Director - Cloud Security
Listed on 2025-12-02
-
IT/Tech
Cybersecurity, IT Project Manager, Cloud Computing, IT Consultant
Job Description
We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world – together. At Ford, we’re all a part of something bigger than ourselves. Are you ready to change the way the world moves? In today’s rapidly evolving digital landscape, cloud security stands as a key component to organizational success.
It is paramount that we safeguard data, ensure compliance and mitigate risk as workloads are migrated to Cloud and Software-as-a-Service (SaaS) providers.
We are seeking a Director – Cloud Security who will lead a team of security professionals providing strategic leadership and oversight for our comprehensive public cloud infrastructure and Software-as-a-Service (SaaS) security programs. This critical role will define and execute a unified security strategy across our multi-cloud environments (Microsoft Azure, Google Cloud Platform) and extensive SaaS application portfolio. The ideal candidate will possess a deep understanding of both cloud infrastructure and SaaS security domains, exceptional leadership capabilities, and a proven track record of building and managing high‑performing security teams.
This role ensures our Public Cloud Infrastructure and SaaS ecosystems are secure, compliant, and resilient against evolving threats, aligning security initiatives with broader business objectives.
- Strategic Leadership & Program Management: Define, develop, and implement a holistic enterprise public cloud infrastructure and SaaS security strategy, roadmap, and security architecture that integrates seamlessly across all platforms and applications. This includes partnering with various teams to align on the long‑term technology roadmap for security products and features.
- Team Development & Oversight: Supervise, mentor, and develop a team of security managers and their respective teams (Public Cloud Security Infrastructure Manager, SaaS Security Manager, and their direct reports), fostering professional growth and maintaining high performance across both cloud and SaaS security functions.
- Unified Security Posture: Drive the implementation and management of robust security controls and policies, ensuring a consistent and effective security posture across Azure, GCP, and all SaaS applications. This includes evaluating, integrating, and managing next‑generation security tools and technologies specific to cloud ecosystems.
- Compliance & Governance: Oversee compliance with all relevant regulatory and internal requirements, including NIST 800‑53, ISO 27001, SOC 2, GDPR, and CCPA, across both cloud infrastructure and SaaS applications. Develop and implement security controls for IaaS, PaaS, and SaaS environments.
- Risk Management: Establish and manage comprehensive risk assessment and management programs for cloud infrastructure and SaaS applications, prioritizing remediation efforts based on risk, business impact, and threat intelligence. This includes overseeing third‑party SaaS vendor risk management, due diligence, and continuous monitoring of vendor security posture.
- Incident Response Oversight: Partner with Cyber Defense leadership to align on incident response goals, requirements and data to ensure effective containment, analysis, and resolution. Assist with additional Response activities when requested by Cyber Defense leadership.
- Cross‑functional
Collaboration:
Collaborate extensively with engineering, operations, procurement, legal, GRC, business units, and audit teams to embed security throughout the entire lifecycle of cloud services and SaaS applications, from selection and design to deployment and offboarding. - Reporting & Communication: Develop and present comprehensive reports on the enterprise cloud and SaaS security posture, compliance status, vendor risk, and key security initiatives to executive leadership and relevant governance forums.
- Innovation & Threat Intelligence: Stay abreast of the latest security threats, vulnerabilities, emerging technologies, and best practices relevant to multi‑cloud environments (Azure, GCP) and the evolving SaaS landscape. Evaluate and recommend new cloud security technologies…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).