Security Director overseeing cybersecurity strategies and compliance within business units at Salesforce. Lead initiatives to align security with organizational goals and mitigate risks.
Responsibilities
Partner with business units to integrate cybersecurity strategies into business processes, ensuring alignment with organizational objectives and risk tolerance.
Conduct risk assessments, identify control gaps, and develop mitigation strategies in alignment with industry standards.
Provide technical guidance on secure development patterns.
Refine, and enforce security policies, standards, and procedures, which are applicable to the enterprise environment, ensuring compliance with regulations and emerging risks.
Lead the coordination of security remediation efforts for business units, through a risk register which helps prioritize all work (bugs, transformational initiatives, compliance findings, etc)
Build and maintain strong relationships with business leaders, IT teams, and external partners to foster a culture of security awareness and collaboration.
Develop and deliver tailored security awareness programs for business units, promoting best practices in areas such as phishing prevention and secure data handling, when needed.
Develop and present key performance indicators (KPIs) and key risk indicators (KRIs) to senior leadership, providing insights into the organization’s security posture.
Requirements
Bachelor’s degree in Computer Science, Information Security, or a related field;
10+ years in cybersecurity, with at least 5 years in a senior-level role focusing on business-aligned security strategy.
Proven experience as an individual contributor in a high-impact, director-level role within a complex enterprise environment.
Deep technical expertise in understanding security principles across the corresponding infrastructure, including cloud security (AWS, Azure, GCP), network security, encryption protocols (e.g., TLS, AES), and identity and access management (IAM) solutions.
Proven understanding of security and compliance frameworks (e.g. NIST CSF, ISO 270001/2, etc)
Proficiency with security tools such as SIEM (e.g., Splunk, QRadar), EDR (e.g., CrowdStrike, SentinelOne), and vulnerability management platforms (e.g., Qualys, Tenable).
Strong understanding of secure software development lifecycle (SDLC) and DevSecOps practices.
Experience with zero trust architecture and multi-factor authentication (MFA) implementations.
Exceptional ability to translate complex technical concepts into business-friendly language for non-technical stakeholders.
Strong project management skills, with experience leading cross-functional initiatives.
Proven track record of building trusted relationships with C-suite executives, business unit leaders, and technical teams.
Proven experience influencing stakeholders to invest in strategic security initiatives to buy down risk.
Excellent communication and presentation skills, with the ability to influence and drive consensus across diverse groups.
Deep understanding of current cybersecurity trends, threat landscapes, and regulatory requirements specific to the technology industry.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.