Job ID: JOB_ID_1003
Role Overview
We are looking for a proactive, detail-oriented Information Security Lead to join our team in Malvern, PA. This is a hybrid position that requires a strategic thinker with deep expertise in Information Security Programs, governance, and risk management. As the Information Security Lead, you will play a critical role in safeguarding our organization’s assets and ensuring compliance with industry standards and regulations. You will oversee security functions, manage vendor relationships, and lead the implementation of security programs across the enterprise. This role is pivotal in maintaining the trust of our clients and stakeholders by ensuring a robust and resilient security posture.
Key Responsibilities
- Act as the primary liaison with the Security Operations Center (SOC), ensuring operational excellence and strict policy compliance.
- Monitor SOC service delivery against established Service Level Agreements (SLAs) and Key Performance Indicators (KPIs), identifying areas for improvement.
- Identify security gaps and deficiencies, escalating issues as necessary and collaborating on comprehensive remediation plans.
- Drive governance practices to ensure that IT operations align with security, compliance, and performance requirements across all departments.
- Partner with business units on vendor projects to ensure that security standards are upheld and appropriate SLAs are established and maintained.
- Evaluate new and existing suppliers for compliance with confidentiality, integrity, and availability (CIA) standards through rigorous assessments.
- Collaborate with Risk and Vendor Management teams to address security gaps and implement corrective actions for third-party risks.
- Serve as an internal information security expert, providing advisory and consulting services to various business and IT partners.
- Analyze security gaps in emerging technologies and frameworks, incorporating remediation practices to mitigate risk in a rapidly evolving landscape.
- Communicate risk assessment findings and security concerns to business and IT partners in clear, actionable terms that drive decision-making.
- Develop, communicate, and maintain organizational information security policies and procedures to ensure they remain current and effective.
- Oversee security assessments and vulnerability scans, tracking and closing findings in accordance with organizational guidelines.
- Maintain and update IT contingency plans based on system criticality and business impact to ensure business continuity.
- Prepare comprehensive vulnerability and security governance reports for senior leadership and the Board of Trustees.
- Act as a security advocate for assigned lines of business, providing exceptional support and guidance on security-related matters.
Required Qualifications
- Undergraduate degree in Computer Science, Information Security, or a related field (or equivalent professional experience).
- Minimum of 5 years of experience in information security, with a focus on governance, risk management, and compliance (GRC).
- Demonstrated ability to manage complex vendor relationships and enforce security compliance across diverse supply chains.
- Strong analytical, problem-solving, and decision-making skills with a high attention to detail.
- Excellent communication and presentation skills, with the ability to convey technical security concepts to non-technical audiences.
- Professional Information Security Certification is required, with CISSP (Certified Information Systems Security Professional) being mandatory.
- Proven ability to work independently, exercise good judgment, and manage multiple priorities simultaneously in a high-pressure environment.
- Experience with security frameworks such as NIST, ISO 27001, or SOC2 and understanding of regulatory requirements.
- Strong understanding of SOC operations, incident response processes, and threat intelligence.
Professional Environment
This role offers the opportunity to lead security initiatives in a sophisticated IT environment. You will be part of a forward-thinking team dedicated to maintaining the highest standards of security and integrity. We value collaboration, innovation, and professional excellence. If you are a seasoned security professional looking for a leadership role where you can make a significant impact on organizational resilience, we invite you to apply and help shape the future of our information security program.
Special Requirements
Interview mode: Video/Phone. Hybrid work model in Malvern, PA. Requires CISSP certification. Focus on SOC oversight and vendor risk management.
Compensation & Location
Salary: $165,000 – $210,000 per year (Estimated)
Location: Malvern, PA
Recruiter / Company – Contact Information
Recruiter / Employer: TEK Inspirations LLC
Email: akash.verma@tekinspirations.com
Recruiter Notice:
To remove this job posting, please send an email from
akash.verma@tekinspirations.com with the subject:
DELETE_JOB_ID_1003