{"schemaVersion":"jobsearcher.job.v1","id":"bf941f522516038bf150edc4","url":"https://jobsearcher.com/jobs/bf941f522516038bf150edc4","canonicalUrl":"https://jobsearcher.com/jobs/bf941f522516038bf150edc4","title":"Security Operations Manager","description":"ABOUT CIM GROUP\r\nCIM is a community-focused real estate and infrastructure owner, operator, lender, and developer. Our team of experts works together to identify and create value in real assets, benefiting the communities in which we invest. Back in 1994, our three founders focused on projects in Southern California neighborhoods. Today, we are a diverse team of 900+ employees with projects across the Americas. Our projects have delivered jobs; created comfortable places to live, work, and relax; and provided necessary and sustainable infrastructure. Our focus on enhancing communities is unwavering, and we strive to make an even greater impact in the years to come. Join us and make an impact today!\r\nPOSITION PURPOSE\r\nThe Security Operations Manager is accountable for CIM's readiness to prevent, respond to, and recover from cybersecurity incidents. This role is accountable for CIM's cybersecurity posture by ensuring the appropriate controls are in place, our user population has the necessary cybersecurity training, and the day-to-day management of cybersecurity threats are handled appropriately. The Security Operations Manager partners closely with Engineering, Support, Compliance, and Product teams to ensure controls are effective, risks are actively managed, and operations support overall business continuity and resilience objectives.\r\nThis role plays a critical part in protecting our customers, employees, and operations, while enabling the business to grow securely and confidently.\r\nESSENTIAL FUNCTIONS\r\nSecurity Operations & Incident Response\r\nEnsure security alerts and anomalous activities are continuously monitored, accurately logged, and escalated in accordance with established procedures.\r\nLead and coordinate timely, effective response to cybersecurity incidents to minimize business impact.\r\nSupport restoration of affected systems and services following cybersecurity incidents, including leading forensic investigations as required.\r\nResearch emerging threats and attack vectors, and implement appropriate countermeasures to continuously strengthen the organization's security posture.\r\nCoordinate internal and external penetration testing activities to identify and remediate exploitable weaknesses.\r\nRisk Management, Controls & Assurance\r\nEnsure protective security controls are implemented and operating effectively to reduce risk exposure.\r\nCoordinate with compliance and IT teams to design, implement, and maintain operational security controls.\r\nSupport asset cataloging and ownership alignment to ensure accountability for systems, data, and security controls.\r\nExecute quarterly User Access Reviews across the application portfolio in an efficient manner.\r\nRespond to external audit and compliance questionnaires, providing accurate and timely security documentation and evidence.\r\nSecurity Awareness & Enablement\r\nEnsure employees, vendors and/or contractors with access to systems and data are appropriately trained in relevant security awareness and individual security responsibilities.\r\nDesign, manage, and enforce the organization's security awareness program, including the execution of recurring phishing simulation campaigns.\r\nSupport the development, testing, and ongoing improvement of Disaster Recovery plans to ensure the organization can effectively respond to and recover from disruptive events, including cybersecurity incidents.\r\nServe as a trusted security advisor to internal teams, raising awareness and providing guidance to help protect products, systems, and services from known and emerging threats.\r\nNON-ESSENTIAL FUNCTIONS\r\nAbility to produce executive reporting to illustrate Cybersecurity posture and areas for improvement.\r\nAbility to communicate and present ideas and recommendations effectively to Technology management.\r\nAbility to translate Cybersecurity information into a manner that end users can understand.\r\nSUPERVISORY RESPONSIBILITIES\r\nNone.\r\nEDUCATION/EXPERIENCE REQUIREMENTS\r\nMinimum 8 years of Cybersecurity analyst/management experience.\r\nBachelor's Degree in a technical field required.\r\nCISSP or CISM certification strongly preferred.