Cybersecurity Manager

Sierra Central Credit Union
Yuba City, CA
Description

Summary

We are seeking a Cybersecurity Manager to lead and grow a team responsible for performing end-to-end security and threat analysis across credit union enterprise initiatives. This role ensures that information security best practices, regulatory requirements, and risk management principles are embedded into system and business process designs.

The Cybersecurity Manager provides daily leadership and operational oversight of the Credit Union’s cybersecurity and physical access security programs. Responsibilities include implementing, monitoring, and optimizing security technologies, processes, and third-party services such as the Security Operations Center (SOC), with a strong focus on protecting member information and critical financial systems.

This role is accountable for scaling and maturing the cybersecurity function, including hiring, onboarding, and training staff; managing team operations; and aligning security initiatives with the Credit Union’s strategic objectives and risk appetite. The Manager serves as a technical subject matter expert across key cybersecurity domains—including network, application, cloud, and enterprise security controls—and works closely with the CIO, CISO, IT teams, facilities management, risk and compliance functions, and external vendors. Together, they ensure effective security controls, timely incident response, regulatory readiness, and prompt identification and remediation of cybersecurity and physical security risks.

Essential Functions

Cybersecurity Operations & Controls

  • Managing, deploying, and maintaining security infrastructure
  • Oversee daily operation of cybersecurity tools and controls (SIEM, SOC services, EDR, firewalls, IDS/IPS, IAM)
  • Conducting vulnerability, penetration testing and identifying follow-up actions to mitigate failures and address any weaknesses
  • Maintaining up-to-date knowledge on cyber-security technologies and standards while automating security controls, data and processes to ensure proper configuration, maintenance, and monitoring
  • Validates alerts, investigations, and response actions performed by the SOC
  • Serve as the subject matter expert with the ability to educate and explain common threats affecting Network, Cloud, Web and Application environments as well as best practices in the Cyber Security industry, including remediations for OWASP Top 10, CWE/SANS Top 25, CIS controls, and NIST guidelines
  • Proven ability to successfully manage projects by establishing clear goals and deliverables, adhering to deadlines, proactively managing risks, and maintaining effective stakeholder engagement and communication

SOC Oversight

  • Act as primary point of contact with SOC providers.
  • Investigate, review, and validate alerts, incident tickets, and escalations.
  • Ensure SLAs, escalation procedures, and response timelines are met.
  • Participate in investigations and coordinate responses with IT teams.

Business Continuity & Incident Response

  • Execute incident response procedures under CIO/CISO guidance.
  • Coordinate containment, eradication, and recovery activities.
  • Maintain incident documentation, timelines, and evidence.
  • Support post-incident reviews and corrective actions.
  • Support updates and maintenance of business continuity plan/program
  • Participate and lead BCP-IRP trainings and tabletop exercises

Vulnerability & Remediation Management

  • Oversee vulnerability scanning and remediation.
  • Coordinate patching and mitigation with IT operations.

Physical Access Security

  • Manage physical access control systems (badges, key cards, biometric systems) and coordinate with facilities to ensure alignment between physical and cybersecurity controls for comprehensive protection.
  • Oversee visitor management processes and ensure compliance with policies.
  • Monitor and review physical access logs for anomalies or unauthorized activity and Support investigations involving physical access incidents.

Leadership Collaboration

  • Translate strategic goals into actionable security roadmaps, initiatives, tasks and provide tactical updates and metrics to CIO.
  • Escalate risks with clear, actionable recommendations.

Third-Party Security & Tool Management

  • Manage relationships with security vendors and service providers.
  • Review SOC reports, vulnerability scans, and dashboards.
  • Assist with tool evaluations, onboarding, and integration.

Security Procedures & Documentation

  • Maintain operational procedures, runbooks, and playbooks.
  • Ensure alignment between documented procedures and practices.
  • Support audits and regulatory exams with evidence of control operation.

Requirements

Required Skills and Abilities

  • Exceptional leadership, communication, and problem-solving skills required.
  • Excellent strategic and critical thinking skills.
  • Excellent verbal, written and interpersonal communication skills required.
  • Ability to provide leadership and direction in cybersecurity functions, including guiding security efforts, coordinating activities, and supporting decision-making across teams.
  • Ability to interpret, implement, and evaluate security control frameworks, such as the Cloud Security Matrix, NIST Cybersecurity Framework (CSF), and CIS Controls.
  • Ability to understand and work effectively with cloud technologies, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS).
  • Ability to perform threat analysis and build threat models using industry-recognized methodologies such as MITRE ATT&CK.
  • Ability to interpret and apply data security and privacy regulations, including but not limited to PCI DSS, SOX, GDPR, and CCPA.
  • Ability to support and execute cybersecurity engineering, security operations, and incident response activities, ensuring effective and timely resolution of security events.
  • Ability to balance security policies, procedures, and best practices with operational needs to maintain a secure and efficient environment.
  • Ability to identify, recommend, and implement process improvements to enhance the maturity, efficiency, and effectiveness of cybersecurity operations and services.
  • Must work well under pressure, meeting multiple and sometimes conflicting deadlines.

