7,425 Security Strategy jobs in the United States

IT Security Strategy Lead

54301 Green Bay, Wisconsin Schreiber Foods

Posted 6 days ago

Job Viewed

Tap Again To Close

Job Description

Permanent
Job Category: Global IT Job Family: IT Security Job Description:

The IT Security Strategist is responsible for shaping and guiding the strategic direction of enterprise security. This role focuses on proactive protection of systems, platforms, and data through architectural foresight, market intelligence, and cross-functional collaboration. It does not manage day-to-day security operations but instead defines how the organization secures its digital assets in alignment with business goals.

This role complements the broader enterprise architecture team structure, which includes Solution Architects, Data Architects, and Lead Software Engineers. It fills a critical gap in strategic security leadership and aligns with the evolving needs of the organization.

This role requires learning the security landscape at Schreiber and developing roadmaps that support mitigating risks and filling gaps in our security program. The ability to learn the business quickly, work across departments and have the ability to communicate to senior leaders on our strategy is critical for selection.

What You'll Do:

  • Strategic Security Planning : Develops and maintains a forward-looking security strategy aligned with enterprise architecture, security architecture and business objectives.
  • Thought Leadership & Market Intelligence : Monitors global cybersecurity trends, threat landscapes and regulatory changes. Provides strategic insights to leadership on evolving risks and mitigation strategies.
  • Architecture & Design Collaboration : Partners closely with security, enterprise, solution and data architects to embed security into design patterns and technology roadmaps.
  • Stakeholder Engagement: Act as a liaison between technical teams and executive leadership to translate complex security concepts into actionable business language. Present security reviews, vulnerabilities and risks to the executive team quarterly with support.
  • Governance & Policy Development : Contribute to the development of security policies, standards and guidelines. Support governance frameworks that ensure compliance and resilience.
  • Infrastructure and Security Operations Collaboration : Partners closely with our security operations and infrastructure teams to implement security policies based on the strategy and roadmap as well as support investigations and incident mitigation as needed for more complex tier 3 issues.
Together with the leadership team, ensures compliance with Food Safety and Food Quality Plans, in addition to customer requirements. Interprets and communicates customer requirements to plant production and/or support groups. Establishes and Audits PCPs, CCPs and Standard Operating Procedures to define and monitor processes, to ensure customer requirements are met. Reviews incidents during which the procedures are not met, and determines appropriate corrective action for partners failing to follow standard procedures. What You'll Need to Succeed:
  • Bachelors Degree in Information Security, Computer Science, or a related field. Masters Degree a plus
  • 10+ years experience designing security strategies across hybrid environments and manufacturing plants.
  • Technical Proficiency: Deep understanding of cybersecurity frameworks (e.g. NIST, ISO 27001)

  • Domain Knowledge: Strong understanding of cyber security trends, market, enterprise architecture frameworks and security principles.
  • Market Knowledge: Strong knowledge of the external market including best practices, technologies and trends occurring in the marketplace. Ability to navigate external market and bring the outside into Schreiber.
  • Leadership Skills: Ability to influence without at multiple levels of the organization without direct authority and lead cross-functional initiatives
  • Communication Skills: Excellent verbal and written communication skills, with the ability to articulate complex ideas to diverse audiences, including executives. Ability to translate complex technical topics to a business audience.
  • Analytical Skills: Strong analytical and problem-solving skills, with a data-driven approach to decision making.
  • Customer Focus: Deep empathy for customers and a passion for creating products that deliver exceptional user experiences.
  • 5% travel

Eligible partners will receive:

