NJM Insurance logo

Cybersecurity Awareness Program Specialist - Hybrid

NJM Insurance

Trenton, NJHybridJob$105–132K/yrTracked 1mo agoSeen in employer's feed 3 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$105–132K/yr
Location
Trenton, NJHybrid
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

NJM Insurance is hiring a Cybersecurity Awareness Program Specialist - Hybrid. The Cybersecurity Awareness Program Specialist at NJM Insurance monitors, analyzes, and responds to security incidents while developing and delivering engaging education programs that foster a culture of cybersecurity awareness across the hybrid workforce and subcontractors.

Key focus areas include Monitor and respond to security threats and incidents, Develop and deliver cybersecurity education programs and communications, and Design and implement phishing simulations with follow‑up education.

Successful candidates bring Bachelor's Degree In Cybersecurity, Information Technology, Computer Science, Or Related Field and 3+ Years Of Experience In Information Security Or IT Operations. Important skills include Cybersecurity Awareness Program Development, Cybersecurity Communications, Phishing Simulations, Social Engineering Attack Response, Security Best Practices Communication, and Cyber Threat Monitoring. Preferred (not required): HIPAA, PCI DSS, NYDFS, and Security Awareness Tools.

Skills & qualifications

RequiredNice to have

Skills

Cybersecurity Awareness Program DevelopmentCybersecurity CommunicationsPhishing SimulationsSocial Engineering Attack ResponseSecurity Best Practices CommunicationCyber Threat MonitoringSecurity Incident ResponsePolicy and Procedure DevelopmentTraining Session LeadershipSecurity Data AnalysisEmerging Technology ResearchSecurity Policy EnforcementSecure System ConfigurationsThird-Party Risk ManagementVendor Risk AssessmentsViso TrustNISTISO 27001Analytical SkillsProblem-Solving SkillsHIPAAPCI DSSNYDFSSecurity Awareness ToolsCybersecurity AwarenessSecurity Threat AnalysisSecurity Measures ImplementationCompliance With Internal PoliciesCompliance With External RegulationsEducation Program DevelopmentCommunication Program DevelopmentCyber Threat AwarenessEmerging Technology EvaluationEmerging Threat CountermeasuresRemediation Efforts Monitoring

Qualifications

Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or Related Field3+ Years of Experience in Information Security or IT OperationsCompTIA Security+GIACSSCP

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
Paid Time Off
Parental Leave
401(k) Match

Full job description

New Jersey Manufacturers Insurance Company (NJM) was founded in 1913 by a group of manufacturers seeking to provide cost-effective, safety conscious and financially secure workers' compensation insurance for their workers. From inception the Company has operated as a mutual, with a focus on the needs of its policyholders.

Today, NJM Insurance Group, is a leading mid-sized U.S. property and casualty insurance company with 90 consecutive years of A+ financial strength ratings by AM BEST. Due to exceptional employee experience, NJM has been included on the latest Forbes List of Best Employers in New Jersey for the fourth year in a row. The NJM reputation for being a top provider of outstanding customer service was reaffirmed by the most recent J.D. Power Auto Insurance Claims Survey.

Over the last five years, the Company has focused on a strategic plan that calls for it to become a regional property & casualty insurer and has transitioned away from its affinity-based membership model. To that end, the Company has added an independent agency model for new lines of middle and large commercial and has more than doubled its product offerings. NJM now offers its various products to businesses across New Jersey, Pennsylvania, New York, Maryland, Delaware, and Connecticut.

The Cybersecurity Awareness Program Specialist (Information Security Analyst Is the official NJM Title) is responsible for monitoring, analyzing, and responding to security incidents and threats across the organization. This role supports the implementation of security measures to protect systems, networks, and data, ensuring compliance with internal policies and external regulations. This position plays a critical role in fostering a culture of cybersecurity awareness across the organization, This role develops and delivers engaging education programs and communications that empower our internal team members and subcontractors to recognize and respond to cyber threats, understand industry compliance requirements, and safely handle sensitive data.

This is a Hybrid Role working in the West Trenton, NJ office 3 days per week and at home 2 days per week.

Essential Duties and Responsibilities: Essential functions of this job are listed below in order of priority. Reasonable accommodation may be made to enable individuals to perform the essential duties. Regular and predictable onsite attendance is an essential function of the job.

  • The analyst, plays a critical role in fostering a culture of cybersecurity awareness across the organization, with a focus on the unique challenges of the insurance industry

  • This role develops and delivers engaging education programs and communications that empower our internal team members and subcontractors to recognize and respond to cyber threats, understand industry compliance requirements, and safely handle sensitive data

  • Key Responsibilities Design and implement, cybersecurity awareness, and education programs tailored for a hybrid workforce, subcontractors, and corporate staff (e.g., short videos, )

  • Conduct regular phishing simulations and provide follow‑up education based on results to improve awareness and response to social engineering attacks

  • The ideal candidate understands how to communicate security best practices to a diverse workforce in a practical, accessible way

  • Stay current on evolving cyber threats in insurance, including attacks on project management tools, supply chain risks, and mobile device vulnerabilities

  • Team player who can work independently under general supervision, applying sound judgment within defined policies and procedures

  • Develop and implement policies and procedures to ensure compliance with security standards

  • Monitor and respond to security threats and incidents

  • Lead training sessions and workshops related to cybersecurity topics

  • Analyze security data and develop reports to inform senior management of any risks or opportunities for advancement

  • Research and evaluate emerging technologies and provide recommendations for implementation

  • Identify opportunities for improvement and recommend changes to ensure compliance with security standards

  • Assist in the development and enforcement of security policies and procedures.

  • Collaborate with IT and business units to ensure secure system configurations.

  • Stay current with emerging threats and recommend appropriate countermeasures.

  • Develop and support security awareness program activities.

  • Conduct regular phishing simulations and provide follow‑up education based on results to improve awareness and response to social engineering attacks

  • The ability to communicate security best practices to a diverse workforce in a practical, accessible way.

  • Monitor and track remediation efforts for identified non-compliance issues to ensure timely resolution, including managing policy exceptions and violations.

  • Support the Third-Party Risk Management (TPRM) program, including conducting vendor risk assessments, reviewing security documentation, leveraging tools such as Viso Trust, and partnering with stakeholders to manage third-party risk throughout the vendor lifecycle.

Required Qualifications: Knowledge, skills & abilities, experience, minimum & desired education, certification and/or license requirements.

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.

  • 3+ years of experience in information security or IT operations.

  • Familiarity with security frameworks (e.g., NIST, ISO 27001).

  • Strong analytical and problem-solving skills.

Preferred Qualifications:

  • Security certifications such as CompTIA Security+, GIAC, or SSCP.

  • Exposure to regulatory compliance (e.g., HIPAA, PCI-DSS, NYDFS).

  • Experience with Security Awareness Tools.

Compensation: Salary is commensurate with experience and credentials.

Pay Range: $104,686-$131,986

Eligible full-time employees receive a competitive Total Rewards package, including but not limited to a 401(k) with employer match up to 8% and additional service-based contributions, Health, Dental, and Vision insurance, Life and Disability coverage, generous PTO, Paid Sick Leave, and paid parental leave in addition to state-mandated leave. Employees may also be eligible for discretionary bonuses.

Legal Disclaimer: NJM is proud to be an equal opportunity employer. We are committed to attracting, retaining and promoting a diverse and inclusive workforce that is fully representative of the diversity that exists in the communities in which we do business.

You've read the whole posting — now see how you match it.