\r\nFormal training in Cybersecurity governance, risk, and compliance (GRC).\r\nUnderstanding of Cybersecurity communities (OWASP).\r\nUnderstanding of SOC 2, SOX, NIST, and GDPR compliance.\r\nKNOWLEDGE, SKILLS AND ABILITIES\r\nExpert knowledge of information security principles, practices, and architectures.\r\nExpert knowledge with Threat Detection, Email Security, DLP, Data Governance tools such as Proofpoint, MS Defender, or Mimecast.\r\nHands-on experience with the development of Cybersecurity Training and Phishing Campaigns.\r\nExperience with leading Disaster Recovery programs.\r\nExperience with Vulnerability Management Platforms such as Rapid7 and Qualys.\r\nExperience with Patch Management platforms such as SCCM and Ivanti.\r\nUnderstanding of supporting technology audits and testing technology controls.\r\nUnderstanding of cloud environments such as Azure, SalesForce.com and Office365.\r\nPERFORMANCE METRICS\r\nRegular reporting of key Cybersecurity metrics for the company to executive management.\r\nYear over year Improvement of scores within the vulnerability management platform.\r\nMeet all compliance requirements related to Cybersecurity.\r\nTimely completion of preventive Cybersecurity measures such as User Access Reviews, End User Cybersecurity Training, and Phishing Campaigns.\r\nReduction of Cybersecurity issues uncovered by 3rd party security testing and compliance audits.\r\nDisaster Recovery readiness score.\r\nWHAT CIM OFFERS\r\nAt CIM, we believe our success stems from our collective efforts, and we are committed to providing well-rounded support and resources for our employees. In addition to a competitive compensation plan, CIM offers a comprehensive benefits program for employees to thrive both inside and outside of work. Eligible employees can enjoy a wide range of benefits, including:\r\nA variety of Medical, dental, and vision benefit plans\r\nHealth Savings Account with a generous employer contribution\r\nCompany paid life and disability insurance\r\n401(k) savings plan, with company match\r\nComprehensive paid time off, including: vacation days, 10 designated holidays, sick time, and bereavement leave\r\nUp to 16 hours of volunteer time off\r\nUp to 16 weeks of Paid Parental Leave\r\nOngoing professional development programs\r\nWellness program, including monthly and quarterly prizes\r\nAnd more!\r\nHOW WE FEEL ABOUT DIVERSITY AND INCLUSION\r\nAt CIM Group, we believe that the unique perspectives and backgrounds of our employees enhance everything we do. We are committed to fostering an inclusive environment where diversity is not only respected but celebrated. We strive to ensure that our workplace is free from discrimination and harassment, allowing everyone to contribute meaningfully and feel a sense of belonging. As an equal opportunity employer, we strictly prohibit any form of unlawful discrimination and adhere to the laws enforced by the EEOC. Our goal is to provide a safe and supportive environment where all employees can grow and make impactful contributions together.\r\n*Applicants with disabilities may be entitled to reasonable accommodation under the terms of the Americans with Disabilities Act and certain state or local laws. A reasonable accommodation is a change in the way things are normally done which will ensure an equal employment opportunity without imposing undue hardship on CIM Group.\r\nPlease inform our Talent team if you need any assistance completing any forms or to otherwise participate in the application process.\r\nCIM is committed to maintaining the confidentiality and privacy of your personal and financial information. Please click here for our Privacy Policy.\r\nCIM does not accept unsolicited resumes from Agencies. Any unsolicited resumes received from Agencies will be considered property of CIM and no fees will be due or paid. If you wish to become an approved Agency with CIM or any of its Affiliates, please contact a member of the CIM Talent Acquisition Team.