Skip to content

Open nowPosted 13 days ago

Senior Manager, Information Security & IT

Genea5 open roles

Pay
$160,000 – $180,000 a year
Where
Remote, US
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Manager, Information Security & ITGenea · Remote, US
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Genea's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Genea postings stay open a median of 34 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.5%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 33.9%30 days
This job: posted 13 days ago

Genea median: 34 days open

The posting

Job Title: Senior Manager, Information Security & IT

Reports To: Chief Technology Officer

Department: Technology – Information Security & IT

Work Location: Irvine, CA or US-Remote

About Genea

As leaders in property technology, Genea provides cloud-based physical security, submeter billing and on-demand HVAC solutions to over 1 million users across 39 countries. But Genea is more than just a workplace. We're a mission-driven team that collaborates, innovates, and engineers the proptech solutions of tomorrow to solve the challenges of today. We pride ourselves on fostering an environment of teamwork, transparency and authenticity, where you can be yourself. But don't take our word for it. Genea has been recognized as a Top Workplace in 2021-2025, with a rating of 4.3 out of 5 stars on Glassdoor. Our team members love our competitive benefits, including 401k matching, PTO, 100% paid parental leave, remote work options, and development/training opportunities.

Job Overview

Genea is looking for a hands-on Senior Manager, Information Security & IT to lead and continuously improve our cybersecurity and corporate IT programs.

Reporting to the CTO, this role will lead Genea's cybersecurity and IT programs across compliance, cloud and application security, incident response, identity and access management, and corporate IT.

Genea is already SOC 2 Type 2 compliant. This role will be responsible for continuously maintaining and maturing that program while helping drive additional cybersecurity and compliance initiatives, including ISO 27001 and other relevant frameworks as the business evolves.

We are looking for a cybersecurity leader who embraces AI, understands the evolving risks introduced by AI and agentic technologies, and can help Genea adopt AI securely while leveraging AI and automation to strengthen cybersecurity operations.

This is a hands-on leadership role for someone who can set direction, build scalable programs, lead the IT team and build out the cybersecurity function as needed, work closely with Engineering and other business teams, and remain involved in execution where needed.

Duties and Responsibilities

Cybersecurity Compliance & Programs

  • Own and continuously mature Genea's cybersecurity compliance program, including SOC 2 Type 2, policies, controls, audit readiness, evidence management, risk assessments, cybersecurity awareness, and readiness for ISO 27001 and other relevant frameworks.
  • Establish practical governance and guardrails for secure enterprise adoption of AI, including approved AI technologies, data protection, third-party AI risk, responsible usage, and emerging AI cybersecurity requirements.
  • Establish measurable cybersecurity KPIs, KRIs, risk reporting, and provide regular program updates to the executive team.

Cloud & Application Security

  • Drive Genea's cloud and application security program in close partnership with Engineering, DevOps, Platform, and Product teams, including secure-by-design practices for traditional applications as well as AI and GenAI capabilities.
  • Strengthen cybersecurity across AWS and Azure, including IAM roles and permissions, least privilege, network controls, secrets management, encryption, logging, secure configurations, infrastructure hardening, and secure access to AI models, agents, APIs, and data.
  • Mature secure SDLC and DevSecOps practices, including threat modeling, architecture reviews, SAST/DAST, dependency and container scanning, software supply-chain security, and controls for emerging AI risks such as prompt injection and excessive agent permissions.
  • Own vulnerability management and coordinate internal and external penetration testing, prioritizing findings and driving remediation with Engineering.

Incident Response & Cybersecurity Operations

  • Own cybersecurity monitoring, detection, investigation, and incident response across cloud, applications, endpoints, corporate systems, and AI-enabled services.
  • Lead incident response from triage and containment through recovery, post-incident review, and corrective actions, while maintaining playbooks and tabletop exercises.
  • Leverage AI and automation to improve threat detection, investigation, alert triage, and response, while monitoring emerging AI-enabled threats and attack techniques.

Identity, Access Management & Corporate IT

  • Own corporate IT operations, including employee endpoints, MDM, SaaS applications, device lifecycle management, onboarding/offboarding, hardware and software provisioning, and employee IT support.
  • Manage identity and access across corporate and approved AI systems, including SSO, MFA, privileged access, least privilege, IAM policies, access reviews, API credentials, and joiner/mover/leaver processes.
  • Drive automation, standardization, patching, secure configuration, endpoint cybersecurity, access governance, and appropriate controls for enterprise AI tools and data usage.