Education And Experience

  • Seven or more years of cybersecurity experience, including a minimum of three years leading or managing a cybersecurity team or program.
  • Bachelor’s degree preferred, however relevant experience may substitute with Active security certification (e.g., CISSP, CISM, CISA, Security+, or equivalent)
  • Understanding of Zero Trust Architecture, endpoint security, and SIEM tools.
  • Familiarity with security controls such as Cloud Security Matrix, NIST CSF, CIS.
  • Knowledge of common Cloud Services offered (IaaS, PaaS, SaaS)
  • Experience performing Threat Analysis and modeling leveraging best in industry frameworks such as MITRE ATT&CK.
  • Understanding of various data/privacy regulations (e.g. PCI DSS, SOX, GDPR, CCPA)
  • Complete understanding of Cybersecurity Engineering/Operations and Incident Response modalities, requirements, and functions.
  • Experience with process improvement and maturing/transforming operations or services

Physical Requirements And Work Environment

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential function of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Prolonged periods of sitting at a desk and working on a computer – 7 to 8 hours per day.
  • Light lifting, carrying, pushing and/or pulling objects up to 25 lbs.
  • Intermittent walking, bending, twisting and stooping.
  • General office environment: works generally at a desk in a well-lighted, air-conditioned cubicle/office, with moderate noise levels.
  • Occasional exposure to raised floors, server noise, and limited hot/cold zones.

Work Location

This position is based on-site at our Corporate Headquarters in Yuba City, CA. Hybrid work may be available depending on experience and only after successful completion of a 30-day probationary period.

Compensation Range

The company anticipates offering an annual salary range between $130,000 to $151,000 for this position at the time of hire. This range includes base salary (or hourly wages) and does not include possible overtime for non-exempt employees or any applicable performance-based incentives or commissions.

Annual Merit Increase

Employees are eligible for a discretionary yearly merit-based salary adjustment, based on individual performance and company results.

Comprehensive Benefits Package

We provide a robust benefits package designed to support your health, financial security, and work-life balance including:

  • Medical, Dental & Vision Insurance options
  • Voluntary Lines including hospital indemnity, accident, and critical illness policies
  • Company Paid HRA (with enrollment in certain health plans)
  • Company Paid Basic Term Life Insurance
    • Coverage at 2× annual base salary, up to a maximum of $500,000 for full-time employees
    • $25,000 for part-time employees
  • Company Paid Long-Term Disability Insurance for Full-Time Employees
  • Company Paid Telehealth Services Membership (Teladoc)
  • Company Paid Employee Assistance Program (EAP)
  • 401(k) Retirement Plan
    • Employer-funded safe harbor contribution of 3% of employee's eligible earnings
    • Discretionary employer match on employee contributions
  • Flexible Spending Accounts
    • HSA
    • Medical FSA
    • Dependent Care FSA
    • Limited Purpose FSA
  • Paid Time Off
    • Vacation accruals based on status and tenure within company
    • 12 sick days accrued annually for full-time employees
    • 1 hour for every 30 hours worked for part-time employees
    • 11 paid holidays (eligible after 90 days of employment)
  • Travel Expense Reimbursement
    • All necessary and work-related travel expenses will be reimbursed in accordance with company policy
The preceding list of duties does not include all tasks and responsibilities that may be required with this position. Additional tasks may be assigned, as departmental and operational needs require.
Posted 2026-01-15

Recommended Jobs

Sales Development Representative

Veeva Systems
San Francisco, CA

Veeva Systems is a mission-driven organization and pioneer in industry cloud, helping life sciences companies bring therapies to patients faster. As one of the fastest-growing SaaS companies in histo…

View Details
Posted 2026-01-10

Solar Sales Opportunity - All Leads Provided

Spanish Speakers
Concord, CA

Want to join Southern California’s top Solar Construction Company? We are always looking for problem solvers, self-motivators and action-oriented thinkers to join our team! We offer competitive p…

View Details
Posted 2026-01-15

IP Patent Agent

Liberty Personnel Services, Inc.
Palo Alto, CA

~ Phone Number: Enter a valid 10-digit phone number. ~* Resume: ~ Resume: Drag your file(s) to start uploading OR Browse files Resume is required. Firm: AM Law 100 firm Responsibiliti…

View Details
Posted 2026-01-15

Custodian

Planet Fitness
Napa, CA

Job Summary The Custodian will be responsible for the overall cleanliness of all areas of the facility to ensure a positive member experience. Essential Duties and Responsibilities Thoroughl…

View Details
Posted 2025-08-18

Staff AI Research Engineer

Qualcomm
San Diego, CA

Company: Qualcomm Technologies, Inc. Job Area: Engineering Group, Machine Learning Engineering General Summary: As a leading technology innovator, Qualcomm pushes the boundaries of wha…

View Details
Posted 2026-01-15

Estimator (Commercial Construction)

K2 Staffing
San Diego, CA

Summary   Our client is looking to hire a Construction Estimator to join their team in San Diego, CA . A construction estimator that has knowledge of estimating and budgeting commercial construc…

View Details
Posted 2025-10-03

Retail Store Manager - Customer Experience Lead

Apple Inc.
Santa Monica, CA

A leading technology company in Santa Monica, California is seeking a Manager for their retail store. This role involves leading, coaching and developing a diverse team to deliver exceptional customer…

View Details
Posted 2026-01-15

Production Employee-B- Work Hours: (8am-4:30pm)

Vestis Corporation
Bakersfield, CA

Job Details Description Work Hours: (8am-4:30pm) Overview Performs work as part of a team in an industrial laundry facility. Responsible for the safe, expeditious, and accurate handling of …

View Details
Posted 2025-12-31

Staff/Tech Lead Manager - Uber Eats App Experience

Uber
San Francisco, CA

About the Role: The Inspire org at Uber Eats is looking for a seasoned Staff Tech Lead Manager to supercharge the next 5 years of Uber Eats strategy and make our marketplace a home for discovery a…

View Details
Posted 2025-11-21

Sales Director

Henkel
Culver City, CA

What you´ll do Lead the Business Development strategy and execution of sales activities for the assigned customers. Focus on new potential customers within the channel of responsibility that al…

View Details
Posted 2026-01-12