NextGenEnergyJobsRenewable Energy Jobs
CompaniesCitiesIndustries

NextGenEnergyJobs

The #1 platform for renewable energy careers. Join thousands of professionals who've found their dream jobs in renewable energy, sustainability, and renewable tech.

0+Newsletter subscribers
25K+Jobs posted
100+Companies

Sustainability Partners

Sustainability Software DirectoryRefurbished Tech Guide

Find Jobs

  • All Jobs
  • By Location
  • By State
  • International
  • By Industry
  • Top Companies
  • Job Titles

Job Types

  • Remote Jobs
  • Hybrid Jobs
  • Full-time
  • Part-time
  • Contract
  • Internships
  • Visa Sponsored

Experience

  • Entry Level
  • Mid Level
  • Senior Level
  • Executive
  • Remote Internships

Resources

  • Career Advice Hub
  • Top 10 Jobs
  • Solar Sales Salary
  • Become Solar Engineer
  • Salary Insights
  • CV Analyzer
  • Post a Job

Popular Job Locations

San Francisco
245 jobs
Boston
189 jobs
Denver
167 jobs
Austin
143 jobs
New York
298 jobs
Chicago
132 jobs
Seattle
201 jobs
Portland
98 jobs
Los Angeles
176 jobs
San Diego
87 jobs
Washington DC
203 jobs
Atlanta
112 jobs

Hot Remote Specializations

Project ManagerSolar SalesCustomer SuccessData EntryAll Data Entry
© 2026 NextGenEnergyJobs. All rights reserved.
Privacy PolicyTerms of ServiceAbout UsContact
  1. Home
  2. Jobs
  3. Information Security Manager
Cypress Creek Renewables logo

Information Security Manager

Cypress Creek Renewables
Durham, DC
Full Time
Posted May 29, 2026
$140k - $170k
Renewable Energy Development
~103 people viewed this recently
Apply Now

Application opens on company website

Job Description

Cypress Creek Energy is hiring an Information Security Manager to lead the company's security operations and compliance program.

Key Responsibilities

Security Operations & Engineering • Endpoint security: Administer and tune Microsoft Defender across the endpoint estate, including policy configuration, alert triage, response, and reporting. • Network and access security: Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems. • SIEM operations: Own SIEM tuning, detection engineering, log source onboarding, alerting, and incident workflows. Build dashboards and metrics that surface meaningful signals. • Vulnerability management: Run the vulnerability scanning program across AWS and Azure cloud environments and on-premises infrastructure. Prioritize, track, and verify remediation in partnership with IT and engineering teams. • Patch management: Maintain endpoint patching cadence and reporting, ensuring coverage, exception tracking, and SLA adherence. • Digital forensics & incident response: Lead investigations into security events, perform forensic analysis, document findings, and coordinate response with internal teams and external partners as needed. Compliance & Governance • NIST-based program: Maintain and continuously improve the company's NIST Cybersecurity Framework-aligned security program, including controls mapping, evidence collection, and gap remediation. • Policy management: Own the security policy library — ensure policies and standards are current, reviewed on a defined cadence, approved through the right channels, and communicated to the business. • AI policy and guidance: Develop and maintain the company's AI usage policies, acceptable use guidance, and review process for new AI tools, in coordination with Counsels and IT. • System inventory: Build and maintain an authoritative inventory of systems, applications, data flows, and ownership. Keep it accurate as the environment evolves. • Audit and assessment support: Lead responses to internal and external audits, customer security reviews, and regulatory inquiries. Manage remediation of identified findings through closure. • Risk management: Identify, document, and track information security risks; propose mitigations and report on residual risk to leadership. Leadership & Cross-Functional Partnership • Stakeholder engagement: Partner with IT, Counsels, HR, and business leaders on security matters, providing clear guidance that balances risk with business needs. • Operational Technology (OT): Act as a partner and advisor to the OT team coordinating security and compliance initiatives across the company. Manage intersection of IT and OT endpoints, systems, and networks. • Security awareness: Drive the security awareness program, including phishing simulations, training content, and ongoing communications. • Vendor and third-party risk: Assess and manage security risk associated with vendors, contractors, and third-party service providers. • Future team leadership: Lay the groundwork to scale the function. As the program matures, hire, mentor, and lead a team of security professionals.

