Senior Director – Information Security

Posted 10 hours ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Oversee the comprehensive design of cybersecurity architecture, engineering, and business architecture.

• Ensure adherence to both internal and external cybersecurity policies within the organization.

• Contribute to shaping the overall security vision and strategic direction.

• Enhance operational efficiencies and dependability within the cybersecurity tools framework in a cloud-native setting.

• Direct the daily management and execution of cybersecurity architecture and engineering responsibilities across all divisions.

• Collaborate with business leaders to pinpoint opportunities and risks, developing solutions that support U.S. FinTech’s mortgage securitization platform.

• Design and implement a company-wide cybersecurity architecture and engineering framework with second and third lines of defense.

• Create cybersecurity patterns that facilitate secure application design and development.

• Manage external assessment activities and consolidate findings into presentations for senior leadership.

• Provide guidance to business, technology, and security teams on cyber risk management and best practices in information security.

• Act as an ambassador and senior technical advisor for enterprise cybersecurity.

• Develop and refine standards in collaboration with Engineering, Infrastructure, Application Development, and Data teams.

• Monitor threat vectors and the ecosystem of cloud security tools.

• Prototype new security tools and technologies, optimizing or consolidating existing solutions.

• Oversee the deployment, integration, and initial configuration of new cybersecurity solutions and enhancements.

• Lead knowledge-sharing initiatives across cybersecurity, technology, and business teams.

• Establish and maintain performance metrics for the information security program, reporting them to IT leadership.

• Direct the identity and access management program, encompassing identity lifecycle management, access governance, privileged access, and authentication controls.


⛳️ Requirements

• Bachelor’s degree or higher in a relevant field.

• Required industry certification, e.g., CISSP, CISA, CISM, or an equivalent designation.

• At least 12 years of experience in establishing and leading global cybersecurity programs.

• Minimum of 5 years in leadership roles within Security Architecture and Engineering Teams.

• Must possess authorization to work in the U.S. without requiring employer sponsorship now or in the future.

• Strong working knowledge of Cyber Security Architectural and Engineering principles that support Cyber Defense, Compliance, Perimeter Security, Data Protection, Application Security, Operating System Security, Virtual Infrastructure, and Storage Protection.

• Solid understanding of SAML, OAuth 2.0, OpenID Connect (OIDC), FIDO2/WebAuthn, and multifactor authentication (MFA).

• Familiarity with physical security practices.

• Experience with Zero Trust implementations.

• Strong working knowledge of DevSecOps methodologies.

• Proficient understanding of AWS and associated cloud-support tools.

• Strong working knowledge of Private Cloud, Public Cloud, and/or Hybrid Cloud environments.

• Experience with Risk, Security, or Audit frameworks such as COBIT, COSO, ISO 27001/2, NIST 800-53, NIST CSF, AICPA, and BITS.

• Experience in technical control testing aligned with NIST 800-53, FISMA, and SOC standards.

• Strong analytical skills for assessing, evaluating, and mitigating enterprise risks.

• Experience in using and managing Risk Management tools is preferred.

• Extensive working experience with Microsoft Office Suite and GRC tools.

• Ability to articulate and document risks and vulnerabilities to both business and technical stakeholders.

• Capability to influence peers and management and work collaboratively across functions.

• Excellent oral and written communication skills with the ability to thrive in a complex, fast-paced environment.


🏝️ Benefits

• Performance bonus.

• 401k matching.

• Healthcare coverage.

• Paid Time Off (PTO).

• A wide array of additional benefits.

People also viewed

Day Translations, Inc.6 hours ago

Cybersecurity Manager / Information Security Manager

Anywhere in the WorldPart-timeCybersecurity / Security Engineer
ApplyView job
Business Wire7 hours ago

Cybersecurity Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$150k – $155k/year
ApplyView job
Universidad Internacional de La Rioja9 hours ago

Coordinador/a de Programa – Ciberseguridad, Software y Sistemas Informáticos

PE flagPeru OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Veeam Software10 hours ago

Field Security Advisor

US flagDistrict of Columbia OnlyFull-timeCybersecurity / Security Engineer$121.4k – $310.9k/year
ApplyView job
NBS Telecom10 hours ago

Cybersecurity Specialist

BR flagBrazil OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
BCD Travel11 hours ago

Security Engineer – Modern Workplace Technology

IN flagIndia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers