If you are an internal associate, please login to Workday and apply through Jobs Hub.
Job Purpose
The manager will lead the vulnerability management function focused on finding, assessing, reporting, and supporting vulnerability remediation efforts within security operations. This role will also lead the processes, procedures and implementation of Azure Conditional Access and Single-Sign On. The manager will lead by forming strong partnerships with technical teams and guide their team members by providing vision, strategy, and prioritization of these responsibilities in a timely and effective manner.
Essential Responsibilities
Leads, identifies and guides vulnerability management activities.
Provides recommendations based on best practices and experience to develop processes that will enhance efficiencies needed to perform security related responsibilities.
Leads activities related to Azure Conditional Access and Single Sign On.
Develops models for identifying incident-type activity, either malware or threat actors.
Understands the current threat landscape and provides input to the Information Security program on areas of focus.
Drives actionable metrics and reporting for operations and leadership transparency.
Serves as subject matter expert related to vulnerabilities management and patching.
Works with other security and IT professionals to assess potential impact from threats specific to the environment, determines and implements recommendations for monitoring and tracking threats.
Provides mentorship, coaching, performance management, career development, and support to team members with regard to threats, vulnerability analysis, conditional access and Single Sign On.
Other Duties
Performs other duties and/or projects as assigned.
Knowledge, Skills and Abilities
Ability to interface with teams across the Information Security program and guide them through threats and security risks.
Ability to design, evaluate and document processes and lead teams in accomplishing process review and improvement.
Understanding of the relationship between threats, vulnerabilities, and information value in the context of risk management.
Knowledge of threat management related concepts, including attack vectors and modes of operation, threat actors, scope and modes of operation of known threats, patterns related to cyber threats, etc.
Understanding attacker mindset, exploitation, and how vulnerabilities are leveraged.
Excellent written and verbal communication skills.
Ability to lead a team and manage resources.
Ability to think clearly and make decisions under pressure.
Familiar with surface web, deep web, and dark web - specifically around forums, commodity malware, malware as a service.
Experience guiding and coaching others in subject matter.
Excel at prioritizing work and other demands for self and team including making risk-based decisions about remediation recommendations.
Ability to define, communicate, and execute on a vision and strategy.
Ability to effectively communicate with technical and non-technical resources.
Familiar with Conditional Access and Single Sign On.
Qualifications
Bachelor's Degree and/or equivalent experience required.
8+ years strong background in Information Security, IT, Cybersecurity, or some combination of both required.
CISSP required.
CEH preferred.
OSCP preferred.
Jackson is proud to be an equal opportunity workplace. The Company subscribes to and endorses federal and state laws and regulations relating to equal employment opportunity for all persons without regard to race, color, religion, gender, age, national origin, legally-recognized disability, marital status, legally-protected medical condition, citizenship, ancestry, height, weight, sexual orientation, veteran status, or any other factor not related to the needs of the job. The Company is committed to a policy of equal opportunity. Company facilities and campuses are tobacco-free environments.
Skills Required
- Bachelor's degree or equivalent experience
- 8+ years experience in Information Security, IT, or Cybersecurity
- CISSP certification
- CEH certification
- OSCP certification
What We Do
Jackson® is committed to helping clarify the complexity of retirement planning. Our range of annuity products, financial know-how, history of award-winning service*, and streamlined experiences strive to reduce the confusion that complicates retirement plans. We dedicate our time, money, and resources to strengthening financial literacy, striving to make sure every American has access to the resources they need to master their money and their future. We believe by providing clarity for all today, we can help drive better outcomes for tomorrow. Interested in becoming one of our associates? We develop and celebrate talent in many areas, from sales and marketing to consulting and compliance. We know that diversity and inclusion make us all stronger together. Learn more about our products at jackson.com Contact Us Jackson.com 517/381-5500 – General Information 800/644-4565 – Contract Owners 877/565-2968 – Values and Contract Information * SQM (Service Quality Measurement Group) Contact Center Awards Program for 2004 and 2006-2021. (To achieve world-class certification, 80% or more of call-center customers surveyed must have rated their experience as very satisfied, the highest rating possible.) Jackson® is the marketing name for Jackson National Life Insurance Company® (Home Office: Lansing Michigan) and Jackson National Life Insurance Company of New York® (Home Office: Purchase New York). Jackson National Life Distributors LLC. SMPR1292 03/23







