Manager IT Security at SmartBear

| Somerville
Sorry, this job was removed at 11:22 a.m. (EST) on Tuesday, March 31, 2020
Find out who's hiring in Boston.
See all Operations jobs in Boston
Think Bigger. Build Smarter. Create Great Software.
SmartBear helps the world’s most recognized companies develop the world’s best applications. SmartBear has played a role in the ride you ordered, the banking app you use, the item you posted for auction, or that flight you just purchased. SmartBear's award-winning suite of testing software enables organizations to meet frequent release deadlines without sacrificing software quality, all while reducing testing costs. Additionally, our award-winning collaboration software helps development, testing and management teams work together to produce high quality software elevating a business’ ability to communicate and complete objectives more efficiently.
Due to massive growth and market success, SmartBear is continuing to hire employees rapidly to scale our company globally and will be hiring a Manager of IT Security to join our team. Reporting to the Global Director of IT, the Manager of IT Security will be responsible for increasing information integrity, confidentiality, and availability through the integration of security policies, security awareness, access controls, environmental controls, and the implementation of security-related technology. Responsibilities will include working with the IT team, Development teams, and business units to develop, maintain, and monitor an effective information security program designed to ensure the logical and physical protection of the company’s technical resources, which include data/information, equipment, and software.


  • Establish a framework, policies, procedures, and awareness: Leads the effort to develop security standards, procedures, and guidelines for multiple platforms, applications, and diverse systems environments as well as evaluating existing information security procedures and identifying new areas of risk.
  • Leads the effort to develop, enhance and implement security training program based on policies.
  • Compliance: Identifies regulatory changes that will affect information security policy, standards, and procedures and recommends appropriate changes. Prepares action plan and monitors corrective measures to maintain adequate level of security to meet audit and regulatory requirements.
  • Testing and Remediation: Coordinates the efforts, assist in the responses and tracks the remediation of Information Security Program Assessments and Risk Assessment. Coordinated internal and external audits related to Information Security.
  • Identity Management: Develops and manages role-based access requirements, methods, processes and tools, including identify and authentication management Data Classification: Manage the information lifecycle, including information inventory, classification, handling, retention and disposal.
  • Disaster Recovery: Establish updates and maintains the IT Disaster Recovery and Business Impact analysis efforts. Coordinates and documents table top exercises and Disaster Recovery tests.
  • Vendor Reviews: Conduct Vendor Security Risk Assessments to determine which vendors have access to confidential information and perform detailed assessment based on the risk.


  • 10+ years of relevant IT Security work experience including datacenter integration
  • BS in Computer Science or IT related field required,
  • Base certifications in the security industry. Examples: CCNA, MCITP/MCSE, CCSP, Security+
  • Advanced Certifications strongly preferred. Examples: CISSP, CISA, CISM, SANS, Vendor specific
  • Proficient in network security structure and placement of security services such as firewalls, IDS/IPS, and content filtering
  • Experience with data protection & archiving, disaster recovery, business continuity and implementation
  • Ability to create documentation that describes technical details in a meaningful manner
  • Ability to work across multiple teams from Help desk, Infrastructure, Legal, DevOps and Executive Leadership
  • Implemented and/or managed security event incident management solutions (SEIM), experience performing security incident response and/or investigation
  • Industry knowledge of border testing, security policies, DR procedures & policies, remediation strategies and risk assessment is required.
  • Knowledge of industry and best practices from organizations such as International Standards Organization (ISO), Center for Internet Security (CIS and national Institutes of Standards (NIST) is a plus
  • Deep understanding of current and emerging threats, vulnerabilities, and attack vectors used to compromise enterprise and critical infrastructure. Prior experience in developing mitigation strategies to combat those risks is required
  • Experience analyzing malicious network traffic using packet-level capture techniques
  • Experience performing manual evaluation of networks, systems and applications for vulnerabilities including examining firewall rulesets, current patch levels, and inspecting logs for anomalous entries
  • Experience evaluating enterprise network and system architectures to determine recommended security improvements
  • Strong knowledge of IT controls, including security concepts and terminology related to applications, databases, operating systems, and IT operations

