Senior Director, Information Security (Relocation eligible
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager, IT Consultant
Senior Director, Information Security (CISO)
Position Summary:The Senior Director, Information Security (CISO) is responsible for leading the enterprise cybersecurity strategy, governance, and risk management program across a large, multi-site organization. This executive leader partners with business and technology stakeholders to protect critical systems, applications, and data while enabling secure digital transformation initiatives.
The role provides strategic direction for cybersecurity operations, regulatory compliance, incident response, business continuity, and third-party risk management. The Senior Director, Information Security (CISO) leads and develops high-performing security teams, establishes enterprise security standards, and serves as a trusted advisor to executive leadership on cybersecurity strategy and organizational risk.
Key Responsibilities Cybersecurity Strategy & Leadership- Develop and execute the enterprise information security strategy aligned with business and technology objectives.
- Establish and maintain cybersecurity policies, standards, governance, and security control frameworks.
- Drive continuous improvement of the organization's cybersecurity maturity through strategic initiatives and measurable outcomes.
- Partner with executive leadership to ensure security supports innovation, growth, and operational excellence.
- Lead enterprise cybersecurity risk management, including identification, assessment, mitigation, and reporting of technology risks.
- Ensure compliance with industry security frameworks and regulatory requirements such as NIST, ISO 27001, GDPR, and other applicable standards.
- Oversee internal and external security audits, risk assessments, and remediation efforts.
- Present cybersecurity risks, trends, and recommendations to executive leadership and governance committees.
- Provide executive oversight of Security Operations Center (SOC) activities, vulnerability management, threat detection, and incident response.
- Lead enterprise cyber incident response planning, execution, and post-incident reviews.
- Develop and maintain disaster recovery and business continuity strategies focused on cyber resilience.
- Monitor the evolving threat landscape and implement proactive security measures to reduce organizational risk.
- Partner with infrastructure, application development, cloud, and enterprise architecture teams to integrate security into technology initiatives.
- Evaluate emerging cybersecurity technologies and recommend strategic investments.
- Ensure security is embedded throughout system design, application development, cloud platforms, and infrastructure operations.
- Establish cybersecurity requirements for vendors, suppliers, and strategic partners.
- Oversee third-party security assessments and ongoing risk monitoring.
- Strengthen supply chain security through governance, due diligence, and continuous evaluation.
- Lead, mentor, and develop high-performing cybersecurity leaders and technical teams.
- Foster a culture of accountability, collaboration, continuous learning, and operational excellence.
- Support succession planning, workforce development, and talent acquisition for the cybersecurity organization.
- Serve as the primary cybersecurity advisor to executive leadership.
- Translate complex technical risks into clear business recommendations.
- Deliver executive-level reporting on cybersecurity posture, emerging threats, compliance, and strategic initiatives.
- Promote security awareness through enterprise-wide education and communication programs.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related discipline.
- 12+ years of progressive experience in cybersecurity, information technology, or enterprise risk management.
- Minimum of 5 years leading enterprise cybersecurity programs in a senior leadership or executive capacity.
- Demonstrated experience developing and executing enterprise information security strategies.
- Deep knowledge of cybersecurity frameworks including NIST, ISO 27001, CIS Controls, and regulatory compliance standards.
- Experience leading Security Operations, Incident Response, Vulnerability Management, Identity & Access Management (IAM), and Governance, Risk & Compliance (GRC) programs.
- Proven success leading cross-functional teams within complex, enterprise environments.
- Strong executive communication, stakeholder management, and strategic planning skills.
- Master's degree in Cybersecurity, Information Technology, Business Administration, or a related field.
- Professional certifications such as CISSP, CISM, CISA, CRISC, or equivalent.
- Experience supporting global or multinational organizations.
- Experience with cloud security, zero trust architecture, and modern cybersecurity technologies.
- Familiarity with business continuity planning and disaster recovery…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).