This job might no longer be available.
Senior Manager of Information Security
2 years ago
Would you like to work on some of the greatest franchises in gaming history? What about working on our new original IP? Certain Affinity is the largest independent developer in Texas, based out of Austin, and a growing presence in Toronto, Canada. Our culture reflects the values and the vibrant nature of the cities we call home. This includes a commitment to evolution, diversity, excellence, and work-life balance. We're best known for co-developing numerous AAA FPS games, though now we are creating compelling new games of our own. We're always on the lookout for people who are ready to roll up their sleeves and help us build on our incredible momentum, our diverse, engaged workforce, and our purpose to make amazing games.
As the Senior Manager of Information Security, you would be responsible for developing and maintaining a strong security posture for the entire organization. You’d be a key figure in evolving Certain Affinity’s security risk management practices. You’ll assess regulatory and technical security risks across the enterprise and guide the development of risk remediation strategies. You’d also play a leading role in building security policies, processes, and procedures while coordinating with other departments to meet the needs of the business.
Responsibilities
- Responsible for the enterprise-wide information security policy, information security strategy, information security architecture, information security operations, and information security risk management
- Oversee and coordinate security initiatives working with executive, business, and functional leaders, and staff
- Develop and grow security talent within the enterprise and provide training to employees and senior leadership
- Create, maintain, and deliver security training programs and policies for developers and staff.
- Create and maintain documentation around compliance standards
- Build and grow key tenants of an information systems security program and function as a subject matter expert for all information systems security topics
- Advise lines of business on how to comply with the relevant security policies of business partners
- Document actions are taken on events to comply with the relevant data breach laws
Requirements
- 15+ years of security operations experience
- Strong desire to remain knowledgeable about the constantly changing privacy and security landscape
- Experience interpreting business drivers (specifically in a video game development company) and developing practical security solutions that provide adequate security to support the business
- Experience gathering, analyzing, and interpreting system and network data for security issues
- Experience with vulnerability scanning and risk management
- Experience with IDS/IPS, Firewalls, HIDS, Anti-Malware, DLP, web content filtering, SIEM, EDR, and forensics tools
- Experience with offensive security and bug exploitation and remediation
- Experience creating, maintaining, and delivering security training programs for developers and staff
- Experience developing and implementing a comprehensive strategy and plan for security operations
- Experience with providing security solutions for cloud architectures in both Azure and AWS, as well as hybrid implementations
- Experience protecting live online assets that serve applications specific to video game development and protecting those assets both inside the game client and server
- Bot and DDOS protection experience
- Experience with Incident Response and recovery
- Disaster recovery documentation and processing
- Experience meeting and exceeding regulatory compliance such as EUDPR, PCI DSS, and SOX
- A desire to work and support a diverse and inclusive environment
Certain Affinity also offers relocation for this position to assist you in the move to Austin, Texas. Certain Affinity or its partners or affiliates run background checks on candidates or employees with the written authorization from the candidates or employees. These may be done for the purposes of offering employment or determining eligibility to work on a specific project. Multiple searches may be required.
Create Your Profile — Game companies can contact you with their relevant job openings.