GA

Cybersecurity Manager

Grameen America Inc
Posted 5 hours ago
United StatesHybrid$105KEngineering & Development
Is this job info correct?

Title: Cybersecurity Manager

Work Location: New York City (Hybrid). Must Reside in the New York tri-state area within the U.S.

Salary Range: $105,000/yr.- $115,000/yr.

About Us

Grameen America is a nonprofit microfinance organization dedicated to helping low-income women entrepreneurs build businesses to enable upward financial mobility. We envision an inclusive society in which all entrepreneurs, regardless of gender, race or income, have access to fair and affordable financial services. We provide affordable capital, credit- and asset-building, education and peer support to enable our members to boost their business income, create jobs and transform communities.

Founded by Nobel Peace Prize laureate Muhammad Yunus in 2008, Grameen America is now the fastest growing nonprofit microfinance organization in the U.S., having achieved tremendous milestones in its first 16 years of operations, investing in 220,000 low-income women entrepreneurs while demonstrating measurable impact. Our members have repaid their loans at a rate of over 99% and have become economic drivers in their communities. For more information, please visit grameenamerica.org

About the Role

Grameen America is seeking an experienced and proactive Cybersecurity Manager to lead the day-to-day management of the organization's cybersecurity program. This role serves as the primary liaison between internal teams, our Managed Service Provider (MSP), and our virtual Chief Information Security Officer (vCISO) partner to ensure the organization maintains a strong security posture and comply with applicable regulatory, audit, and industry requirements.

The Cybersecurity Manager will own the cybersecurity roadmap, coordinate security initiatives and assessments, manage vendor risk reviews, oversee audit and compliance activities, and ensure cybersecurity best practices are embedded throughout the organization. This individual must be a strong project manager who can drive initiatives to completion while effectively collaborating with both technical and business stakeholders

Job responsibilities

Cybersecurity Program Management

  • Own and execute the Information Security and Cybersecurity Program and roadmap in partnership with the CTO and vCISO, aligning priorities to organizational goals.
  • Lead cybersecurity initiatives from planning through completion, including timelines, dependencies, maturity tracking, and program reporting.

Audit & Compliance Management

  • Serve as the primary point of contact for technology audits, cybersecurity assessments, regulatory reviews, and penetration tests, coordinating evidence and responses.
  • Manage remediation of findings through completion and support compliance with applicable requirements, including NYDFS and NIST-based controls.

Vendor Risk Management

  • Partner with the vCISO to conduct cybersecurity due diligence and risk reviews for new and existing third-party vendors.
  • Maintain comprehensive vendor risk program

Policy, Governance & Risk Management

  • Maintain cybersecurity policies, standards, procedures, and governance documentation in alignment with regulatory requirements and industry best practices.
  • Lead risk assessments, maintain the cybersecurity risk register, and report key metrics, risk indicators, and program status.

Awareness & Training

  • Lead organization-wide cybersecurity awareness and phishing training and promote a culture of security awareness across the organization

Qualifications

  • A degree in Information Security, Cybersecurity, Computer Science, Information Technology, or related field.
  • Minimum of 5 years of cybersecurity, information security, risk management, or related experience.
  • Experience managing cybersecurity programs, audits, risk assessments, or compliance initiatives.
  • Experience working with external vendors, managed service providers, and consulting partners.
  • Demonstrated project management experience with the ability to manage multiple initiatives simultaneously.

Preferred Qualifications

  • Relevant security certification, such as CISSP, CISM, CRISC, Security+, or equivalent.
  • Experience in a regulated environment—ideally financial services, fintech, or nonprofit—with knowledge of NIST frameworks, NYDFS requirements, audits, and vendor risk management.
  • Experience securing cloud and remote-work environments, including Azure or AWS infrastructure and endpoint security.
  • Demonstrated success maintaining and scaling secure operations, including embedding security throughout the software development lifecycle.

What We Offer You:

  • Medical, dental, and vision insurance plans
  • Paid Holidays, vacation and sick time
  • 401K retirement savings plans
  • Flexible Spending Account (FSA)
  • Wellness platform with 2 free coaching sessions a month
  • Opportunity for advancement
  • And more!

Travel and Office Requirements:

  • Attend required in-person quarterly staff meetings in New York City.

Grameen America is an Equal Opportunity Employer (EEO) committed to diversity and inclusion in its workplace. Grameen America employment decisions are based on job requirements and individual skills and qualifications without regard to the applicant’s race, ethnicity, color, religion, sex, gender, gender identity, sexual orientation, national origin, disability, veteran status, or any other characteristic protected by applicable federal, state, or local law.

Grameen America, Inc participates with E-Verify.

Visa sponsorship is not provided.

Must be able to legally work in the U.S

Similar jobs