Requirements

• Use of AI to enhance and scale security operations – establish AI first Security Ops • Bachelor's degree in computer science, information systems, cybersecurity, or related field — or equivalent professional experience. • 5+ years of progressive experience in information security, with demonstrated depth in security operations, engineering, or a combination of both. • Hands-on administration and tuning experience with Microsoft Defender (Endpoint, Identity, Cloud). • Production experience operating Zscaler (ZIA and/or ZPA), including policy management and troubleshooting. • Strong SIEM experience — building detections, tuning alerts, investigating incidents, and onboarding log sources. • Vulnerability management experience across cloud environments, specifically AWS and Azure. • Working knowledge of digital forensics and incident response methodology. • Demonstrated experience operating a security program aligned to the NIST Cybersecurity Framework or NIST 800-53. • Track record of writing, maintaining, and operationalizing security policies and standards. • Clear written and verbal communication, including the ability to explain technical risk to non-technical audiences. • Ability to work from the Durham, NC or Washington, DC office three days per week. • Embrace and live by the mission and values of Cypress Creek Energy Preferred Qualifications • Industry certifications such as CISSP, CISM, GIAC (GCIH, GCFA, GCIA), or equivalent. • Experience operating in the energy, utility, or critical infrastructure sector. • Familiarity with NERC CIP or other regulatory frameworks relevant to the power sector. • Experience scripting or automating security workflows (Python, PowerShell, KQL). • Prior experience as a senior technical lead preparing to step into a manager role. Location: The preferred location for this role is for our offices in Durham, NC and Washington, DC. Our team operates on a hybrid schedule, with in-office schedule of three days per week. Compensation: The salary range for the position is $140,000 - $170,000 plus bonus and benefits. Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience, and location.

Benefits & Perks

• 15 days of Paid Time Off, accrual up to 20 days, 11 observed holidays. • 401(k) Match • Comprehensive package including medical, dental, vision and health insurance • Wellness stipend, family planning stipend, and generous parental leave • Tuition Reimbursement • Phone Bill Reimbursement • Company Swag A note to Recruiting Agencies Cypress Creek Energy Human Resources team does not accept unsolicited resumes from third party recruiters, staffing firms, or related agencies. The Human Resources team coordinates all recruiting and hiring at our company. We do not accept resumes from third-party recruiters unless authorized by the Human Resources team and if a signed agreement is in place. Any unsolicited resumes will be considered property of CCE and we are not responsible for any related fees. All communication related to recruiting partnerships should ONLY be directed to the Human Resources team. Please be aware of recruiting scams—official communications will only come from @ccrenew.com, we will never request personal or financial information, and any suspicious activity should be reported to HR@ccrenew.com .

Ready to Apply?

Join Cypress Creek Renewables and make an impact in renewable energy

Apply Now

Stay Updated on Sustainability Jobs

Get the latest renewable energy jobs and career tips delivered to your inbox.

Job Alerts

Get notified about new sustainability jobs

More at Cypress Creek Renewables

Associate, M&A

$145k

Field Service Technician

Richmond

Director, Interconnection Execution

Durham$240k

More jobs at Cypress Creek Renewables

Cypress Creek Renewables logo

Associate, M&A

Cypress Creek Renewables
NEW
Not specifiedNot specified
Full Time
6h
$120k-145k
Cypress Creek Renewables logo

Field Service Technician

Cypress Creek Renewables
NEW
RichmondRichmond, VA
Full Time
6h
Cypress Creek Renewables logo

Director, Interconnection Execution

Cypress Creek Renewables
NEW
DurhamDurham, NC
Full Time
6h
$200k-240k