Carlisle Companies is a leading manufacturer of building envelope products and solutions that make buildings more energy efficient, durable, and sustainable.We deliver roofing, insulation, waterproofing, and architectural systems for commercial and residential projects using a focus on innovation and continuous improvement to solve today's challenges.We're equally committed to our people, prioritizing safety, inclusion, career growth development, tuition assistance, and excellent benefits.With manufacturing, engineering, R&D, and corporate functions across North America and globally, Carlisle offers stability, agility, and opportunity in a performance-driven culture. Do meaningful work and shape the future of building solutions; apply today and come grow with us.
Job Summary:
The Information Security Administratoris responsible forsupporting technical, operational, and procedural controls that protect confidentiality, integrity, and availability of information based on business requirements and risk analysis. This role is part of the Global Security Operations team and supports Carlisle's proactive security posture across the enterprise. The position is onsite in Scottsdale, AZ, and may require occasional travel up to 25%.
Duties and Responsibilities:
- Administer andmaintainup to five security tools and/or applications.
- Analyze successful and unsuccessful breaches of security controls,determineroot cause, and support remediation efforts.
- Manage day-to-day tickets and break/fix requests.
- Assistwith and support escalation of verified security events and incidents from analysts.
- Create andmaintainglobal security documents, including procedures and guidelines for identities, endpoints, data, applications, and infrastructure; devisemethods to measure their effectiveness.
- Provide periodicassistanceto internal and external auditors, includingtimelycontrol evidence, clarification of processes, and participation in interviews related to technologies performing controls.
- Assistteam members with security tools, report creation, and resolution of security issues.
- Report unresolved network security exposures, misuse of resources, and noncompliance.
- Manage andmaintainexternal assets and review dark web datasets.
- Manage the Microsoft security platform, including Azure Conditional Access Policies, named locations, privileged roles, Intune, and Microsoft Defender platforms.
- Perform threat and vulnerability assessments.
- Provide remote access platform design, configuration, and support.
- Assistand train Carlisle employees in becoming andremainingcompliant with Information Security Policies and Standards, including support for security training content.
- Research andparticipatein the selection of innovative technologies that protect against data loss;assistwith configuration and deployment of such tools.
- Assistin the development of security awareness communications, including quarterly newsletters.
- Monitor phishing simulation platform.
- Stay current with modern technology and adapt it to improvethe securityposture.
- Provide guidance and mentorship to Cybersecurity Analysts.
- Perform other duties as assigned.
Required Knowledge/Skills/Abilities:
- Knowledge of architecture and system hardening techniques.
- Understanding ofnetwork protocols, common services, network vulnerabilities, and network attack patterns.
- Broad technical knowledge of server, desktop, and mobile operating systems.
- Experience with security and vulnerability management tools found in large network environments.
- Experience with remote access solutions, including solutions for mobile devices.
- Experience with encryption, anti-virus, and patch management technologies.
- Experience monitoring key infrastructure elements,identifyingsecurity events, performing analysis, andinitiatingresponse activities, including documentation and escalation asappropriate.
- Knowledge of industry security standards, including NIST, ISO, and CMMC2.
- Experience performing risk analysis and managing security and technology controls.
- Excellent written and oral communication skills, including the ability to communicate security concepts to technical and non-technical audiences.
- Strong decision-making capabilities, with the ability to evaluate costs and benefits of potential actions and identifyappropriate solutions.
- Team-oriented approach with the ability to work effectively with diverse stakeholders.
- Ability to complete tasks byestablisheddeadlines and balance competing demands and priorities.
- Self-starter who takes initiative and requires minimal supervision.
Education and Experience:
- Required:
- Bachelor's degree in Computer Science, Information Systems, another related field, or equivalent job experience.
- Minimum of two years of relevant experience, such as firsthand experience as a security administrator, network administrator, system administrator, or similar role.
- Possess or obtain an industry certification, such as CompTIA Security+, within six months of hire, paid for by Carlisle.
- Preferred:
- Desired education level - Bachelor's degree in Computer Science
- Desired experience level - 5yrs
- Desired certifications - already have a Security+ cert or equivalent
Working Conditions:
- This is an onsite position based in Scottsdale, AZ.
- Occasional travel may berequiredup to 25%. Travel expenses will be reimbursedin accordance withthecompanytravel and expense policy.
- The employee is expected tocomply withall company policies, including those related to data security, confidentiality, acceptable use of technology, and remote work standards.
Additional Information:
This position typically operates Monday through Friday during standard business hours; however, the team utilizes staggered start times to support business needs and coverage requirements. Employees may be scheduled to begin work between 5:30 AM and 9:00 AM, as determined by the department and manager. Occasional flexibility may be required to accommodate meetings across time zones or address critical business needs. The employee is expected to comply with all company policies, including those related to data security, confidentiality, acceptable use of technology, and remote work standards.
This is a fully onsite position. The employee is expected to be physically present at their designated work location during scheduled hours. In-person attendance is essential for collaboration, access to onsite resources, and the performance of job responsibilities. Employees must comply with all site-specific safety, security, and conduct policies.
Periodic travel may be required for team meetings, training sessions, or company-sponsored events, with advance notice provided. Travel expenses will be reimbursed in accordance with the company's travel and expense policy.