
Senior Director – Information Security
Posted 10 hours ago

Posted 10 hours ago
This is a fully remote position, open to applicants in United States.
• Oversee the comprehensive design of cybersecurity architecture, engineering, and business architecture.
• Ensure adherence to both internal and external cybersecurity policies within the organization.
• Contribute to shaping the overall security vision and strategic direction.
• Enhance operational efficiencies and dependability within the cybersecurity tools framework in a cloud-native setting.
• Direct the daily management and execution of cybersecurity architecture and engineering responsibilities across all divisions.
• Collaborate with business leaders to pinpoint opportunities and risks, developing solutions that support U.S. FinTech’s mortgage securitization platform.
• Design and implement a company-wide cybersecurity architecture and engineering framework with second and third lines of defense.
• Create cybersecurity patterns that facilitate secure application design and development.
• Manage external assessment activities and consolidate findings into presentations for senior leadership.
• Provide guidance to business, technology, and security teams on cyber risk management and best practices in information security.
• Act as an ambassador and senior technical advisor for enterprise cybersecurity.
• Develop and refine standards in collaboration with Engineering, Infrastructure, Application Development, and Data teams.
• Monitor threat vectors and the ecosystem of cloud security tools.
• Prototype new security tools and technologies, optimizing or consolidating existing solutions.
• Oversee the deployment, integration, and initial configuration of new cybersecurity solutions and enhancements.
• Lead knowledge-sharing initiatives across cybersecurity, technology, and business teams.
• Establish and maintain performance metrics for the information security program, reporting them to IT leadership.
• Direct the identity and access management program, encompassing identity lifecycle management, access governance, privileged access, and authentication controls.
• Bachelor’s degree or higher in a relevant field.
• Required industry certification, e.g., CISSP, CISA, CISM, or an equivalent designation.
• At least 12 years of experience in establishing and leading global cybersecurity programs.
• Minimum of 5 years in leadership roles within Security Architecture and Engineering Teams.
• Must possess authorization to work in the U.S. without requiring employer sponsorship now or in the future.
• Strong working knowledge of Cyber Security Architectural and Engineering principles that support Cyber Defense, Compliance, Perimeter Security, Data Protection, Application Security, Operating System Security, Virtual Infrastructure, and Storage Protection.
• Solid understanding of SAML, OAuth 2.0, OpenID Connect (OIDC), FIDO2/WebAuthn, and multifactor authentication (MFA).
• Familiarity with physical security practices.
• Experience with Zero Trust implementations.
• Strong working knowledge of DevSecOps methodologies.
• Proficient understanding of AWS and associated cloud-support tools.
• Strong working knowledge of Private Cloud, Public Cloud, and/or Hybrid Cloud environments.
• Experience with Risk, Security, or Audit frameworks such as COBIT, COSO, ISO 27001/2, NIST 800-53, NIST CSF, AICPA, and BITS.
• Experience in technical control testing aligned with NIST 800-53, FISMA, and SOC standards.
• Strong analytical skills for assessing, evaluating, and mitigating enterprise risks.
• Experience in using and managing Risk Management tools is preferred.
• Extensive working experience with Microsoft Office Suite and GRC tools.
• Ability to articulate and document risks and vulnerabilities to both business and technical stakeholders.
• Capability to influence peers and management and work collaboratively across functions.
• Excellent oral and written communication skills with the ability to thrive in a complex, fast-paced environment.
• Performance bonus.
• 401k matching.
• Healthcare coverage.
• Paid Time Off (PTO).
• A wide array of additional benefits.
Day Translations, Inc.
Business Wire
Universidad Internacional de La Rioja
Veeam Software
Get handpicked remote jobs straight to your inbox weekly.