Dir Security Operations & Engineering
Listed on 2026-10-04
-
IT/Tech
Cybersecurity, Security Management & Operations, Information Security & Data Protection
Our vision for the future is based on the idea that transforming financial lives starts by giving our people the freedom to transform their own. We have a flexible work environment, and fluid career paths. We not only encourage but celebrate internal mobility. We also recognize the importance of purpose, well-being, and work-life balance. Within Empower and our communities, we work hard to create a welcoming and inclusive environment, and our associates dedicate thousands of hours to volunteering for causes that matter most to them.
Chart your own path and grow your career while helping more customers achieve financial freedom. Empower Yourself.
Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time, including CPT/OPT.
The Director Security Operations & Engineering will lead security operations and engineering teams responsible for protecting the organization's information systems and technology environment. This role will serve as a security advocate and trusted partner to key stakeholders and service owners, providing guidance on security operations, engineering, and the effective balance of security and business requirements. The Director will be accountable for the performance and results of multiple related teams responsible for security monitoring, event analysis, incident response, security engineering, and security controls.
This role will provide input into security policies, procedures, and departmental priorities and translate broader information security objectives into actionable plans for assigned teams.
- Lead the day to day management and performance of multiple security operations and engineering teams, including subordinate managers and professional level security staff, establishing priorities, objectives, and performance expectations.
- Provide input into annual departmental goals, objectives, policies, procedures, and priorities, and develop departmental plans and resource allocations that support broader Information Security objectives.
- Oversee cybersecurity monitoring, event analysis, identification, escalation, investigation, reporting, and incident response processes.
- Direct analysis of security logs and other relevant data to identify unauthorized access, malicious activity, intrusion attempts, potential compromises, and emerging threats.
- Oversee security services and technologies including SIEM, IDS/IPS, firewalls, web application firewalls, security event correlation capabilities, and related security platforms.
- Ensure external threat intelligence, vulnerability assessment information, and other relevant security data are effectively incorporated into monitoring, investigation, and response processes.
- Develop and monitor operational metrics and reporting related to security events, trends, vulnerabilities, mitigation activities, service performance, and departmental effectiveness, and present findings and risks to senior security leadership and stakeholders.
- Oversee the development and execution of standard operating procedures, job aids, security hardening standards, and processes that support consistent security operations and engineering activities.
- Ensure security devices and controls are appropriately designed, implemented, maintained, monitored, tested, and improved in accordance with established architecture and change control processes, including cryptographic controls within assigned areas of responsibility.
- Identify security risks, direct the development of remediation strategies or mitigating controls, and oversee or approve application and system change requests requiring security review.
- Provide subject matter expertise and departmental leadership for enterprise information security initiatives, strategies, projects, policies, regulatory inspections, and internal and external audits.
- Lead or oversee Information Security and Risk projects, coordinating with internal teams, subject matter experts, business and technology stakeholders, and third parties to resolve complex security issues and apply appropriate security strategies, policies, frameworks, and recommendations.
- Assign teams and staff to projects, monitor project status, schedules, budgets, resource constraints, and departmental issues, and elevate significant risks or issues to senior security leadership as appropriate.
- Participate in departmental budget planning, manage assigned resources and expenditures, forecast staffing…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).