
Cybersecurity Director
Posted 15 hours ago

Posted 15 hours ago
This is a fully remote position, open to applicants in Alabama, +45 more states.
• Take charge of the global strategy, leadership, and advancement of Application Security, Vulnerability Management, Cloud Security, and Penetration Testing.
• Assess and analyze cybersecurity vulnerabilities across applications, infrastructure, cloud environments, products, and technology platforms.
• Collaborate with risk owners to alleviate cybersecurity threats.
• Convert technical security insights into business risks and influence the prioritization of enterprise risks.
• Enhance compliance and control frameworks while providing quantifiable evidence of risk mitigation.
• Advocate for Application Security oversight and security-by-design principles throughout product development, SDLC, DevSecOps, and application processes.
• Spearhead enterprise vulnerability identification, prioritization, remediation, and validation initiatives.
• Create risk-based prioritization using exploitability, threat intelligence, and exposure analysis.
• Direct the global Cloud Security strategy and requirements, managing risks across cloud infrastructure, workloads, identities, configurations, applications, and data.
• Develop the penetration testing service in collaboration with Internal Audit and stakeholders.
• Confirm vulnerabilities and controls through penetration testing and red team exercises.
• Identify exploitable attack vectors and systemic weaknesses in partnership with purple team collaborators.
• Work alongside Cyber GRC on risk methodologies, metrics, assessments, policies, controls, compliance, risk acceptance, and material risk escalation.
• Facilitate the secure adoption of Frontier AI and emerging technologies.
• Discover chances to leverage AI for vulnerability prioritization, security testing, risk analysis, automation, and cyber defense.
• Lead globally through influence, collaboration, and accountability across Cyber Security, GRC, Product, Engineering, Cloud, Infrastructure, IT, and business sectors.
• Balance security needs with business objectives, operational requirements, cost considerations, and innovation.
• Drive down substantial cybersecurity risks, expedite remediation, promote secure-by-design practices, ensure effective security validation, enhance executive cyber-risk visibility, and increase automation.
• Bachelor’s degree or equivalent in Computer Science, Information Technology, Engineering, or a related field, or relevant equivalent experience is essential.
• Preferred certifications include GIAC Security Essentials Certification, GIAC Security Leadership Certification, ISACA Certified Information Security Manager, Microsoft Certified Systems Engineer: Security, or CISSP certification.
• Familiarity with industrial cybersecurity controls and solutions, such as asset management, vulnerability management, anomaly detection, identity and access management, network security, endpoint security, application security, IDS/IPS, deep packet inspection, SIEM, data analytics, security, and/or risk management, and product development.
• This position may necessitate licensing to comply with export controls or sanctions regulations.
• Candidates must reside in one of the permitted U.S. states or Washington, D.C.
• Remote work options available.
• Commitment to equal employment opportunities.
• No relocation required; relocation not eligible.
Tangible
GitLab
Tevora
Delinea
Get handpicked remote jobs straight to your inbox weekly.