
Information Security Officer
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Overview
Schedule
Full-time
Career level
Senior-level
Remote
Hybrid remote
Compensation
$110,000-$120,000/year
Benefits
Health Insurance
Dental Insurance
Vision Insurance
Job Description
Sourcebooks is seeking an Information Security Officer to own and manage key components of the company’s Information Security Management System (ISMS) and help strengthen our security and compliance program. This role plays an important part in protecting company systems, data, and operations by leading risk management activities, coordinating security audits, managing policy governance, and supporting business continuity planning.The Information Security Officer will work closely with IT, Legal, and business stakeholders across the organization to ensure the company maintains strong security governance, regulatory compliance, and operational resilience.This is an exempt, salaried position with a range of $110, 000 - $120,00/annually. Starting pay is based on a thoughtful evaluation of job-related factors including geographic location, market conditions, relevant experience, training, and education to ensure a fair and competitive offer. This is a hybrid role based out of our Naperville, IL office with training 5 days/week in office for the first 90 days. Hybrid schedule will be discussed after 90 days.What you’ll do
- Manage and help mature the company’s Information Security Management System (ISMS).
- Lead risk assessments, control gap assessments, and Business Impact Analyses (BIA).
- Maintain the organization’s risk register and track key risk indicators (KRIs) and security metrics.
- Coordinate remediation activities to address security risks and control gaps.
- Support internal and external security audits and regulatory compliance initiatives.
- Maintain and coordinate the company’s Business Continuity and Disaster Recovery program.
- Lead Business Impact Analyses with stakeholders to identify critical systems and operational dependencies.
- Support periodic testing of continuity and recovery plans.
- Develop, maintain, and enforce information security policies, standards, and guidelines aligned with regulatory requirements and industry best practices.
- Partner with the Legal team to ensure policies address regulatory, privacy, and contractual obligations.
- Promote adoption of security policies across the organization and support compliance monitoring.
- Assess security risks related to vendors and service providers that access company systems or data.
- Support security reviews for new vendors and coordinate remediation activities related to third-party security findings.
- Monitor external threat intelligence to identify potential fraud or malicious activity.
- Coordinate with Legal and external services to address domain spoofing, impersonation, and related threats.
- Support cybersecurity awareness initiatives including phishing simulations and employee training.
- Track security initiatives and communicate program progress, risks, and accomplishments to leadership.
- Develop security metrics and reporting to communicate the organization’s risk posture and program maturity.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field.
- 5+ years of experience in cybersecurity, technology risk, governance/risk/compliance (GRC), or technical compliance roles.
- Strong understanding of security governance, policy development, and risk management practices.
- Experience supporting security audits and regulatory compliance initiatives.
- Familiarity with security frameworks such as ISO 27001, ISO 27701, NIST Cybersecurity Framework, NIST SP800-53, NIST SP800-171, PCI-DSS, HITRUST, or CMMC.
- Experience evaluating and implementing security controls.
- Strong analytical, project management, and communication skills.
- Familiarity with Governance, Risk & Compliance (GRC) tools.
- Security certifications such as CISSP, CISM, CISA, or CRISC.
- Experience supporting Business Continuity Planning or Disaster Recovery programs.
- Experience working within an ISO-aligned Information Security Management System.
Powered by JazzHR
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.

FAQs About Information Security Officer Jobs at Sourcebooks
What is the work location for this position at Sourcebooks?
This job at Sourcebooks is located in Naperville, IL, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Sourcebooks?
Candidates can expect a pay range of $110,000 and $120,000 per year.
What employment applies to this position at Sourcebooks?
Sourcebooks lists this role as a Full-time position.
What experience level is required for this role at Sourcebooks?
Sourcebooks is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Sourcebooks for this role?
Sourcebooks offers following benefits: Health Insurance, Dental Insurance, Vision Insurance, Disability Insurance, Life Insurance, Paid Vacation, and 401k Matching/Retirement Savings for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Sourcebooks?
You can apply for this role at Sourcebooks either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.