  • Get not one, but TWO retirement benefits.   When you join our employee-owned company, you’ll be part of our Employee Stock Ownership Plan (ESOP) from day one.  In addition to an 8% 401(k) match into the ESOP, Schreiber will contribute an extra amount – about 8% of your earnings – toward your retirement every year.  That’s a company contribution of around 16% in retirement savings annually.  That’s hard to beat!
  • Earn bonus pay. You’ll have an opportunity to earn incentive pay twice a year when we meet our company goals.
  • Ready to make a move?   Receive a $10,000 relocation bonus PLUS a generous relocation package if relocating more than 50 miles for a U.S. Salaried position.   
  • Childcare costs . Get up to $,000 annually to help you with the cost of childcare.  Monthly contributions toward childcare expenses, including independent babysitters.
  • Earn $ for focusing on your health. Depending on your medical plan enrollment, earn 1,200 in your HSA or as a cash payout for prevention activities.  Plus, use your $ 00 lifestyle spending account for reimbursements related to health, fitness, weight management, mental health and social wellness.
  • Pursue development that’s relevant to your role, career goals and the company. Plus, we offer tuition reimbursement if you want to further your education to grow in your role at Schreiber.
  • Get access to medical, prescription drug, dental and vision benefits starting day one. This includes an onsite nurse and mental health counselor.
  • Experience caring like you’ve never experienced it before. We have a program that’s completely organized by and for other partners who need extra help. It’s called Partners Helping Partners. We have hundreds of examples of partners organizing fundraisers to help out others going through a hard time.

Sound like a company you’d like to be a part of? Click Apply .

Need extra assistance with the application process? Contact or call .

For positions that require any amount of travel: Valid driver's license, auto insurance (at least state minimum- more might be required), acceptable driving record per Schreiber Foods discretion, and vehicle that will ensure applicant can meet the travel necessities of the position are required.

Schreiber requires that an employee have authorization to work in the country in which the role is based. In the event, an applicant does not have current work authorization, Schreiber will determine, in its sole discretion, whether to sponsor an individual for work authorization. However, based on immigration requirements, not all roles are suitable for sponsorship.

An Equal Opportunity Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Want to be alerted of new openings? Sign in and click the Job Alerts  button in the upper-right corner to create a job alert.

Apply Now

Director of Security Strategy and Innovation

75215 Park Cities, Texas Bridge Technologies and Solutions

Posted 21 days ago

Job Viewed

Tap Again To Close

Job Description

Job Summary:

Publicis Resources, the shared service organization of Publicis Groupe and home to the Global Security Office (GSO), is seeking a visionary Director of Security Strategy and Innovation. This role will be instrumental in shaping the strategic direction of the Groupe's security initiatives, aligning them with business goals and industry trends. The position focuses on developing and managing the strategic security roadmap, phasing in and out security technologies, benchmarking solutions through proof of concepts (POCs), and acting as a key evangelist to promote innovation and alignment across the Groupe.

Key Responsibilities:

Strategic Planning & Execution
  • Lead the creation and execution of Publicis Groupe's strategic security roadmap, in alignment with business needs and emerging trends.
  • Oversee the lifecycle of security technologies, ensuring timely upgrades and decommissioning of outdated solutions.
  • Identify gaps in the security ecosystem and design phased plans to address them effectively.
Technology Selection & Benchmarking
  • Evaluate market trends and industry innovations to identify leading-edge security solutions.
  • Manage POCs to validate new technologies, ensuring they meet Publicis Groupe's technical and operational needs.
  • Benchmark existing solutions against industry standards to drive continuous improvement.
Evangelism & Stakeholder Engagement
  • Act as a trusted advisor and advocate within Publicis Groupe, promoting the adoption of strategic security initiatives.
  • Engage with stakeholders across the Group to gather feedback, align strategies, and ensure successful implementation.
  • Foster collaboration between the GSO and other entities within Publicis Groupe to advance security innovation.
Leadership & Collaboration
  • Build and lead a team of senior security architects focused on strategic and transformative security initiatives.
  • Collaborate closely with operational security teams and other shared service units within Publicis Resources.
  • Partner with key stakeholders, including IT, engineering, compliance, and agency-level teams, to integrate security strategies seamlessly.
Trend Analysis & Innovation
  • Monitor emerging threats, trends, and technologies to anticipate and address future security challenges.
  • Champion a culture of creativity and forward-thinking within the GSO and Publicis Resources.
Qualifications:
Required:
  • 10+ years of cybersecurity experience with a focus on strategy, architecture, or technology leadership roles.
  • Strong understanding of global security frameworks (e.g., NIST, ISO 27001) and technologies (e.g., cloud security, IAM, SIEM, endpoint protection).
  • Demonstrated success in developing and executing security roadmaps in a multinational organization.
  • Expertise in benchmarking and conducting proof of concepts (POCs) for technology evaluation.
  • Exceptional communication skills, with the ability to influence stakeholders at all levels within a large organization.
Preferred:
  • Leadership experience in global or shared service environments.
  • Familiarity with the dynamics and challenges of a large holding company structure such as Publicis Groupe.
  • Relevant certifications such as CISSP, CISM, TOGAF, or equivalent.
  • Experience with advanced technologies, including AI/ML in security, Zero Trust, and cloud-native architectures.
What We Offer:
  • A unique opportunity to lead transformational security initiatives within a global, dynamic organization.
  • Competitive compensation and benefits package.
  • A collaborative work environment that values innovation and continuous improvement.
View Now

