Manager, IT Security and Compliance

Authentic Brands Group - New York, NY

Hiring: Manager, IT Security and Compliance Company: Authentic Brands Group Location: New York, NY Job Posted Time: 2026-09-12 10:32:48 Target Skills & Keywords : CI/CD, OWASP, Regulatory Compliance, SOC 2, SaaS, Zoom About the job Experience: •7+ years of experience in cybersecurity, technology risk, IT audit, compliance, application security, or network security. Required Skills: •This role reports to the Director of Cyber Security & Compliance. •Lead security and compliance reviews for new and existing technologies, including SaaS platforms, applications, APIs, cloud services, integrations, automation tools, and AI-enabled solutions. •Assess risk across business and technology initiatives, with a focus on data protection, access controls, vendor risk, logging, auditability, and secure configuration. •Define and implement practical security controls that align with business needs, regulatory expectations, internal policies, and audit requirements. •Partner with application owners and business stakeholders to identify security and compliance requirements early in the project lifecycle. •Conduct security and architecture reviews for applications, APIs, integrations, data flows, and third-party platforms. •Support compliance activities, including evidence collection, control documentation, risk remediation tracking, user access reviews, and audit response. •Strengthen application and network security posture by contributing to secure design, vulnerability management, control improvements, and remediation planning. Qualifications: •Bachelor’s degree in Computer Science, Information Security, Information Systems, or a related field. •In-depth knowledge of security and compliance fundamentals, including access management, authentication, authorization, data protection, logging, vulnerability management, and secure configuration. •Operational familiarity with application security concepts, including OWASP risks, secure SDLC practices, API security, and data protection requirements. •Solid grounding in network security concepts and modern enterprise architectures. •Demonstrated capacity to perform risk assessments and translate findings into practical, business-friendly recommendations. •Strong communication skills and the ability to influence decisions across technical and non-technical teams. •Comfortable operating in a lean, fast-paced environment with evolving priorities. •Operational familiarity with frameworks such as NIST CSF, CIS Controls, SOC 2, ISO 27001, or similar control frameworks. •Exposure to AI governance, emerging technology risk, or responsible AI initiatives. Compensation: •$140,000 - $150,000 / year Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!