Salary
💰 $184,000 - $314,000 per year
About the role
- Lead the development and execution of enterprise security policies, technology practices and standards across the IT landscape, focused in Application, Endpoint, Data and Infrastructure security
- Define and deliver on OKR’s mapped to measurable KPI’s that improve the enterprise security posture
- Lead enterprise security risk management including the identification, assessment and mitigation of risks inclusive of running the Security Incident Response Team
- Bring visibility into application and infrastructure security health, drive mitigations as per SLO as well as reduce technical debts
- Collaborate with other InfoSec domains and IT to integrate security into operations and strategic initiatives
- Lead, partner and deliver on ISO compliance / GRC related gaps and remediations
- Manage a team of highly driven security engineers, establish team goals and metrics to enhance expertise
- Be a strong thought leader and clearly communicate and build support for your ideas
- Be a key advisor to the senior leadership on enterprise security risks and strategies
- Participate in internal technology decisions, enterprise architecture and crafting domain-specific technology roadmaps
Requirements
- 10+ years of progressive experience in developing and delivering an robust progressive enterprise security framework
- Strong understanding and deep knowledge of enterprise systems and services with security & compliance related best practices
- Relevant industry certifications (CISA, CISSP, CISM, CRISC, etc)
- Hands-on understanding of using various technology and tools (SEIM, Vulnerability mgmt, MDM/ EDR / DLP, IdP/IAM, BI Tools)
- Ability to develop security incident Root Cause Analysis (RCA) and remediation plans to resolve risk deficiencies working with respective stakeholder teams.
- Strong critical thinking skills with the ability to drive long term organizational impact
- A background that demonstrates a bias for action and the ability to navigate constraints in order to achieve business outcomes
- Ability to collaborate and influence a diverse group of stakeholders to address cross-functional challenges and lead change
- Experience managing and leading security engineering teams and driving security initiatives