Sr. CyberArk EPM Server Security Strategy Technical Lead

66213 Overland Park, Kansas Insight Global

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

We are seeking a CyberArk Endpoint Privilege Manager (EPM) Technical Lead to spearhead the deployment and strategic control of server assets across our enterprise. This role blends deep technical expertise with a strategic mindset to secure critical infrastructure, monitor traffic, and develop a comprehensive lockdown plan for server environments.

Design, deploy, and manage CyberArk EPM policies for application control and privilege management across a large enterprise Windows environment.
Develop and execute a strategy to monitor and secure server traffic, identifying vulnerabilities and implementing controls.
Maintain and enhance application allowlisting/blocklisting strategies to enforce least privilege across endpoints.
Administer and tune EPM rules to support evolving business and operational needs across both Windows servers and workstations.
Collaborate with Security Engineering, Endpoint Management, and IT Operations teams to ensure consistent EPM coverage and compliance.
Monitor and analyze EPM logs, alerts, and reports for anomaly detection, troubleshooting, and continuous improvement.
Document configurations, policies, processes, and integration workflows.
Administer and schedule team activities, ensuring sustainability and continuous improvement.
Report to the Project Manager on team status, set goals, and provide performance feedback.
Coordinate with other team leads for requirements gathering, development planning, and defect management.
Mentor team members and foster a culture of security-first thinking.

We are a company committed to creating inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity employer that believes everyone matters. Qualified candidates will receive consideration for employment opportunities without regard to race, religion, sex, age, marital status, national origin, sexual orientation, citizenship status, disability, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to Human Resources Request Form . The EEOC "Know Your Rights" Poster is available here .

To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: .

Required Skills & Experience

3+ years of hands-on experience administering CyberArk Endpoint Privilege Manager (EPM) in large-scale Windows environments.
Proven expertise in Windows workstation and server management, with a focus on endpoint application control.
Experience managing EPM deployments at scale (10k+ endpoints; ideally 90k+).
Strong understanding of platform operations and application architecture.
Solid understanding of endpoint security best practices and compliance requirements.
Proven ability to lead technical teams and drive strategic initiatives.
Familiarity with environments lacking centralized software distribution (no software store).
Excellent communication and cross-functional collaboration skills.

Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

View Now

Sr. CyberArk EPM - Server Security Strategy Technical Lead

66213 Overland Park, Kansas Insight Global

Posted 1 day ago

Job Viewed

Tap Again To Close

Job Description

Job Description

We are seeking a CyberArk Endpoint Privilege Manager (EPM) Technical Lead to spearhead the deployment and strategic control of server assets across our enterprise. This role blends deep technical expertise with a strategic mindset to secure critical infrastructure, monitor traffic, and develop a comprehensive lockdown plan for server environments.

• Design, deploy, and manage CyberArk EPM policies for application control and privilege management across a large enterprise Windows environment.

• Develop and execute a strategy to monitor and secure server traffic, identifying vulnerabilities and implementing controls.

• Maintain and enhance application allowlisting/blocklisting strategies to enforce least privilege across endpoints.

• Administer and tune EPM rules to support evolving business and operational needs across both Windows servers and workstations.

• Collaborate with Security Engineering, Endpoint Management, and IT Operations teams to ensure consistent EPM coverage and compliance.

• Monitor and analyze EPM logs, alerts, and reports for anomaly detection, troubleshooting, and continuous improvement.

• Document configurations, policies, processes, and integration workflows.

• Administer and schedule team activities, ensuring sustainability and continuous improvement.

• Report to the Project Manager on team status, set goals, and provide performance feedback.

• Coordinate with other team leads for requirements gathering, development planning, and defect management.

• Mentor team members and foster a culture of security-first thinking.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy:

Skills and Requirements

• 3+ years of hands-on experience administering CyberArk Endpoint Privilege Manager (EPM) in large-scale Windows environments.

