Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
Provide daily supervision of IT Security staff and tasks.
Responsible for effective and comprehensive administration of the cryptographic key management program, which includes the generation, exchange, storage, use, replacement and documentation of cryptographic keys. Possess a full understanding of key management servers, symmetric and asymmetric keys, and public key infrastructure (PKI).Ensure compliance with all applicable internal and external Information Security requirements through coordination of internal and external Logical Security audits. Maintains a system that fosters appropriate information security training and awareness. Responsible for developing and maintaining a system that encourages the routine use of risk assessments and risk management planning related to the information security features of systems, tools and networks.
Responsible for assessing, reporting and assisting in the remediation of IT security vulnerabilities for IT systems and applications that are part of G+D operations.
Responsible for designing, documenting, training and testing of the corporate IT Security Incident Response Plan.
Responsible for maintaining status information regarding the configuration files for information security appliances, software and equipment (monthly firewall rule target/configuration comparison etc.)Independently contribute ideas and process improvements and look for creative solutions and better ways of doing things, in order to meet goals of continuous improvementIdentify, analyze, and address problems in order to resolve issues whenever possible in a way that minimizes the negative impact on the organizationWork with the ISF (information security forum) materials and tools including participation in local ISF chapter meetingsAnalyze issues not only from a local point of view but should also consider the global scope of G+D operationsPerforms other duties as assignedComplies with all policies and standards
GE
Giesecke+Devrient ePayments America, Inc.
IT Security Administrator III
Career Insights for Cyber Security Manager / Administrator
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Virginia data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Manager or Administrator monitors, controls, and maintains systems that protect the security of large databases, including databases with customer information and patient files. Manages and administers the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
$128,940 / year median in Virginia
+0% projected growth
Job Description
Job Summary:
The Information Security Administrator III has overall responsibility for the administration of the Information Security program for Giesecke+Devrient America, Inc (G+D). This includes the ongoing administration of G+D's security certifications for ISO 27001, PCI, and internal information security compliance. Serve as the subject matter expert in data security and act as a consultant in assisting other departments with IT Security process and documentation. Investigate findings to determine root causes and recommend necessary preventative actions to mitigate reoccurrence of the associated risks. Must have ability to provide 24x7 for possible Security or IT related emergencies and/or escalations.Essential Functions:
Administer and preserve G+D Security Certifications through the administration and ongoing enhancement of the Information Security Management System with a primary focus on ISO 27001, Cryptographic Key Management and PCI Logical Security requirements. Ensure Information Security controls are relevant, properly documented and maintained for ongoing recertification and governance activities. Part of the role is to maintain a system that fosters appropriate, demonstrable, auditable and coordinated security procedures, and practices that are compliant with related laws, regulations, policies and professional standards.Provide daily supervision of IT Security staff and tasks.
Responsible for effective and comprehensive administration of the cryptographic key management program, which includes the generation, exchange, storage, use, replacement and documentation of cryptographic keys. Possess a full understanding of key management servers, symmetric and asymmetric keys, and public key infrastructure (PKI).Ensure compliance with all applicable internal and external Information Security requirements through coordination of internal and external Logical Security audits. Maintains a system that fosters appropriate information security training and awareness. Responsible for developing and maintaining a system that encourages the routine use of risk assessments and risk management planning related to the information security features of systems, tools and networks.
Responsible for assessing, reporting and assisting in the remediation of IT security vulnerabilities for IT systems and applications that are part of G+D operations.
Responsible for designing, documenting, training and testing of the corporate IT Security Incident Response Plan.
Responsible for maintaining status information regarding the configuration files for information security appliances, software and equipment (monthly firewall rule target/configuration comparison etc.)Independently contribute ideas and process improvements and look for creative solutions and better ways of doing things, in order to meet goals of continuous improvementIdentify, analyze, and address problems in order to resolve issues whenever possible in a way that minimizes the negative impact on the organizationWork with the ISF (information security forum) materials and tools including participation in local ISF chapter meetingsAnalyze issues not only from a local point of view but should also consider the global scope of G+D operationsPerforms other duties as assignedComplies with all policies and standards