Information Security Manager

UKGNew Jersey, United StatesOn-siteFull-timeMid level, 2–5 yearsListed 12 hours ago

Apply now

About this role

Why UKG:

At UKG, the work you do matters. The code you ship, the decisions you make, and the care you show a customer all add up to real impact. Today, tens of millions of workers start and end their days with our workforce operating platform. Helping people get paid, grow in their careers, and shape the future of their industries. That’s what we do.

We never stop learning. We never stop challenging the norm. We push for better, and we celebrate the wins along the way. Here, you’ll get flexibility that’s real, benefits you can count on, and a team that succeeds together. Because at UKG, your work matters—and so do you.

About the Role:

The Information Security Manager will be responsible for assisting the CISO in developing and implementing the adherence to Information Security for UKG National Trust Bank (NTB). The ideal candidate will successfully interface and help coordinate with UKG IT, IS teams and various other departments, assist in developing information security related polices and processes, complete and update risk assessments annually, assist staff with various IT and IS tasks and be a contributor for IT and Cyber related audits, self-assessments, and OCC examinations. This role requires a well-rounded understanding of all cybersecurity and IT-related risks, preferably with banking or financial services experience, with the ability to step into an operational role as needed.

Your Responsibilities:

• Assist the CISO in the development and implementation of UKG National Trust Bank (NTB) information security strategy to align with our third-party affiliate relationship with UKG and FFIEC regulatory requirements.
• Oversee the protection of NTB data, intellectual property, and technology assets from various internal and external threats.
• Assist in developing, updating, and ensuring security policies, procedures, and protocols that align with business goals and banking regulation requirements.
• Help identify and mitigate security risks to ensure the organization remains resilient against emerging threats.
• Assisting in managing security related audits, including an annual independent review, compliance assessments, incident response processes, and investigating security breaches.
• Collaborating with UKG operational teams (IT and Infosec) to integrate cyber security and information security measures into NTB’s IT, Security, and business operations.
• Collaborate with various other UKG NTB teams to ensure operational goals and compliance needs are met.

Tasks

• Assist in developing, updating, implementing, and maintaining a comprehensive security program that includes cyber defense, data protection, and oversight of ongoing cyber security operations. The program will be in accordance with UKG policies and procedures in place but tailored to the necessary oversight needed for OCC banking requirements.
• Help conduct regular risk assessments, identify vulnerabilities, and prioritize remediation efforts to reduce risk exposure.
• Help contribute to security incident detection, response, and recovery activities, that help ensure the proper mitigation of real or potential incidents.
• Coordinate with UKG to ensure the security architecture, tools, and technologies deployed across the organization’s IT infrastructure are actively monitored.
• Monitor various security metrics and reports and populate dashboards to illustrate the metrics monitored as well as any trends that the analysis provides (KRI, KPIs etc.)
• Assist in the development of cybersecurity and privacy training programs for employees, executive management, and the board of directors.
• Assist in the planning and oversight of Business Continuity and Disaster Recovery related tests including tabletop exercises.
• Stay updated on cybersecurity trends, technologies, and best practices to enhance security measures proactively and ensure management and staff are also updated to relevant changes in the landscape.
• Be a member of NTB’s Information Security management committee whose responsibility will be to oversee all bank related Cybersecurity. Examples include creating and monitoring KRIs, and monitoring audit and regulatory issues, etc.
• Help manage IT and IS related projects for NTB.

About You:

• 10+ years of demonstrable experience in Information Security, Information Technology, Audit, or in a similar management level cybersecurity role (preferably in banking or finance sector). A combination of education and experience will be considered.
• Knowledge of information security principles, cybersecurity frameworks (e.g., NIST, ISO/ISE 27001), risk management, IT Service principles, and experience in implementing security strategies.
• Working knowledge of information security controls, vulnerability assessments, and risk mitigation techniques and planning.
• Solid knowledge of data privacy regulations, banking compliance, and Federal Financial Institutions Examination Council (FFIEC) requirements.
• Leadership, collaboration, and communication skills, in various group settings.
• Strong analytical and critical thinking skills with a keen eye for identifying potential risks and vulnerabilities.
• Ability to multi-task and adapt to changing environments.
• Experience in writing and updating policies.

Preferred skills and qualifications

• Relevant technology related certifications, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), CompTIA Security+.
• Experience with cloud security and securing cloud infrastructure.
• Familiarity with incident management and disaster recovery planning.
• Background in regulatory compliance and privacy laws in the banking or financial sector.
• Firsthand experience with SIEM tools, system administration, firewalls, and intrusion detection/prevention systems, Data Loss prevention tools, encryption tools.

Basic Qualifications:

• 10+ years of demonstrable experience in Information Security, Information technology, or similar senior-level cybersecurity role.

Company Overview:

UKG is the Workforce Operating Platform that puts workforce understanding to work. With the world's largest collection of workforce insights, and people-first AI, our ability to reveal unseen ways to build trust, amplify productivity, and empower talent, is unmatched. It's this expertise that equips our customers with the intelligence to solve any challenge in any industry — because great organizations know their workforce is their competitive edge. Learn more at ukg.com.

Equal Opportunity Employer

UKG is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, disability, religion, sex, age, national origin, veteran status, genetic information, and other legally protected categories.

View  The EEO Know Your Rights poster

UKG participates in E-Verify. View the E-Verify posters  here .

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Disability Accommodation in the Application and Interview Process

For individuals with disabilities that need additional assistance at any point in the application and interview process, please email  [email protected] .

The pay range for this position is $129,500 to $186,100. The actual base pay offered may vary depending on skills, experience, job-related knowledge and work location. In addition to base pay, employees may be eligible to participate in a performance-based bonus plan and to receive restricted stock unit awards as part of total compensation. Learn more about UKG’s benefits and rewards at https://www.ukg.com/about-us/careers/benefits