\r\nJ-18808-Ljbffr","company":"Medium","rawCompany":"medium","city":"Phoenix","state":"AZ","isRemote":false,"isActive":false,"createdAt":"2026-08-06T00:35:08.874Z","occupations":[{"code":"11-3013.01","title":"Security Managers","slug":"security-managers"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"},{"code":"33-1091.00","title":"First-Line Supervisors of Security Workers","slug":"first-line-supervisors-of-security-workers"}],"industries":[{"code":"561621","title":"Security Systems Services (except Locksmiths)","slug":"security-systems-services-except-locksmiths"},{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"523940","title":"Portfolio Management and Investment Advice","slug":"portfolio-management-and-investment-advice"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Operations Manager","description":"ABOUT CIM GROUP\r\nCIM is a community-focused real estate and infrastructure owner, operator, lender, and developer. Our team of experts works together to identify and create value in real assets, benefiting the communities in which we invest. Back in 1994, our three founders focused on projects in Southern California neighborhoods. Today, we are a diverse team of 900+ employees with projects across the Americas. Our projects have delivered jobs; created comfortable places to live, work, and relax; and provided necessary and sustainable infrastructure. Our focus on enhancing communities is unwavering, and we strive to make an even greater impact in the years to come. Join us and make an impact today!\r\nPOSITION PURPOSE\r\nThe Security Operations Manager is accountable for CIM's readiness to prevent, respond to, and recover from cybersecurity incidents. This role is accountable for CIM's cybersecurity posture by ensuring the appropriate controls are in place, our user population has the necessary cybersecurity training, and the day-to-day management of cybersecurity threats are handled appropriately. The Security Operations Manager partners closely with Engineering, Support, Compliance, and Product teams to ensure controls are effective, risks are actively managed, and operations support overall business continuity and resilience objectives.\r\nThis role plays a critical part in protecting our customers, employees, and operations, while enabling the business to grow securely and confidently.\r\nESSENTIAL FUNCTIONS\r\nSecurity Operations & Incident Response\r\nEnsure security alerts and anomalous activities are continuously monitored, accurately logged, and escalated in accordance with established procedures.\r\nLead and coordinate timely, effective response to cybersecurity incidents to minimize business impact.\r\nSupport restoration of affected systems and services following cybersecurity incidents, including leading forensic investigations as required.\r\nResearch emerging threats and attack vectors, and implement appropriate countermeasures to continuously strengthen the organization's security posture.\r\nCoordinate internal and external penetration testing activities to identify and remediate exploitable weaknesses.\r\nRisk Management, Controls & Assurance\r\nEnsure protective security controls are implemented and operating effectively to reduce risk exposure.\r\nCoordinate with compliance and IT teams to design, implement, and maintain operational security controls.\r\nSupport asset cataloging and ownership alignment to ensure accountability for systems, data, and security controls.\r\nExecute quarterly User Access Reviews across the application portfolio in an efficient manner.\r\nRespond to external audit and compliance questionnaires, providing accurate and timely security documentation and evidence.\r\nSecurity Awareness & Enablement\r\nEnsure employees, vendors and/or contractors with access to systems and data are appropriately trained in relevant security awareness and individual security responsibilities.\r\nDesign, manage, and enforce the organization's security awareness program, including the execution of recurring phishing simulation campaigns.\r\nSupport the development, testing, and ongoing improvement of Disaster Recovery plans to ensure the organization can effectively respond to and recover from disruptive events, including cybersecurity incidents.\r\nServe as a trusted security advisor to internal teams, raising awareness and providing guidance to help protect products, systems, and services from known and emerging threats.\r\nNON-ESSENTIAL FUNCTIONS\r\nAbility to produce executive reporting to illustrate Cybersecurity posture and areas for improvement.\r\nAbility to communicate and present ideas and recommendations effectively to Technology management.\r\nAbility to translate Cybersecurity information into a manner that end users can understand.\r\nSUPERVISORY RESPONSIBILITIES\r\nNone.\r\nEDUCATION/EXPERIENCE REQUIREMENTS\r\nMinimum 8 years of Cybersecurity analyst/management experience.\r\nBachelor's Degree in a technical field required.