cybersecurity Operations - Pittsburgh

Pittsburgh, PA
We are a company of innovators and makers. We are transforming the future of flying and driving with

Job Description

Senior Manager, Cybersecurity Operations

Posted: Tuesday, 3/19/2024

As the Senior Manager, Cybersecurity Operations , you will report to the Chief Information Security Officer (CISO) to develop and execute our company's comprehensive information security program. You will play a key role in ensuring the confidentiality, integrity, and availability of our company's information assets, as well as managing and mitigating information security risks across the organization. You will oversee the day-to-day activities of the Security Operations function and act as a trusted advisor to senior leadership on matters related to information security.


Major Activities and Key Challenges:

  • In partnership with the CISO, develop and implement the overall information security strategy, policies, and procedures in alignment with business goals and industry best practices
  • Manage team responsible for cybersecurity engineering, vulnerability management, incident response, security awareness and maintaining Cyber internal website
  • Lead and manage a team of information security professionals, providing guidance, mentorship, and performance feedback; fostering a team environment built on trust, innovation, and integrity
  • Collaborate with cross-functional teams, including IT, legal, compliance, risk management, and business units, to ensure effective integration of information security practices
  • Oversee the development and maintenance of information security awareness and training programs for employees to foster a security-conscious culture throughout the organization
  • Ensure all security tools and products are current/patched, optimized & healthy to provide maximum security levels
  • Direct the facilitation of risk and vulnerability assessments throughout the organization, partnering with the information technology and business teams to develop and implement action plans, prioritizing and responding to raised issues
  • Oversee incident response activities, including investigation, containment, and remediation of security incidents or breaches
  • Prepare reports and presentations on key metrics and ongoing initiatives, delivering results to senior leadership, executive management, the audit committee and the Board of Directors
  • Develop and maintain strong relationships with external partners, vendors, and industry groups to stay abreast of emerging threats, technologies, and industry trends
  • Stay current with evolving information security regulations, laws, and industry standards, and provide recommendations and expert opinion on compliance
  • Foster a culture of continuous improvement within the information security function, driving innovation, efficiency, and effectiveness
  • Provide hands on assistance with security administration of the cybersecurity solutions as needed
  • Provide off-hours on-call assistance as needed

Essential knowledge, skills, and abilities:

  • Excellent communication and interpersonal skills, with the ability to effectively collaborate with stakeholders at all levels of the organization
  • Strong analytical and problem-solving abilities, with a focus on balancing security requirements with business needs
  • Demonstrated experience communicating technical information to non-technical individuals or groups
  • Demonstrated ability to drive change and influence organizational culture towards information security

Requirements
  • Bachelor's degree in information systems, information cybersecurity or a related field
  • 8+ years of progressive experience in information security, with at least 3 years in a leadership role
  • Strong knowledge of information security principles, technologies, and best practices, including risk management, vulnerability management, incident response, and security operations
  • Experience implementing and maintaining security tools; EDR/XDR, SIEM, Vulnerability Management, Privileged Access Management, Privileged Remote Access, Enterprise Identity & Access Management, etc.
  • Experience working a cybersecurity incident
  • Experience developing, documenting, and implementing information security strategies, policies, and procedures in a complex organizational environment
  • Experience with regulatory compliance frameworks (e.g., GDPR, HIPAA, SOX) and industry standards (e.g., NIST, CMMC, ISO 27001)
  • Proven ability to lead and manage a diverse team of information security professionals, including remote teams and third-party vendors
  • Employees must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. Visa sponsorship is not available for this position
  • This position entails access to export-controlled items and employment offers are conditioned upon an applicant's ability to lawfully obtain access to such items

Howmet Aerospace At A Glance

We are a company of innovators and makers. We are transforming the future of flying and driving with high-performance engineered solutions that are paired with advanced manufacturing expertise. We help make high performance, more fuel-efficient engines for aerospace and defense applications. Our market-leading aluminum wheels help trucks save fuel and reduce maintenance while rolling in style. Our customers' products stay connected and secure with our high-tech fastening systems.
Apply Now

Classet is a skilled trades network. Once you have applied, A Classet recruiter will reach out within 24 hours to learn more about your career search! Classet helps everyone from experienced crafstmen & women to eager apprentices find new opportunities. We are here to help you find the right fit for your career.