{"id":1269012,"url":"https://alion.io/job/globalstep-security-manager-lead-information-security","title":"Security Manager / Lead – Information Security","company":{"id":3801488,"name":"GlobalStep","domain":"globalstep.com","url":"https://alion.io/company/globalstep","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Schema","truth_index":{"grade":"C","score":61,"open_postings":17,"ghost_share":0.647,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-28T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"lead","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":[],"countries":[],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":null,"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"DLP","optional":false},{"name":"Least Privilege","optional":false},{"name":"Microsoft Entra ID","optional":false},{"name":"SIEM","optional":false},{"name":"VPN","optional":false},{"name":"Zero Trust","optional":false},{"name":"Crowdstrike","optional":true},{"name":"IBM QRadar","optional":true},{"name":"Microsoft Sentinel","optional":true},{"name":"Splunk","optional":true}],"status":"live","first_seen_at":"2026-09-24T09:46:04Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-27T20:42:19Z","board_verified":true,"closed_at":null,"days_open":4,"trust":{"level":"ok","repost_count":0,"flags":["company_stale"],"days_open":3},"description":"Shift Timing : 3 PM-12 AM\n\nAbout GlobalStep\n\nGlobalStep is a global creative and technology services company in the video games industry, supporting leading game developers and publishers across studios in the USA, Canada, UK, Romania, Portugal, and India.\n\nWe partner deeply in the game development lifecycle-handling pre-release game builds, assets, and sensitive IP across services including art production, engineering, QA, localization, and player engagement.\n\nWith a distributed studio model, hybrid workforce, and high-value client IP, security is mission-critical to our business and growth.\n\nWhy This Role\n\nGreenfield opportunity to build and scale a global security program\n\nOwn end-to-end security architecture and implementation\n\nBuild and mature a SOC from the ground up\n\nDirect exposure to global clients, audits, and publisher expectations\n\nWork in a high-impact, IP-sensitive environment\n\nStrong pathway toward Head of Security / CISO roles\n\nRole Purpose\n\nThis role is responsible for designing, building, and operationalizing GlobalStep’s cybersecurity program across a distributed, hybrid, and high-growth environment.\n\nYou will act as the single-threaded owner of security, while working closely with internal IT teams and external partners to implement scalable, enterprise-grade security controls.\n\nKey Responsibilities\n\n1. Security Architecture & Strategy\n\nDesign and implement end-to-end security architecture across:Identity & Access\n\nEndpoints & Devices\n\nNetwork & Segmentation\n\nLogging & Monitoring\n\nData Protection\n\nEstablish identity as the primary control plane:MFA, RBAC, PAM, Conditional Access\n\nDrive Zero Trust-aligned access models\n\nImplement client/project-level environment segregation\n\n2. Cross-Functional Collaboration\n\nWork closely with:Network Administrators (segmentation, firewall policies, VPN)\n\nM365 / Identity specialists (Entra ID, Conditional Access, collaboration security)\n\nAlign security architecture with IT infrastructure and cloud strategy\n\nAct as the bridge between security and IT operations teams\n\n3. Identity & Access Management (Critical Focus Area)\n\nManage access for a high-churn workforce (FTEs, contractors, freelancers)\n\nImplement strong Joiner-Mover-Leaver (JML) lifecycle controls\n\nEnforce:Least privilege access\n\nPrivileged access separation\n\nElimination of orphaned accounts\n\nAlign access provisioning with project-based roles and groups\n\n4. Endpoint, Device & BYOD Security\n\nDefine and enforce controls for:Corporate devices\n\nLab/testing devices\n\nBYOD endpoints\n\nImplement:Endpoint detection & response (EDR)\n\nDevice compliance and hardening\n\nEstablish differentiated trust models:Full access → managed devices\n\nRestricted access → BYOD\n\n5. Security Monitoring, SIEM & SOC\n\nSelect, deploy, and operationalize SIEM platform\n\nOnboard logs across identity, endpoint, network, and