Team Leadership & Development

  • Lead and develop the IT team, establishing clear ownership, operational standards, and accountability across corporate technology and cybersecurity responsibilities.
  • Build the cybersecurity team as the organization grows, identifying capability gaps and hiring or developing the right talent across areas such as cybersecurity engineering, operations, compliance, and risk.

Customer, Vendor & Cybersecurity Risk

  • Own customer cybersecurity questionnaires, RFP responses, customer security reviews, third-party assessments, and vendor cybersecurity risk, including material AI-related vendor and platform risks.
  • Represent Genea's cybersecurity program in customer and partner discussions and clearly communicate Genea's cybersecurity posture and controls.
  • Identify and track material cybersecurity risks, drive remediation, and ensure appropriate executive visibility.

Qualifications

  • 7+ years of experience across cybersecurity, information security, cloud security, application security, security engineering, or IT, including 2+ years in a leadership or management role.
  • Strong technical experience with cloud-native SaaS environments, including AWS and/or Azure, IAM, application security, cloud security, vulnerability management, endpoint cybersecurity, and incident response.
  • Experience with secure SDLC and DevSecOps practices, including threat modeling, penetration testing, SAST/DAST, dependency scanning, container scanning, and secrets management.
  • Practical experience with SOC 2 Type 2, ISO 27001, NIST, or similar cybersecurity frameworks, including working with auditors, assessors, penetration-testing firms, and cybersecurity vendors.
  • Working knowledge of AI/GenAI cybersecurity risks and secure AI adoption practices, including data protection, AI governance, LLM and agent security, and emerging threats such as prompt injection and excessive agent permissions.
  • Strong understanding of modern identity and corporate IT environments, including SSO, MFA, endpoint management, MDM, SaaS administration, and privileged access, with the ability to communicate cybersecurity risk clearly to Engineering teams, customers, business leaders, and executives.
  • Experience building or significantly maturing cybersecurity and IT programs within a growing SaaS technology company preferred.
  • Experience implementing cybersecurity automation across CI/CD, cloud infrastructure, compliance, cybersecurity operations, and AI-enabled workflows preferred.
  • Experience with technologies such as AWS, Azure, Okta, CrowdStrike or equivalent, SIEM, MDM, vulnerability-management platforms, and automated GRC tools preferred.
  • Familiarity with AI cybersecurity frameworks and practices such as NIST AI RMF, OWASP GenAI/LLM guidance, AI red teaming, or securing agentic AI systems; CISSP, CISM, CCSP, or comparable cybersecurity certifications are preferred but not required.

What Success Looks Like

Success in this role means Genea maintains a strong, measurable, and continuously improving cybersecurity posture while supporting the speed and growth of the business.

Cybersecurity risks are clearly identified and prioritized, compliance programs remain audit-ready, cloud and application security practices are integrated into Engineering workflows, AI is adopted with appropriate cybersecurity guardrails, incidents are handled effectively, enterprise customers have confidence in Genea's cybersecurity program, and corporate IT provides employees with a reliable and secure technology environment.

The ideal candidate combines strong technical judgment, practical cybersecurity risk management, operational discipline, a builder's mindset, and a willingness to embrace AI thoughtfully. Cybersecurity should enable the business and Engineering teams to move quickly and securely rather than become a bottleneck.

Compensation

$160-180K annual base salary. This role is also bonus eligible.

This range reflects what Genea reasonably expects to pay for this role at the time of posting. Where an offer falls within the range depends on the candidate's experience, qualifications, and skills, and on internal equity.

Benefits

Full-time employees are eligible to participate in a comprehensive benefits program that includes medical, dental, and vision insurance; flexible spending accounts (FSA); life insurance; accidental death and dismemberment (AD&D) insurance; long-term disability (LTD) coverage; paid time off (PTO); and a 401(k) retirement savings plan. Eligibility is subject to plan terms and conditions.

E-Verify

Genea participates in E-Verify to confirm the employment eligibility of all new hires working in the United States. For more information about E-Verify, please visit the E-Verify website.

Equal Employment Opportunity

Genea is an equal opportunity employer. We make employment decisions based on qualifications, merit, and business need.

Genea does not discriminate on the basis of race, color, religion or religious creed, national origin, ancestry, citizenship status, sex (including pregnancy, childbirth, breastfeeding, and related medical conditions), sexual orientation, gender, gender identity or expression, age, physical or mental disability, medical condition, genetic information, marital status, military or veteran status, height, weight, or any other characteristic protected by applicable federal, state, or local law.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, compensation, benefits, training, transfer, leave of absence, and termination.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Genea's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Genea's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Genea's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.