General Manager Cybersecurity Assurance

Full time @JetBlue Airways in Transport and Freight Email Job

Job Detail

  • Job ID 1846
  • Career Level  Manager
  • Experience  6 Years
  • Qualifications  Degree Bachelor

Job Description

Position Summary

The General Manager, Cybersecurity Assurance will be responsible for providing critical support to the company with respect to security program and team development, including: policy development, security framework alignment, independent research, technical analysis, reporting, and project management. This position is a blend of hands-on and management and requires strong technical knowledge of information security concepts such as intrusion detection systems, malware analysis, NextGen firewalls, ACL’s, vulnerability scanning tools, and security operations monitoring. This position also requires strong interpersonal skills, given the cross-functional nature of relevant projects. The General Manager will be responsible for leading Cybersecurity related teams and projects including data classification, implementation of industry security standards and framework while conducting assessments of these controls.

Essential Responsibilities

  • Leads Cybersecurity team related efforts such as data protection, implementation of industry security standards and frameworks, as well as incident response requirements
  • Leads ongoing threat and vulnerability assessments and substantive testing of security controls
  • Performs due diligence reviews and manages the remediation efforts of SOC1/SOC2 reports, penetration tests, PCI vulnerability scans, and other related documents
  • Oversees and performs IT security risk assessments
  • Incorporates best practice information and stays abreast of threat intelligence information related to JetBlue
  • Define, develop and implement data security standards including data classification, encryption, data loss prevention, data access governance for structure and unstructured data and monitoring to prevent data related security incidents
  • Provide to project and operational teams security advice, guidance, technical expertise and risk analysis as well as support with remediation requirements.
  • Conduct enterprise-wide, ongoing risk analysis in collaboration with compliance and IT Security
  • Maintain strong oversight of third parties and business partners to safeguard against undue risk
  • Assists with project management of business partners’ deliverables
  • Performs general research and analysis for information security and compliance related issues
  • Reviews and leads the team through analysis of dashboard reporting for key cybersecurity metrics
  • Performs other duties as assigned

Minimum Experience and Qualifications

  • Bachelors’ degree in Information Security or related field
  • Six (6) years of experience in information security field
  • Experience as head of Merchant or Service Provider’s PCI compliance efforts
  • Experience developing a Cloud Security Strategy and leading security operations
  • CISSP, CISA, CISM, or GIAC valid certification
  • Available for occasional overnight travel (5%)
  • Must pass a ten (10) year background check and pre-employment drug test
  • Must be legally eligible to work in the country in which the position is located

Preferred Experience and Qualifications

  • Experience building and maintaining a security event logging system (e.g. Elk or Commercial solution)
  • Experience in regulatory compliance matters (e.g., SEC, FINRA, GLBA, TSA, etc.)
  • Experience in computer forensics and incident response
  • Hands-on experience with information security tools (e.g., PaloAlto, FireEye, Bluecoat, Rapid7, etc.)
  • Experience in internal audit and risk management concepts
  • Knowledge of industry standards and frameworks (e.g., ISO 2700x, CobIT, COSO, PCI, etc.)
  • Experience in the airline industry

Crewmember Expectations:

  • Regular attendance and punctuality
  • Potential need to work flexible hours and be available to respond on short-notice
  • Well-groomed and able to maintain a professional appearance
  • When working or traveling on JetBlue flights, and if time permits, all capable crewmembers are asked to assist with light cleaning of the aircraft
  • Must be an appropriate organizational fit for the JetBlue culture, that is, exhibit the JetBlue values of Safety, Caring, Integrity, Passion, and Fun
  • Must fulfill safety accountabilities as prescribed by JetBlue’s Safety Management System
  • Promote JetBlue’s #1 value of safety as a Safety Ambassador, supporting JetBlue’s Safety Management System (SMS) components, Safety Policy and behavioral standards
  • Identify safety and/or security concerns, issues, incidents or hazards that should be reported and report them whenever possible and by any means necessary including JetBlue’s confidential reporting systems (Aviation Safety Action Program (ASAP) or Safety Action Report(SAR))
  • Responsible for adhering to all applicable laws, regulations (FAA, OSHA, DOT, etc.) and Company policies, procedures and risk controls
  • Uphold JetBlue’s safety performance metric goals and understand how they relate to their duties and responsibilities

Equipment:

  • Computer and other office equipment

Work Environment:

  • Normal Office Environment

Physical Effort:

  • Generally not required, or up to 10 pounds occasionally, 0 pounds frequently. (Sedentary)

Other jobs you may like