\r\nCISSP or CISM certification strongly preferred.\r\nFormal training in Cybersecurity governance, risk, and compliance (GRC).\r\nUnderstanding of Cybersecurity communities (OWASP).\r\nUnderstanding of SOC 2, SOX, NIST, and GDPR compliance.\r\nKNOWLEDGE, SKILLS AND ABILITIES\r\nExpert knowledge of information security principles, practices, and architectures.\r\nExpert knowledge with Threat Detection, Email Security, DLP, Data Governance tools such as Proofpoint, MS Defender, or Mimecast.\r\nHands-on experience with the development of Cybersecurity Training and Phishing Campaigns.\r\nExperience with leading Disaster Recovery programs.\r\nExperience with Vulnerability Management Platforms such as Rapid7 and Qualys.\r\nExperience with Patch Management platforms such as SCCM and Ivanti.\r\nUnderstanding of supporting technology audits and testing technology controls.\r\nUnderstanding of cloud environments such as Azure, SalesForce.com and Office365.\r\nPERFORMANCE METRICS\r\nRegular reporting of key Cybersecurity metrics for the company to executive management.\r\nYear over year Improvement of scores within the vulnerability management platform.\r\nMeet all compliance requirements related to Cybersecurity.\r\nTimely completion of preventive Cybersecurity measures such as User Access Reviews, End User Cybersecurity Training, and Phishing Campaigns.\r\nReduction of Cybersecurity issues uncovered by 3rd party security testing and compliance audits.\r\nDisaster Recovery readiness score.\r\nWHAT CIM OFFERS\r\nAt CIM, we believe our success stems from our collective efforts, and we are committed to providing well-rounded support and resources for our employees. In addition to a competitive compensation plan, CIM offers a comprehensive benefits program for employees to thrive both inside and outside of work. Eligible employees can enjoy a wide range of benefits, including:\r\nA variety of Medical, dental, and vision benefit plans\r\nHealth Savings Account with a generous employer contribution\r\nCompany paid life and disability insurance\r\n401(k) savings plan, with company match\r\nComprehensive paid time off, including: vacation days, 10 designated holidays, sick time, and bereavement leave\r\nUp to 16 hours of volunteer time off\r\nUp to 16 weeks of Paid Parental Leave\r\nOngoing professional development programs\r\nWellness program, including monthly and quarterly prizes\r\nAnd more!\r\nHOW WE FEEL ABOUT DIVERSITY AND INCLUSION\r\nAt CIM Group, we believe that the unique perspectives and backgrounds of our employees enhance everything we do. We are committed to fostering an inclusive environment where diversity is not only respected but celebrated. We strive to ensure that our workplace is free from discrimination and harassment, allowing everyone to contribute meaningfully and feel a sense of belonging. As an equal opportunity employer, we strictly prohibit any form of unlawful discrimination and adhere to the laws enforced by the EEOC. Our goal is to provide a safe and supportive environment where all employees can grow and make impactful contributions together.\r\n*Applicants with disabilities may be entitled to reasonable accommodation under the terms of the Americans with Disabilities Act and certain state or local laws. A reasonable accommodation is a change in the way things are normally done which will ensure an equal employment opportunity without imposing undue hardship on CIM Group.\r\nPlease inform our Talent team if you need any assistance completing any forms or to otherwise participate in the application process.\r\nCIM is committed to maintaining the confidentiality and privacy of your personal and financial information. Please click here for our Privacy Policy.\r\nCIM does not accept unsolicited resumes from Agencies. Any unsolicited resumes received from Agencies will be considered property of CIM and no fees will be due or paid. If you wish to become an approved Agency with CIM or any of its Affiliates, please contact a member of the CIM Talent Acquisition Team.\r\nJ-18808-Ljbffr","datePosted":"2026-08-06T00:35:08.874Z","dateModified":"2026-08-06T00:35:08.874Z","hiringOrganization":{"@type":"Organization","name":"Medium","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Phoenix","addressRegion":"AZ","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"bf941f522516038bf150edc4"},"url":"https://jobsearcher.com/jobs/bf941f522516038bf150edc4"}}