Data and Cybersecurity Manager
Job Description
Benefits
ATSER supports your health, financial security, and professional growth with a comprehensive benefits package and a collaborative culture.
- 401(k)
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
Location and Compensation
Location: Houston, TX (onsite)
Salary: USD 90,000 - 123,000 per year
Why ATSER?
Join a team working with cutting edge technology in a rapidly growing industry. You will contribute within a collaborative and supportive environment that values innovation. The overall compensation package is competitive and includes health coverage, a performance bonus program, a 401(k) with matching, and paid time off. The role is based in a modern Houston office and offers the chance to make a meaningful impact on the construction sector.
Responsibilities
- Provide guidance and maintain GovRAMP certification efforts
- Develop, implement, and uphold a comprehensive information security program to protect company and customer data
- Perform regular security risk assessments and vulnerability scans to identify and mitigate threats
- Oversee security controls such as firewalls, intrusion detection systems, and data encryption
- Investigate and respond to security incidents following established procedures
- Stay informed on evolving threats and trends to keep the security posture robust
- Develop and deliver security awareness training for employees
- Collaborate with IT and other departments to embed security across the business
Requirements
- At least 2 years of information security experience in enterprise environments
- Strong communication and collaboration skills to work with cross-functional teams
- Experience with StateRAMP, GovRAMP, and FedRAMP
- Proven track record developing, implementing, and maintaining information security policies and procedures
- Solid understanding of security best practices including risk management, vulnerability assessments, and incident response
- Experience with security frameworks such as NIST CSF, SOC 2, and ISO 27001 is a plus
- Hold or pursuing CISM, CISSP, or CRISC certifications
- Ability to translate technical security concepts into clear language for technical and non-technical audiences
- Proficiency with security tools and technologies (SIEM, EDR, vulnerability scanners, etc.)
Technologies
- SIEM
- EDR
- Vulnerability scanners
- Firewalls
- Intrusion detection systems
- Data encryption
- StateRAMP
- GovRAMP
- FedRAMP
- NIST CSF
- SOC 2
- ISO 27001