• Proven expertise in Windows workstation and server management, with a focus on endpoint application control.

• Experience managing EPM deployments at scale (10k+ endpoints; ideally 90k+).

• Strong understanding of platform operations and application architecture.

• Solid understanding of endpoint security best practices and compliance requirements.

• Proven ability to lead technical teams and drive strategic initiatives.

• Familiarity with environments lacking centralized software distribution (“no software store”).

• Excellent communication and cross-functional collaboration skills. null

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to

View Now

Sr. CyberArk EPM - Server Security Strategy Technical Lead

66210 Overland Park, Kansas Insight Global

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Description
We are seeking a CyberArk Endpoint Privilege Manager (EPM) Technical Lead to spearhead the deployment and strategic control of server assets across our enterprise. This role blends deep technical expertise with a strategic mindset to secure critical infrastructure, monitor traffic, and develop a comprehensive lockdown plan for server environments.
- Design, deploy, and manage CyberArk EPM policies for application control and privilege management across a large enterprise Windows environment.
- Develop and execute a strategy to monitor and secure server traffic, identifying vulnerabilities and implementing controls.
- Maintain and enhance application allowlisting/blocklisting strategies to enforce least privilege across endpoints.
- Administer and tune EPM rules to support evolving business and operational needs across both Windows servers and workstations.
- Collaborate with Security Engineering, Endpoint Management, and IT Operations teams to ensure consistent EPM coverage and compliance.
- Monitor and analyze EPM logs, alerts, and reports for anomaly detection, troubleshooting, and continuous improvement.
- Document configurations, policies, processes, and integration workflows.
- Administer and schedule team activities, ensuring sustainability and continuous improvement.
- Report to the Project Manager on team status, set goals, and provide performance feedback.
- Coordinate with other team leads for requirements gathering, development planning, and defect management.
- Mentor team members and foster a culture of security-first thinking.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: and Requirements
- 3+ years of hands-on experience administering CyberArk Endpoint Privilege Manager (EPM) in large-scale Windows environments.
- Proven expertise in Windows workstation and server management, with a focus on endpoint application control.
- Experience managing EPM deployments at scale (10k+ endpoints; ideally 90k+).
- Strong understanding of platform operations and application architecture.
- Solid understanding of endpoint security best practices and compliance requirements.
- Proven ability to lead technical teams and drive strategic initiatives.
- Familiarity with environments lacking centralized software distribution ("no software store").
- Excellent communication and cross-functional collaboration skills. null
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to
View Now

Senior Director, Security Strategy and Resilience (San Francisco)

94121 San Francisco, California MongoDB

Posted 12 days ago

Job Viewed

Tap Again To Close

Job Description

full time
Senior Director, Security Strategy and Resilience

Join to apply for the Senior Director, Security Strategy and Resilience role at MongoDB

Senior Director, Security Strategy and Resilience

1 day ago Be among the first 25 applicants

Join to apply for the Senior Director, Security Strategy and Resilience role at MongoDB

MongoDBs mission is to empower innovators to create, transform, and disrupt industries by unleashing the power of software and data. We enable organizations of all sizes to easily build, scale, and run modern applications by helping them modernize legacy workloads, embrace innovation, and unleash AI. Our industry-leading developer data platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available in more than 115 regions across AWS, Google Cloud, and Microsoft Azure. Atlas allows customers to build anywhereon the edge, on premises, or across cloud providers. With offices worldwide and over 175,000 developers joining MongoDB every month, its no wonder that leading organizations, like Samsung and Toyota, trust MongoDB to build next-generation, AI-powered applications.

MongoDB is seeking a Senior Director for Security Strategy and Resilience. The Security Strategy and Resilience role is responsible for the strategic leadership and management of the organization's Crisis Management, Business Continuity and global Security Strategy.

The Security Strategy Senior Director is responsible for developing, implementing, and overseeing enterprise-wide security strategies to safeguard the company's assets, data, and reputation. This individual plays a pivotal role in aligning internal stakeholders to build proper Crisis Management processes and comprehensive resilient security posture. This role will also focus on creating and driving a global program to measure MongoDB security defense effectiveness with KPIs, metrics and trends.

