- Company Name
- nesto
- Job Title
- Project Manager, Security
- Job Description
-
**Job Title**
Project Manager, Security
**Role Summary**
Lead the end‑to‑end management of critical security initiatives (IAM, DLP, vulnerability management, penetration testing, incident response, SOC 2, ISO 27001 audits, etc.). Align security projects with industry frameworks (NIST CSF, CIS Controls) and coordinate cross‑functional teams across Security, Infrastructure, Application Support, IT Ops, Compliance, Legal, HR, and Finance. Develop project plans, budgets, schedules, RAID logs, and communication plans; monitor progress and risk; report status to executive leadership; and ensure change management, training, and awareness components are integrated.
**Expectations**
- 5+ years of project management experience, with 2–3 years in cybersecurity, risk management, or IT infrastructure projects.
- Strong knowledge of security concepts: IAM, encryption, firewalls, cloud security, vulnerability management.
- Familiarity with compliance frameworks: SOC 2, ISO 27001, PCI DSS, GDPR.
- Proven track record managing cross‑functional projects in fast‑paced environments and delivering executive‑level reports.
- Proficiency in project management tools (Asana, Jira, MS Project, Smartsheet, etc.).
- Ability to translate technical requirements into actionable business deliverables and maintain stakeholder communication.
**Key Responsibilities**
- Own project lifecycle for security initiatives: scope definition, planning, execution, closure, and post‑implementation review.
- Create and maintain project documentation: plans, schedules, budgets, RAID logs, and status reports.
- Coordinate with security engineers, infrastructure teams, and business stakeholders to ensure alignment with security frameworks and controls.
- Drive the implementation of IAM, DLP, incident response programs, and business resilience strategies.
- Manage vulnerabilities, penetration testing, and red‑team exercises, ensuring timely remediation.
- Lead yearly compliance audits (SOC 2, ISO 27001, 3402, etc.) and support evidence collection.
- Develop and execute change management, training, and awareness programs tied to security projects.
- Provide regular updates to the VP of Security, Associate Director of IT Operations Project Management, and other governance bodies.
**Required Skills**
- Project management (scope, schedule, cost, risk, quality).
- Cybersecurity fundamentals (IAM, cloud security, encryption, firewall, vulnerability management).
- Experience with compliance frameworks (SOC 2, ISO 27001, PCI DSS, GDPR).
- Stakeholder management and executive communication.
- Change management and awareness program development.
- Documentation and PMO process improvement.
**Required Education & Certifications**
- Bachelor’s degree in Information Technology, Computer Science, Business, or related field (preferred).
- PMP or CAPM certification (required).
- Security certifications (CISSP, CISM, CISA, or CompTIA Security+) preferred.
- Background in cloud environments (Azure, AWS, GCP) security projects is a plus.
- Bilingual: French and English (preferred).