The mission Of Radio Free Europe/Radio Liberty (RFE/RL) is to promote democratic values by providing accurate, uncensored news and open debate in countries where a free press is threatened and disinformation is pervasive. RFE/RL reports the facts, undaunted by pressure.
We are looking for the IT Security Manager who will lead IT Security department, be responsible for RFE/RL’s cybersecurity program and will report to the CIO.
This is a hands-on technical leadership role focused on security architecture, engineering, and operational oversight. The role will provide direction for the security roadmap, lead major security initiatives, guide technical security decisions, and help ensure that cyber risks are effectively managed across the organization.
The job holder will provide functional leadership across Security Operations, Governance and Risk & Compliance while working closely with IT Infrastructure, Networks, business stakeholders, and external security partners.
Key Responsibilities:
Security Leadership
- Lead the cybersecurity program and technical security roadmap.
- Advise the CIO and leadership team on cyber risks, priorities, and investments.
- Act as the senior escalation point for significant security incidents.
- Promote a pragmatic, risk-based approach to cybersecurity.
Security Architecture & Engineering
- Define and maintain security architecture, standards, and technical baselines.
- Provide security guidance for infrastructure, cloud, identity, Microsoft 365, and AI-related initiatives.
- Lead implementation and optimization of security technologies and controls.
- Ensure security is incorporated into technology projects and modernization efforts.
Security Operations & Risk Management
- Oversee security monitoring, incident response, vulnerability management, and MSSP services.
- Partner with Governance & Risk specialists to support compliance, audits, and risk management activities.
- Monitor security performance, identify gaps, and drive remediation efforts.
- Coordinate security activities across IT, Networks, and business teams.
Qualifications:
Required
- Experience in cybersecurity, security architecture, engineering, and security operations combined with proven managerial experience.
- Trust, collaboration and integrity – a fair, honest and consistent leader who listens, empowers and develops people through coaching and mentoring; leads through clear principles, accountability and respect rather than hierarchy or authority; combines an analytical, critical and innovative mindset with a pragmatic, hands-on approach when needed. Promotes a collaborative security culture across the organization.
- Strong knowledge of Microsoft security technologies, including Defender, Sentinel, Entra ID, and Microsoft 365 Security.
- Experience with incident response, vulnerability management, and security monitoring.
- Ability to communicate effectively with both technical teams and senior leadership.
- English language (Proficient) and Czech language (Desirable/welcome).
Preferred
- Experience with NIST-based security programs.
- Experience in managing security service providers and MSSPs.
- CISSP, CISM, SC-100, CCSP, or similar certifications.
Success in the Role
The successful candidate will establish a clear security architecture roadmap, strengthen security operations and engineering capabilities, improve visibility of cyber risks, and help ensure RFE/RL remains secure, resilient, and aligned with its mission.