Preferred Skills

  • Knowledge of JIRA is a plus
  • Experience with tools like Qualys and Tanium
  • Experience with information security, cyber security, and privacy issues and awareness of regulated data environments (e.g. PCI, SOX, FERPA, HIPAA, and COPPA) a plus
  • Ability & desire to learn new product lines and technologies quickly & efficiently
  • Excellent analytical, problem solving, and decision-making skills, applied with a solution-focused attitude
  • Strong written communication skills, demonstrating the ability to write with purpose, clarity, and accuracy
  • Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism
  • Ability to complete work to given quality standards by agreed-upon deadlines

About Us
SmartBear is behind the software that empowers developers, testers, and operations engineers at over 20,000 of the world’s most innovative organizations including Adobe, JetBlue, MasterCard, and Microsoft. More than 6 million people use our tools to build, test, and monitor great software, faster. Our high-impact tools are easy to try, easy to buy, and easy to use. These tools are backed by a team of people passionate about helping you create software that transforms our world. Those tools are SmartBear tools. That team is SmartBear. For more information, visit:, or follow us on LinkedIn, Twitter, or Facebook.
SmartBear is an equal employment opportunity employer and encourages success based on our individual merits and abilities without regard to race, color, religion, gender, national origin, ancestry, mental or physical disability, marital status, military or veteran status, citizenship status, age, sexual orientation, gender identity or expression, genetic information, medical condition, sex, sex stereotyping, pregnancy (which includes pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), or any other legally protected status.

Read Full Job Description
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Technology we use

  • Sales & Marketing
    • SalesforceCRM


Our office overlooks the Mystic River and is surrounded by bars, restaurants, shopping, and is steps from the Assembly Orange line stop.

An Insider's view of SmartBear

What’s the vibe like in the office?

Everyone is very confident and engaged -both in our work and with each other. We're open minded and good listeners. Overall, we are high energy and the atmosphere is super positive. It feels like we're one big team, and you're comfortable speaking your mind because you know your teammates will be receptive and invested in moving things forward.


Talent Acquisition Specialist

What are SmartBear Perks + Benefits

SmartBear Benefits Overview

SmartBear is proud to offer a comprehensive benefits package designed to serve the needs of our employees. Just a few of which include:

-Great office perks including: $75 Sneaker reimbursement, free catered lunches on Friday's, and cold brew on tap
-Health benefits that offer varying levels of coverage and accessibility through Blue Cross Blue Shield
-Company-Paid benefits that protect you and your family from financial hardship
-Voluntary benefits to provide you with added security (We even offer Pet Insurance!)

Volunteer in local community
We've cleaned up the Mystic River, helped out at Rosie's Kitchen, and visted the YMCA
Friends outside of work
Eat lunch together
Intracompany committees
Our Culture Committee has put on parties for SmartBear families, hosted a chili cook off, ran charity drives, and much much more!
Open door policy
Team based strategic planning
Group brainstorming sessions
Open office floor plan
Highly diverse management team
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability Insurance
Dental Benefits
Vision Benefits
Health Insurance Benefits
Life Insurance
Pet Insurance
Wellness Programs
Retirement & Stock Options Benefits
401(K) Matching
Company Equity
Performance Bonus
Child Care & Parental Leave Benefits
Child Care Benefits
Generous Parental Leave
Remote Work Program
Family Medical Leave
Employees who have been with the company for 12 months are eligible for 3 weeks of family medical leave.
Company sponsored family events
We have a Family Halloween Party every year!
Vacation & Time Off Benefits
Generous PTO
Paid Volunteer Time
Paid Holidays
Paid Sick Days
Perks & Discounts
Casual Dress
Commuter Benefits
Company Outings
Free Daily Meals
We provide free breakfast on the last day of every month. Employees get free lunch on Friday.
Game Room
Stocked Kitchen
Some Meals Provided
Happy Hours
We offer employees Paid on-site garage parking.
Recreational Clubs
Fitness Subsidies
Professional Development Benefits
Job Training & Conferences
Promote from within
Customized development tracks
Paid industry certifications
Budget for industry certifications is determined by departmental budget.
More Jobs at SmartBear2 open jobs
All Jobs