Responsibilities Include, but are not limited to:

  • Develop and implement a comprehensive security vision and strategy aligned with organizational goals.
  • Define long-term security objectives and create roadmaps to achieve a robust security posture.
  • Actively monitor emerging trends, regulatory requirements, and innovations in the security domain to adapt and strengthen the strategy.
  • Stay updated on new security solutions, technologies, tangential team capabilities, and other specific offerings within MongoDB and the security industry.
  • Lead initiatives to identify, assess, and prioritize security risks across the organization.
  • Create and maintain crisis management response plans to address security breaches effectively.
  • Create and drive a proper Business Continuity Plan strategy and drive its adoption across various business units.
  • Partner with leadership and technical teams to ensure risk mitigation strategies are in place.
  • Act as a well-rounded Subject Matter Expert (SME) who has the technical depth to present in front of audiences of all sizes confidently.
  • Collaborate with internal departments, including legal, finance, operations, and human resources, to foster a culture of awareness and education on the MongoDB security strategy and resilience obligations.

Qualifications

  • 10+ years experience in a leadership security role developing and explaining strategic and tactical security concepts to various audiences.
  • Proven experience in leading security strategy initiatives in large, complex organizations.
  • Deep understanding of cybersecurity principles, frameworks, and risk management methodologies.
  • Strong leadership and interpersonal skills, with the ability to communicate effectively with technical teams and executives.
  • Expertise in crisis management, business continuity and resilience, security metrics, data privacy, compliance, and regulatory requirements.
  • Ability to navigate complex organizational environments and drive change.
  • CISSP or other industry certifications are a plus.

Required Skills And Asks

  • Deep understanding of the security industry, best practices, emerging technologies, and leading solutions.
  • Demonstrate a real passion for Cybersecurity strategy, operational effectiveness.
  • Strong oral and written communication skills with a high degree of comfort with varying types of audiences.
  • Entrepreneurial mindset with the ability to identify value and opportunity in unstructured situations.
  • Emotional intelligence, flexible work style, and excellent diplomatic skills across all levels of an organization.
  • Experience designing and delivering complex solutions and executing projects on time and to customer satisfaction.

To drive the personal growth and business impact of our employees, were committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what its like to work at MongoDB, and help us make an impact on the world!

MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter.

MongoDB, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type and makes all hiring decisions without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Req ID:

MongoDBs base salary range for this role is posted below. Compensation at the time of offer is unique to each candidate and based on a variety of factors such as skill set, experience, qualifications, and work location. Salary is one part of MongoDBs total compensation and benefits package. Other benefits for eligible employees may include: equity, participation in the employee stock purchase program, flexible paid time off, 20 weeks fully-paid gender-neutral parental leave, fertility and adoption assistance, 401(k) plan, mental health counseling, access to transgender-inclusive health insurance coverage, and health benefits offerings. Please note, the base salary range listed below and the benefits in this paragraph are only applicable to U.S.-based candidates.

MongoDBs base salary range for this role in the U.S. is:

$185,000$63,000 USD

Seniority level
  • Seniority level Director
Employment type
  • Employment type Full-time
Job function
  • Job function Other, Information Technology, and Management
  • Industries Software Development

Referrals increase your chances of interviewing at MongoDB by 2x

Get notified about new Director of Security jobs in San Francisco, CA .

San Francisco, CA 115,000.00- 130,000.00 2 weeks ago

Global Security - Regional Security Director

San Francisco, CA 140,000.00- 200,000.00 2 weeks ago

San Francisco, CA 211,500.00- 334,600.00 2 hours ago

Director of IT Security Fusion Center (SOC and Incident Response)

Foster City, CA 210,375.00- 272,250.00 19 hours ago

Senior Director of Governance, Risk, Compliance & Privacy

San Francisco, CA 264,000.00- 369,500.00 2 days ago

Senior Director of GenAI Security Engineering 664

San Francisco, CA 245,833.00- 407,625.00 2 weeks ago

Director, Identity and Access Management Services

San Francisco, CA 208,400.00- 303,800.00 4 months ago

Senior Director of GenAI Security Engineering 664

San Francisco, CA 111,200.00- 132,050.00 17 hours ago

United States 212,000.00- 290,000.00 1 week ago

REMOTE - Director of Engineering - Security

San Francisco, CA 160,000.00- 210,000.00 2 days ago

Director of Corporate & Americas Public Relations

San Francisco, CA 195,720.00- 234,864.00 1 day ago

Director, Product Management, AI-led Platform, Security and Hardware Sales Director Embedded Security (US West Coast) Product Management Director, Okta Identity Security Products

