Security Director overseeing cybersecurity strategies and compliance within business units at Salesforce. Lead initiatives to align security with organizational goals and mitigate risks.
Responsibilities
Partner with business units to integrate cybersecurity strategies into business processes, ensuring alignment with organizational objectives and risk tolerance.
Conduct risk assessments, identify control gaps, and develop mitigation strategies in alignment with industry standards.
Provide technical guidance on secure development patterns.
Refine, and enforce security policies, standards, and procedures, which are applicable to the enterprise environment, ensuring compliance with regulations and emerging risks.
Lead the coordination of security remediation efforts for business units, through a risk register which helps prioritize all work (bugs, transformational initiatives, compliance findings, etc)
Build and maintain strong relationships with business leaders, IT teams, and external partners to foster a culture of security awareness and collaboration.
Develop and deliver tailored security awareness programs for business units, promoting best practices in areas such as phishing prevention and secure data handling, when needed.
Develop and present key performance indicators (KPIs) and key risk indicators (KRIs) to senior leadership, providing insights into the organization’s security posture.
Requirements
Bachelor’s degree in Computer Science, Information Security, or a related field;
10+ years in cybersecurity, with at least 5 years in a senior-level role focusing on business-aligned security strategy.
Proven experience as an individual contributor in a high-impact, director-level role within a complex enterprise environment.
Deep technical expertise in understanding security principles across the corresponding infrastructure, including cloud security (AWS, Azure, GCP), network security, encryption protocols (e.g., TLS, AES), and identity and access management (IAM) solutions.
Proven understanding of security and compliance frameworks (e.g. NIST CSF, ISO 270001/2, etc)
Proficiency with security tools such as SIEM (e.g., Splunk, QRadar), EDR (e.g., CrowdStrike, SentinelOne), and vulnerability management platforms (e.g., Qualys, Tenable).
Strong understanding of secure software development lifecycle (SDLC) and DevSecOps practices.
Experience with zero trust architecture and multi-factor authentication (MFA) implementations.
Exceptional ability to translate complex technical concepts into business-friendly language for non-technical stakeholders.
Strong project management skills, with experience leading cross-functional initiatives.
Proven track record of building trusted relationships with C-suite executives, business unit leaders, and technical teams.
Proven experience influencing stakeholders to invest in strategic security initiatives to buy down risk.
Excellent communication and presentation skills, with the ability to influence and drive consensus across diverse groups.
Deep understanding of current cybersecurity trends, threat landscapes, and regulatory requirements specific to the technology industry.
Security Officer tasked with ensuring safety and access control at Sutter Health facilities. Providing assistance and investigating incidents, while ensuring a safe environment.
Mid - Level Security Design & Development Specialist at Boeing providing architecture and consultation expertise for enterprise directory services. Collaborating with senior technical experts in a fast - paced environment.
Delivery Lead responsible for end - to - end product delivery in the Physical Security Product Team at Wells Fargo. Collaborating with product managers and teams to foster high performance and customer value within agile frameworks.
Compliance professional managing global regulatory changes and providing advisory support. Joining a dedicated team within State Street, the role offers flexible hybrid work arrangements.
Focus Sales role at api GmbH, engaging clients and supporting Cloud business growth. Collaborate with teams for optimal client service and success in IT products.
Security Engineering Manager leading Detection & Response team at Snap. Overseeing security monitoring and team collaboration on high - impact initiatives.
Mid - Level Security Design & Development Specialist at Boeing involved in directory services infrastructure. Collaborating with a team of senior technical experts in a fast - paced environment.
Application Security Specialist conducting SAST and DAST analyses at TEHORA to enhance digital healthcare security. Responsible for code reviews, OWASP recommendations, and participation in intrusion tests.
Facilities and Security Coordinator providing operational support for facility operations at Westinghouse. Coordinating administrative tasks, reporting, and ensuring compliance in facility management.
Information Security Specialist ensuring digital security and compliance at cyberunity AG in Zürich. Collaborating with IT teams to implement security measures and address vulnerabilities.