Senior Director of Information Security overseeing Cabot Corporation's global cyber and data security programs. Responsible for building digital resiliency and implementing robust security frameworks.
Responsibilities
Define and own a multi-year cybersecurity roadmap and key performance indicators focused on reducing cyber risk.
Create quarterly, annual and long-term cyber security and cyber risk management goals, articulate strategies, define metrics, and provide necessary updates to executive leadership and the Board of Directors.
Lead Security Incident Response, Third Party Information Security Assessment, Data Protection and Encryption, Identity & Access Management and Privileged User Access to protect customer and employee data.
Define cyber security governance and control strategies for emerging technologies such as cloud & containerization, block-chain and distributed computing.
Keep well informed of developing security threats, and proactively create strategies to understand and mitigate potential security problems that might arise from acquisitions or other big business moves.
Develop, implement, and monitor a strategic, comprehensive enterprise-wide information security and risk management program.
Provide strategic and tactical vision around adversary and threat detection, incident response, and asset fortification.
Advise the CDIO, executive leadership, and digital leaders on security issues and threats.
Responsibility for overseeing the design, testing and Implementation of all IT Security solutions.
Oversight of the day-to-day control of the maintenance and monitoring live production environments.
Strategic planning, leadership, staff development, training, and adherence to all legal, compliance and regulatory requirements.
Definition, Scoping, Creation and execution of IT and Data Security strategies enhancing the reliability and security of the IT systems, projects, and underlying data at your organization.
Overseeing managers and teams that you are responsible for, allocating resources to ensure that staff deliver secure and robust IT solutions to any of the organizations identified and agreed requirements.
Overseeing planning and execution of necessary vulnerability audits, penetration testing or forensic IT audits and investigations.
Ensure that outputs improve organisation IT Security.
Liaise with senior level directors, the organisations board and other key stakeholders plus managers, programmers, and IT Security risk-assessment staff under your remit.
Oversee integration of new IT Systems Development with the organisations overall IT, Data, and Information Security policies.
Oversee staff training in all the latest security awareness skills, check associated protocols, methodologies and procedures are implemented.
Ensure compliance with any related legislation, such as the Data Protection Act, ISO standards or relevant government regulations.
Plan budget allocations and associated financial forecasts relating to IT, Data, and Information security.
Manage your staff’s technical and personal development, new hires, dispute resolution, redundancy and potentially termination of staff.
Liaise with and manage your partners, stakeholders, vendors, and third-party service or solutions providers.
Oversee projects, budgets and resources under your remit with a view to ensuring that your organisation gets a favourable return on IT investments in staff, hardware, software and service providers.
GRC/Audit responsibility.
Requirements
Degree in business administration or a technology-related field required
Relevant professional security management certification(s) required
8+ years of experience in overseeing information, cyber and technology security required
Experience in a manufacturing environment
Experience with a global organization
Experience with contract and vendor negotiations and management including managed services
Specific experience in Agile (scaled) software development or other best in class development practices
Experience with Cloud computing/Elastic computing across virtualized environment
In depth project management skills
Good understanding of all current legislation and regulations pertaining to the organization
Successful track record of effective coordination, prioritization, collaboration, organization, and project delivery
Experience in financial forecasting and budget allocation
Knowledge of relevant IT Security related hardware, software, and vendor solutions
An overall understanding of the scripting and source code programming languages, such as C#, C++, .NET, Java, Perl, PHP, Python or Ruby on Rails etc.
Practical experience of computer operating systems such as MS Windows, UNIX/Linux
Deep thinking analytical mind with the ability to quickly get to the root cause of issues.
Excellent written and verbal communication skills and high level of personal integrity
Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams.
Benefits
Health benefits on the first day of employment
401K savings plans
Vision and dental
Annual bonus based on company performance
Flexible working arrangement (hybrid) over 2 days remote and 3 days in-office
Teaching and research role in Cybersecurity and AI at De Vinci School. Engaging in course design and research projects in a collaborative academic environment.
Apprentice Fire and Security Engineer installing, commissioning, and maintaining electronic protection systems for Johnson Controls. Collaborating in a team - based environment and gaining hands - on experience in fire and security technology.
Construction Site Superintendent overseeing construction projects for Johnson Controls, ensuring timely completion and adherence to project scope, budget, and schedule. Collaborating with teams and managing site activities in the United States.
Senior Security Architect providing security consulting and risk assessment at The Missing Link. Leading initiatives in security architecture and technology risk support within a hybrid work environment.
Data Protection Security Engineer at Fiserv designing, implementing, and maintaining cybersecurity solutions. Collaborating with teams to safeguard client information and ensure regulatory compliance.
Senior Manager IAM Metric Insights managing metrics and performance in Identity and Access Management. Delivering insights and reporting to enhance security posture for RBC's Global Security team.
HSE Technician I in TechnipFMC's HSE team promoting and supporting an HSE culture. Assisting with investigations, conducting audits, and maintaining safety documentation.
Information Security Officer creating security policies and managing security teams to protect Paytient. Collaborating with internal and external teams to ensure compliance and security posture.
Supplier Manager focused on Microsoft Security products at Arrow. Develops strategies to enhance sales and market share while collaborating with Microsoft and sales teams.
IT Infrastructure and Security Administrator at B&O Bau, managing IT security and infrastructure. Collaborating on innovative projects across multiple German locations.