San Francisco, CA 250,000.00- 300,000.00 2 weeks ago

Director/Senior Director, Product Management

Oakland, CA 115,000.00- 122,056.81 2 weeks ago

San Francisco, CA 286,500.00- 382,000.00 4 days ago

San Francisco, CA 264,000.00- 342,000.00 1 day ago

Director of Enterprise Sales (Cyber Threat Intelligence Focus) - United States of America Senior Director, Product Marketing - Endpoint Security Portfolio

San Francisco, CA 315,000.00- 364,000.00 2 weeks ago

Emeryville, CA 195,880.00- 293,820.00 1 month ago

San Francisco, CA 223,100.00- 314,200.00 12 hours ago

Director of Engineering - VC Backed Startups

San Francisco, CA 190,000.00- 280,000.00 4 months ago

Director, Product Management, Protected Data, Core

San Francisco, CA 272,000.00- 383,000.00 18 hours ago

Were unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr
View Now

Chief Information Security Office-Strategy, Programs & GRC AVP

10261 New York, New York Bank of China Limited, New York Branch

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Introduction

Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business.

Overview

This incumbent will provide Strategy, Programs, Governance, Risk and Compliance functions as required to fulfill BOCNY information security program requirements. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments and Compliance functions as detailed below.

Responsibilities

Governance
  • Establish and maintain Information Security policies and procedures
  • Ensure CISO roles and responsibilities are clearly delineated and documented to ensure efficiency, create synergies and ensure TISR is being properly managed across first and second lines
  • Periodically refresh and update TISR controls guidance in relevant policies and supporting procedures with detailed implementation guidance
  • Develop, monitor, and track CISO policy adherence measures and metrics
Stragtegy & Programs
  • Coordinate Information Security strategy in alignment with the Bank's strategy
  • Maintain strategic initiatives tracking and associated KRIs to track progress and execution of the objectives
  • Conduct quarterly strategy reviews with the CISO team to ensure alignment and momentum continue. Adjust strategy as necessary
  • Provide end-to-end project management function for all CISO led projects
  • Manage all CISO programs, including but not limited to: Information Security Program & Training & Culture Program
Risk & Compliance
  • Establish and enhance a TISR framework that consists of the appropriate components to effectively manage TISR
  • Conduct risk assessments of TISR for Projects, Third-Party, New Activities and Applications
  • Develop and execute an TISR annual work plan of risk identification, assessment, and control evaluation and testing activities
  • Review and contribute to the development and maintenance of the taxonomy for Risk, Process and Controls for TISR domains.
  • Catalog and oversee remediation of TISR issues include those arising from Audit and Regulatory exams, ITRM deep dives, root cause analyses and control testing
  • Prepare and submit Audit Requests for evidence
  • Anticipate audit requests and prepare comprehensive approach to for CISO policy and standards and associated implementation
  • Prepare response evidence for IT/IS related regulatory exams
  • Recommend changes to policy, process or procedures to align with OCC and other federal guidelines and regulations
  • Evaluate and provide evidence of compliance for BOCNY Branch
  • Liaison with LCD/RAO/IAD to ensure collaboration and partnership so that CISO can meet regulatory IT/IS requirements
Metrics & Reporting
  • Manage all metrics and reporting for CISO
Qualifications
  • Bachelor's degree in Business, Computer Science, Management Information Systems, Engineering, Mathematics, or related field is required
  • Minimum 5 years of work experience in Financial services Risk Management, Audit, IT/IS Operations, or other relevant functions
  • Minimum 3 years of experience in developing and executing IT/IS Risk programs, projects, and policies
  • Minimum 1 year of experience working with US Banking Regulations, financial industry standards, and industry standard IT/IS Risk Frameworks
  • Strong program, frameworks, project management development, implementation, and maintenance skills
  • Sound and practical IT/IS risk management and program knowledge
  • Familiarity with IT/IS Risk Management regulations, standards, and frameworks including NIST, ISO27002, FFIEC Guidelines, etc.
  • CISSP/CRISC/ or IT related certifications preferred


Pay Range

Actual salary is commensurate with candidate's relevant years of experience, skillset, education and other qualifications.