infrastructure systems\n\nDesign and build a multi-tier SOC, including:Tier 1 monitoring\n\nTier 2 investigation\n\nDetection engineering\n\nThreat hunting\n\nDevelop detection use cases and response playbooks\n\n6. SOC/NOC Leadership & Capability Building\n\nLead and manage a team of network and security professionals supporting:SOC (Security Operations)\n\nNOC (Network Operations)\n\nDefine:Roles and responsibilities\n\nEscalation models\n\nPerformance metrics\n\nCareer paths through skill gap analysis and focused training programs\n\nEnsure 24x7 monitoring readiness as the program matures\n\n7. Incident Response & Threat Management\n\nLead response to:Security incidents\n\nThreats and vulnerabilities\n\nDevelop playbooks for:Ransomware\n\nAccount compromise\n\nData exfiltration / IP leakage\n\nDrive root cause analysis and continuous improvement\n\n8. Data & Game IP Protection (Core Business Risk)\n\nDesign and implement controls to protect high-value game IP\n\nImplement:Data Loss Prevention (DLP)\n\nFile access monitoring\n\nAccess traceability\n\nEnforce:USB restrictions\n\nScreen capture controls\n\nMonitor for unusual data access and movement patterns\n\n9. Network & Infrastructure Security\n\nWork with network teams to implement studio-level segmentation\n\nReduce lateral movement and enforce controlled east-west traffic\n\nSecure remote access (VPN and evolving models)\n\n10. Vendor & Partner Management\n\nEngage with third-party vendors and service providers for:Security tool deployment\n\nImplementation support\n\nOngoing platform management\n\nEvaluate vendors and ensure alignment with security architecture and standards\n\n11. Governance, Risk & Compliance\n\nDevelop and enforce security policies and procedures\n\nOwn:Client security audits\n\nQuestionnaires\n\nCompliance requirements\n\nInterface with client security stakeholders\n\n12. Security Operations & Scaling\n\nSupport a centralized security operations model (Pune hub)\n\nBuild systems that scale from ~1400 to ~2800 users\n\nEmbed security into business and IT processes\n\nMust-Have\n\n8-15 years of experience in cybersecurity\n\nProven experience building or scaling security programs\n\nStrong hands-on expertise in:SIEM / SOC operations\nIncident response\nIdentity & access management\n\nExperience working cross-functionally with IT, network, and cloud teams\n\nExperience managing or leading SOC/NOC or security operations teams\n\nExperience building team capability, training frameworks, or career paths\n\nExperience working with external vendors / implementation partners\n\nStrong understanding of:Network security and segmentation\nAccess control models\n\nExcellent communication and stakeholder management skills\n\nGood-to-Have\n\nExperience with:Microsoft Entra ID\nCrowdStrike (or similar EDR)\nMicrosoft Intune\nMicrosoft Sentinel / Splunk / QRadar\nDLP / data protection tools\n\nExperience in:Gaming, media, VFX, or IP-sensitive industries\n\nFamiliarity with:Zero Trust architectures\nBYOD security models\n\nCertifications:CISSP, CISM, CEH or equivalent\n\nSuccess Metrics\n\nImprovement in security maturity and visibility\n\nEffective incident detection and response\n\nReduction in risk of IP leakage\n\nSuccessful rollout of security tools and platforms\n\nStrong SOC/NOC performance and team capability growth\n\nClear career progression and upskilling within the security team\n\nPositive outcomes in client audits and security reviews","description_format":"text","description_chars":6170,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Design & Creative","Gaming","Game Development"],"lifecycle":[{"event":"open","at":"2026-09-25T23:24:14Z"}],"liveness":{"score":70,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.695,"p_room":1,"age_days":3,"expected_fill_days":32,"reasons":["conf:9","stale_co","urgency","velocity","win:early"],"computed_at":"2026-09-28T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/globalstep-security-manager-lead-information-security","json_url":"https://alion.io/job/globalstep-security-manager-lead-information-security.json","meta":{"generated_at":"2026-09-28T23:22:49Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":992,"day_limit":5000,"remaining_today":4008,"minute_limit":60,"resets_at":"2026-09-29T00:00:00Z"}}}