Define and own a multi-year cybersecurity roadmap and key performance indicators focused on reducing cyber risk.
Create quarterly, annual and long-term cyber security and cyber risk management goals, articulate strategies, define metrics, and provide necessary updates to executive leadership and the Board of Directors.
Lead Security Incident Response, Third Party Information Security Assessment, Data Protection and Encryption, Identity & Access Management and Privileged User Access to protect customer and employee data.
Define cyber security governance and control strategies for emerging technologies such as cloud & containerization, block-chain and distributed computing.
Keep well informed of developing security threats, and proactively create strategies to understand and mitigate potential security problems that might arise from acquisitions or other big business moves.
Develop, implement, and monitor a strategic, comprehensive enterprise-wide information security and risk management program.
Provide strategic and tactical vision around adversary and threat detection, incident response, and asset fortification.
Advise the CDIO, executive leadership, and digital leaders on security issues and threats.
Responsibility for overseeing the design, testing and Implementation of all IT Security solutions.
Oversight of the day-to-day control of the maintenance and monitoring live production environments.
Strategic planning, leadership, staff development, training, and adherence to all legal, compliance and regulatory requirements.
Definition, Scoping, Creation and execution of IT and Data Security strategies enhancing the reliability and security of the IT systems, projects, and underlying data at your organization.
Overseeing managers and teams that you are responsible for, allocating resources to ensure that staff deliver secure and robust IT solutions to any of the organizations identified and agreed requirements.
Overseeing planning and execution of necessary vulnerability audits, penetration testing or forensic IT audits and investigations.
Ensure that outputs improve organisation IT Security.
Liaise with senior level directors, the organisations board and other key stakeholders plus managers, programmers, and IT Security risk-assessment staff under your remit.
Oversee integration of new IT Systems Development with the organisations overall IT, Data, and Information Security policies.
Oversee staff training in all the latest security awareness skills, check associated protocols, methodologies and procedures are implemented.
Ensure compliance with any related legislation, such as the Data Protection Act, ISO standards or relevant government regulations.
Plan budget allocations and associated financial forecasts relating to IT, Data, and Information security.
Manage your staff’s technical and personal development, new hires, dispute resolution, redundancy and potentially termination of staff.
Liaise with and manage your partners, stakeholders, vendors, and third-party service or solutions providers.
Oversee projects, budgets and resources under your remit with a view to ensuring that your organisation gets a favourable return on IT investments in staff, hardware, software and service providers.
GRC/Audit responsibility.
Requirements
Degree in business administration or a technology-related field required
Relevant professional security management certification(s) required
8+ years of experience in overseeing information, cyber and technology security required
Experience in a manufacturing environment
Experience with a global organization
Experience with contract and vendor negotiations and management including managed services
Specific experience in Agile (scaled) software development or other best in class development practices
Experience with Cloud computing/Elastic computing across virtualized environment
In depth project management skills
Good understanding of all current legislation and regulations pertaining to the organization
Successful track record of effective coordination, prioritization, collaboration, organization, and project delivery
Experience in financial forecasting and budget allocation
Knowledge of relevant IT Security related hardware, software, and vendor solutions
An overall understanding of the scripting and source code programming languages, such as C#, C++, .NET, Java, Perl, PHP, Python or Ruby on Rails etc.
Practical experience of computer operating systems such as MS Windows, UNIX/Linux
Deep thinking analytical mind with the ability to quickly get to the root cause of issues.
Excellent written and verbal communication skills and high level of personal integrity
Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams.
Benefits
Health benefits on the first day of employment
401K savings plans
Vision and dental
Annual bonus based on company performance
Flexible working arrangement (hybrid) over 2 days remote and 3 days in-office
Jr Information Security Analyst conducting PCI - DSS compliance projects for AuditSafe. Supporting security controls implementation and leading technical meetings in a hybrid work environment.
Cybersecurity Consultant ensuring cybersecurity operations and delivering consultancy projects for clients, focusing on strategic risk management and compliance assessments.
Senior IT Security Engineer developing and optimizing innovative security solutions in an international environment. Engaging in corporate information security utilizing best practices.
Regional Lead overseeing physical security infrastructure and operations for OpenAI’s data centers in Singapore. Collaborating with teams and managing security technologies for compliance and risk assessment.
Business Continuity and Cybersecurity Awareness Manager at ZEAL, leading BCM and cybersecurity training initiatives. Ensuring resilient operations and fostering secure behavior across teams.
Responsable d'Opérations en sécurité incendie et équipements du bâtiment chez Bureau Veritas. Animer une équipe tout en contribuant au développement commercial et à la qualité des prestations.
Senior Inhouse IT Consultant responsible for the network and server infrastructure of the L - mobile Group. Planning security measures and managing cloud and virtualization platforms.
Senior Manager in Cybersecurity leading Cyber Defense Center operations and strategy development for effective threat response. Collaborating with stakeholders to enhance security posture across the organization.
(Junior) Information Security Officer responsible for ISMS management at Sana Clinics. Ensuring compliance with NIS - 2 and training staff on information security.