USD $5,000.00 - USD 150,000.00 /Yr.
View Now
Be The First To Know

About the latest Security strategy Jobs in United States !

Chief Information Security Office-Strategy, Programs & GRC Associate

10261 New York, New York Bank of China Limited, New York Branch

Posted 24 days ago

Job Viewed

Tap Again To Close

Job Description

Introduction

Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business.

Overview

This incumbent will provide Strategy, Programs, Governance, Risk and Compliance functions as required to fulfill BOCNY information security program requirements. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments and Compliance, Data Privacy functions as detailed below.

Responsibilities

Includes but not limited to:

Strategy
  • Coordinate Information Security strategy in alignment with the BOCNY branch strategy
  • Maintain strategic initiatives tracking and associated KRIs to track progress and execution of the objectives
  • Conduct quarterly strategy reviews with the CISO team to ensure alignment and momentum continue Adjust strategy as necessary
  • Provide end-to-end project management function for all CISO led projects
Programs
  • Manage all CISO programs, including but not limited to:
    • Information Security Program
    • Training & Culture Program
      • Security Training
      • Phishing Campaigns
      • Tabletop Exercises
    • Data Privacy Program
Governance
  • Establish and maintain Information Security policies and procedures
  • Ensure CISO roles and responsibilities are clearly delineated and documented to ensure efficiency, create synergies and ensure TISR is being properly managed across first and second lines
  • Periodically refresh and update TISR controls guidance in relevant policies and supporting procedures with detailed implementation guidance
  • Develop, monitor, and track CISO policy adherence measures and metrics
  • Provide all administrative functions for the Information Security Committee and all its sub-committees
Risk
  • Establish and enhance a TISR framework that consists of the appropriate components to effectively manage TISR
  • Conduct risk assessments of TISR for Projects, Third-Party, New Activities and Applications
  • Develop and execute an TISR annual work plan of risk identification, assessment, and control evaluation and testing activities
  • Review and contribute to the development and maintenance of the taxonomy for Risk, Process and Controls for TISR domains
  • Catalog and oversee remediation of TISR issues include those arising from Audit and Regulatory exams, ITRM deep dives, root cause analyses and control testing
  • Track observed control gaps and root causes and annually refresh CISO policy and procedures to reflect new and enhanced controls
Compliance
  • Prepare and submit Audit Requests for evidence
  • Anticipate audit requests and prepare comprehensive approach to for CISO policy and standards and associated implementation
  • Prepare response evidence for IT/IS related regulatory exams
  • Recommend changes to policy, process or procedures to align with OCC and other federal guidelines and regulations
  • Evaluate and provide evidence of compliance for BOCNY Branch
  • Liaison with LCD/RAO/IAD to ensure collaboration and partnership so that CISO can meet regulatory IT/IS requirements
Data Privacy
  • Develop and implement strategies to ensure compliance with relevant privacy laws and regulations
  • Stay up-to-date with changes in data privacy legislation and industry best practices
  • Assist in the development and maintenance of privacy policies, standards and procedures
  • Provide oversight and monitoring of privacy risk assessments by the FLUs
  • Ensure all relevant processes reflect privacy requirements and comply with laws and regulations
  • Plan and implement privacy training programs and communications
  • Identify and assess privacy risks within the organization
Metrics & Reporting
  • Manage all metrics and reporting for CISO
    • Operational
    • Executive & Board
    • Budget & Headcount
    • Dashboards
Qualifications
  • Bachelor's degree in Business, Risk, Data, Computer Science, Management Information Systems, Engineering, Mathematics, or related field
  • Minimum 3 years of work experience in Financial services Risk Management, Audit, IT/IS Operations, Data Privacy or other relevant functions
  • Minimum 2 years of experience in developing and executing IT/IS Risk programs, projects, and policies
  • Minimum 1 year of experinece working with US Banking Regulations, financial industry standards, and industry standard IT/IS Risk Frameworks
  • Good understanding of regulatory requirements including FFIEC, GLBA, NIST
  • Knowledge of Information security and cyber security best practices
  • Knowledge of systems administration such as Windows Server, Active Directory management, Firewall, UNIX system, network architectures, etc.
  • Knowledge of security tools such as SIEM, DLP, XDR, EDR, Web Filter etc.
  • CISSP/CRISC/ or IT related certifications preferred


Pay Range

Actual salary is commensurate with candidate's relevant years of experience, skillset, education and other qualifications.


