WHAT YOULL BE DOING
Key Responsibilities:
- Enforce security policies standards and procedures for industry regulatory and client compliance.
- Drive proactive SOC monitoring and reporting across information systems influencing business decisions.
- Maintain the security of all information systems including Mac/Windows OS devices network infrastructure AWS cloud Google Workspace and business SaaS platforms.
- Design a robust integrated security architecture with defense-in-depth strategies across users endpoints networks/connectivity platforms applications and database domains.
- Engineer and implement cost-effective solutions appropriate for dynamic and scale-up environments.
- Perform threat modelling and technical risk assessments (vulnerability scans penetration tests software updates patches etc.) identify gaps and recommend technical controls.
- Collaborate with the IT-GRC team and ensure security risks are captured in the broader IT risk register.
- Provide general information security guidance & advisory support to the business.
- Drive internal and external client security engagements to establish business needs and requirements.
WHAT QUALIFICATIONS YOULL NEED
Must-Have Qualifications/Experience:
- Proven experience within Incident Response situations and demonstrated ability to handle and maintain confidential information.
- Must possess strong written and verbal communication skills and be capable of understanding documenting communicating and presenting technical issues in a non-technical manner to audiences.
- Be a team player and enjoy collaborating on cross-functional teams
- Familiar with compliance and privacy regulations such as PCI GDPR CCPA SOX and other regulations/standards
- Self leadership skills and the ability to mentor or provide guidance to teams.
Preferred Background:
- 7 years hands-on security experience with an IT Security focused role.
- Experience executing in a cloud-first technology and remote work organization.
- Proficiency to communicate and collaborate via Slack and can succinctly document technical details.
- Familiar with security controls or concepts related to various security community groups or standards: CISSP Domains NIST cybersecurity & privacy frameworks CIS benchmarks OSI model
WHAT WE PROVIDE
Hugo offers a hybrid work environment that balances employee flexibility with a collegial fun office culture. We pride ourselves on offering a dynamic environment where ambitious professionals can make a measurable impact and accelerate their career. Our compensation and benefits are highly competitive.
PRIVACY STATEMENT
Any information you submit to Hugo as part of your application will be processed in accordance with Hugos Privacy Policy.
EQUAL OPPORTUNITY STATEMENT
Diversity equity and inclusion are part of our DNA. Promoting and where possible improving diversity equity and inclusion are a value-based and commercial necessity. We are an equal opportunity employer and welcome applications from all qualified individuals regardless of race sex gender identify sexual orientation neurodiversity disability or any other legally protected status