Jobs

Information Security Manager - GRC

About Panorama: Panorama is a fast-growing national technology company focused on radically improving education. More than 2,000 school systems serving 15 million students across all 50 states have adopted our platform to understand students’ academic and social-emotional strengths and to identify those in need of additional support. School systems turn to our suite of tools to ensure that every child gets the support they need, including school climate and social-emotional learning surveys, tiered intervention planning, and professional development.

Panoramians can choose to work fully remote anywhere within the Continental United States, in-person from our Boston office, or a hybrid option.

About the Role:

We are looking for an Information Security Manager - GRC to help improve Panorama’s stewardship of student data. Reporting to the Director of Information Security, a person in this role will be responsible for maintaining and improving the company information security risk management program and supporting our Sales and Contracts teams by serving as an Information Security subject matter expert. A person in this role will have a significant impact on our Information Security program through highly collaborative work with departments across the company to protect data stored in our product as well as business applications. This role will require hands-on work, have a lot of autonomy, and carries the opportunity to help plan and build the capacity of the department.

Responsibilities:

  • Become part of the growing Information Security team to understand and mitigate potential or present cyber threats and risks against Panorama.

  • Lead Panorama’s external risk assessment and audit process, further improving Panorama’s security posture. 

  • Use security risk assessments, penetration test results, and threat models to estimate risk levels for prioritizing security projects.

  • Maintain company risk register and business impact analysis and recommend priorities through cross-functional collaborations.

  • Collaborate across departments to help build processes for vendor risk management processes.

  • Participate in the Trust Council, a cross-functional body focused on security and privacy, to properly represent assessed risks to the company and to weigh in on various Information Security matters.

  • Identify and communicate emerging trends, threats, and industry best practices.

  • Collaborate with the Sales and Contracts teams to complete client questionnaires, contracts, and RFPs.

  • Assist in development, maintenance, and communication of security best practice training.

Our Ideal Candidate Has:

  • 5+ years of experience in Information Security, with at least 3 years in governance, risk, and compliance. 

  • Experience reviewing inbound and outbound security due diligence materials such as third party risk assessments.

  • Experience aligning to security control frameworks, including undergoing audits and developing security policies and procedures (Panorama aligns to NIST CSF and 800-171, but any framework is helpful)

  • Implemented new systems or practices across different product teams, and effectively aligned stakeholders to goals and process. 

  • Familiarity with risk management frameworks. 

  • Experience with IT governance, cloud security posture management, Software Development Life Cycle (SDLC), and web application programming.

  • Effectively performed in a cross-functional environment with an emphasis on leading through influence rather than authority.

  • Exceptional communication across all levels of an organization, stakeholder alignment, and driving business objectives 

  • A passion for protecting data, especially the data of K-12 students.

  • A Security+, CISSP, or equivalent certification is not required, but helpful.

Base Salary: $162,000 to $212,000

The “Base Salary” range represents the low and high end of the anticipated salary range for this position across all US locations. The determination of this anticipated Base Salary range involves the consideration of many factors in making compensation decisions including but not limited to: unique skill sets, experience, training, performance, licensure and certifications, as well as other business and organizational needs. Our anticipated Base Salary determination is just one component of Panorama’s competitive total rewards strategy that also includes annual bonus or commission awards, equity awards, as well as other region-specific health and welfare benefits.

Panorama Education is dedicated to building a diverse and inclusive company because we serve students, educators and families from tremendously diverse backgrounds and identities across the country; we’ve seen how our product and impact are strengthened the more we reflect that diversity. In addition, we have found (and we believe the research) that diverse teams are higher-performing, and we embrace the varied perspectives that our team members share with each other. As such, we are an Equal Opportunity Employer. Panorama also has a policy on maintaining a drug-free workplace.

#LI-Remote #BI-Remote

Cyber Security Jobs by Category

Cyber Security Salaries