FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Information Security Officer
EnduranceInformation Security Officer modernizing Sompo’s global insurance security program. Managing enterprise controls, vulnerabilities, incident response, and security teams across hybrid US operations.
Posted 9/11/2026full-timePurchase • Massachusetts, New Jersey, New York, North Carolina, Pennsylvania • 🇺🇸 United StatesSeniorLead💰 $180,000 - $225,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive experience in managing and modernizing information security programs, with a focus on aligning security strategies with corporate policies and regulatory requirements. Capable of leading hybrid teams and translating operational metrics into meaningful KPIs while maintaining a fast-changing security environment.
Highest-signal resume keywords
Information Security ManagementRisk ManagementVulnerability AssessmentIncident ResponseSecurity Strategy Development
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security PatternsTechnical Security ControlsData Loss PreventionMalicious Activity DetectionAdversarial SimulationKPI DevelopmentThreat Intelligence IntegrationRegulatory ComplianceCloud SecuritySaaS Security
Soft Skills
Excellent CommunicationLeadershipInterpersonal SkillsSystematic ThinkingProject Structuring
Tools & Technologies
DevSecOps ProcessesSecurity Alerting ToolsIncident Response ToolsVulnerability Management ToolsSecurity Monitoring Systems
Certifications & Qualifications
CISSPCISMISO 270xxSOC 2
Industry Keywords
Information SecurityRisk ManagementData Privacy RegulationsThreat ModelingSecurity Architecture
Tech Stack
Tools & technologiesCloudSDLC
About the role
Key responsibilities & impact- Manage and continuously modernize Sompo’s Information Security program for global operations
- Maintain alignment with external and corporate requirements
- Manage security for more than 7,000 users, hundreds of developers and IT staff, more than 10,000 network devices, and 75+ physical and cloud locations
- Maintain technical security controls across all systems and processes, including malicious activity prevention and detection, encryption, data loss prevention and detection, activity/audit logging, and adversarial simulation
- Detect, report, and escalate vulnerabilities to operational teams
- Maintain organization-wide vulnerability data for periodic and threat-driven real-time reporting
- Operate an efficient, instrumented, and evolving security alerting function
- Maintain an efficient and tested incident response procedure capable of handling events of any scale
- Participate in the systems development lifecycle to ensure alignment with the information security program
- Establish a communications program covering emerging threats, policy changes, achievements, and security recommendations
- Lead and manage a hybrid team of direct reports, matrix reports, managed services, and specialist contractors
Requirements
What you’ll need- Minimum of 15 years of experience in a combination of technical, security, and risk management roles
- Minimum of 7 years in a senior management role within an information security function
- Technical familiarity with security patterns, operations and controls for traditional (Windows), cloud, and SaaS environments
- Systematic thinking and ability to understand security controls within the larger operating environment
- Ability to structure projects and programs in a risk-prioritized manner
- Experience integrating regulatory requirements, corporate policies, and industry standards into operating procedures and designs
- Experience maintaining and communicating security strategy and technical architecture
- Ability to translate operational metrics into meaningful KPIs and risk quantifiers
- Excellent written, verbal and interpersonal communications with non-technical leaders, customers, regulators, and technical colleagues
- Experience maintaining a fast-changing security program with continuous improvement driven by threat intelligence, adversary tactics, operational metrics, and company priorities
- Leadership experience managing a hybrid team of direct reports, matrix reports, managed services, and specialist contractors
- Bachelor’s degree in computer science, information security, or a related field
- Recognized information security certification (CISSP, CISM, etc.)
- Prior experience with adoption of FAIR Threat modeling within the SDLC (preferred)
- Familiarity with DevSecOps processes, tooling, and controls (preferred)
- Experience gaining and maintaining certifications like ISO 270xx, SOC 2, etc. (preferred)
- Knowledge of regional security data privacy regulations related to minimization, encryption, and cross-border data access (preferred)
Benefits
Comp & perks- Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
- Pharmacy benefits with mail order options
- Dental benefits including orthodontia benefits for adults and children
- Vision benefits
- Health Care & Dependent Care Flexible Spending Accounts
- Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
- Company-paid Disability benefits with very competitive salary continuation payments
- 401(k) Retirement Savings Plan with competitive employer contributions
- Competitive paid-time-off programs, including company-paid holidays
- Competitive Parental Leave Benefits & Adoption Assistance program
- Employee Assistance Program
- Tax-Free Commuter Benefit
- Tuition Reimbursement & Professional Qualification benefits
- Incentive awards based on company and individual performance