Vice President of Infrastructure Security overseeing enterprise-level cyber risk across platforms. Partnering with infrastructure and technology leaders to ensure secure, resilient, and compliant services.
Responsibilities
Provide senior-level cyber risk oversight for enterprise infrastructure platforms, including compute, storage, network, virtualization, identity, and cloud services.
Act as the primary cybersecurity risk partner to infrastructure and platform executives, advising on design decisions, material change initiatives, and risk acceptance.
Drive consistent application of security-by-design and resilience principles across infrastructure strategy, architecture, and lifecycle processes.
Lead infrastructure cyber risk assessments, control gap analysis, and risk prioritization aligned to enterprise risk appetite and regulatory expectations.
Oversee execution and tracking of material risk remediation efforts across infrastructure domains, ensuring transparency and escalation where required.
Provide leadership during infrastructure-related cyber incidents, including decision support, impact assessment, and post-incident improvements.
Partner with global cybersecurity functions to influence standards, patterns, and tooling related to infrastructure security (e.g., vulnerability management, IAM, logging, cloud security).
Present infrastructure cyber risk, trends, and material issues to senior management and governance forums in clear business-relevant terms.
Requirements
Significant experience in infrastructure cybersecurity or technology risk leadership within large, complex enterprises, preferably in regulated financial services environments.
Strong understanding of enterprise infrastructure architectures and associated security risks across on-prem, cloud, and hybrid models.
Proven ability to lead risk-based decision-making, including control design, remediation prioritization, and risk acceptance discussions at senior levels.
Demonstrated success influencing senior infrastructure and technology stakeholders without direct line authority.
Strong communication skills, with experience translating technical infrastructure risk into business and regulatory impact.
Senior-level experience with public cloud security (AWS, Azure, and Oracle) and cloud governance models.
Familiarity with infrastructure automation and DevOps/IaC from a security and control perspective.
Experience operating within regulatory or industry frameworks (e.g., NIST, ISO, DORA, FFIEC).
Background supporting large-scale infrastructure transformation initiatives (e.g., data center exit, cloud migration, resilience uplift programs).
Fluency in English required, Mandarin proficiency highly desireable.
Benefits
our retirement savings plan (401K) with company match
insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
paid-time off including vacation, sick leave, short term disability, and family care responsibilities
access to our Employee Assistance Program
incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans)
eligibility for certain tax advantaged savings plans
Business Development Representative creating and managing lead generation pipelines for cybersecurity solutions. Engaging with enterprise clients in Switzerland and Germany in a hybrid work model.
Information Security Officer responsible for developing and implementing security strategies at an IT service provider for the food and beverage industry. Engaging with teams and management on cyber risks and compliance.
Information Security Manager leading CISOaaS or GRC consultants for NVISO in Germany. Enhancing clients’ cybersecurity posture and driving strategic security initiatives.
Técnico de Segurança do Trabalho JR assisting with safety documentation and training for field activities at Arcadis. Focused on sustainable solutions in engineering and consulting.
Compliance Specialist managing documentation and policies for Orro's Information Security Management System. Supporting essential compliance activities across ISO 27001 and IRAP with strong attention to detail.
Infra Security Engineer focusing on endpoint security solutions in South Korea's urban mobility services. Collaborating on security architecture and threat detection initiatives.
Senior Security Engineer managing the vulnerability management program and collaborating with engineering teams at Causaly. Focused on cloud security and secure coding practices.
Senior Cyber Security Consultant supporting client cybersecurity development initiatives. Job focuses on administrative and technical aspects of cybersecurity within a collaborative consulting team setting.
Assistant Vice President providing cybersecurity advisory across enterprise infrastructure at State Street. Supporting technology outcomes in secure and resilient ways across cloud, hybrid, and on - prem environments.
Infrastructure Specialist managing IT projects, analyzing problems and providing solutions across various platforms. Collaborating closely with teams throughout project lifespans to ensure successful outcomes.