USD $2,000.00 - USD 90,000.00 /Yr.
View Now

Security Strategy, Risk and Resilience (SRR) Business Continuity Lead- Global Security Organizati...

20220 Washington, District Of Columbia TikTok

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

full time
Security Strategy, Risk and Resilience (SRR) Business Continuity Lead- Global Security Organization Security Strategy, Risk and Resilience (SRR) Business Continuity Lead- Global Security Organization

Responsibilities
The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as GSO, this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.

Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop GSO protects their data and privacy, so they can have a secure and trustworthy experience.

The Security Strategy, Risk, and Resilience (SRR) team is responsible for working closely with cross-functional partners to manage security risks, mature security operations, and build organizational resilience. We support our partners in meeting industry cybersecurity compliance standards and government regulations by developing and driving the organizations cybersecurity strategy, establishing and maintaining a comprehensive business continuity management program, creating and maintaining governing security policies, implementing our security control framework, conducting regular security risk and control assessments, and staying up-to-date on global compliance initiatives and evolving regulatory requirements.

TikToks Global Security Organization is seeking a Business Continuity Management (BCM) Team Lead to drive the development, implementation, and maturity of our global business continuity strategy. In this role, you will lead a team focused on ensuring operational resilience across all critical business functions. You will partner with leaders across technology, operations, compliance, and risk to build scalable, integrated, and testable continuity plans that support TikToks rapid growth and global operations.

This role is for someone who is passionate about building best-in-class resilience programs, influencing cross-functional teams, and delivering measurable business value through preparedness and response.


The Business Continuity Management Team Lead involves supporting and overseeing the development, implementation, ongoing maintenance, and maturity of the Global Security Organization strategy. You would be a great fit for this role if you are enthusiastic about:
1. Program Leadership and Strategy: Own and evolve the global Business Continuity Management framework to align with company objectives, industry standards (e.g., ISO 22301), and regulatory expectations.
2. Risk and Impact Analysis: Oversee business impact analyses (BIAs) and risk assessments in coordination with business units to identify critical processes and dependencies.
3. Continuity Planning and Testing: Guide business units in developing, maintaining, and exercising business continuity and recovery plans. Design and lead regular simulations, tabletop exercises, and after-action reviews to validate readiness and improve response strategies.
4. Team Management and Development: Lead, mentor, and scale a high-performing team of BCM professionals, ensuring consistent execution of program goals and growth of team capabilities.
5. Cross-Functional Partnership and Reporting: Collaborate with Crisis Management, IT Disaster Recovery, Risk, Compliance, Legal, and senior leadership to ensure an integrated approach to resilience.

Qualifications
Minimum Qualifications:
- Demonstrated leadership experience managing and developing high-performing teams, with a proven ability to engage effectively across all levels of the organization, including executive leadership, technical teams, and cross-functional stakeholders
- Proven ability to design, implement, and mature enterprise-level continuity programs
- Experience facilitating exercises and working directly with executives during incident response
- Exceptional communication and stakeholder engagement skills across technical and non-technical audiences
- Ability to work from the Washington, DC office a minimum of 3 days per week and travel to other domestic and international locations as needed to support strategic initiatives and team collaboration

Preferred Qualifications:
- 5+ years of experience in business continuity, operational risk, crisis management, or a related resilience role
- Minimum of 5 years of experience in business continuity, operational risk, crisis management, or a related resilience role
- Relevant certifications (e.g., CISSP, CRISC, CISM, PMP, or other security certifications)

About TikTok
TikTok is the leading destination for short-form mobile video. At TikTok, our mission is to inspire creativity and bring joy. TikTok's global headquarters are in Los Angeles and Singapore, and we also have offices in New York City, London, Dublin, Paris, Berlin, Dubai, Jakarta, Seoul, and Tokyo.


Why Join Us
Inspiring creativity is at the core of TikTok's mission. Our innovative product is built to help people authentically express themselves, discover and connect and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and bring joy - a mission we work towards every day.
We strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. Every challenge is an opportunity to learn and innovate as one team. We're resilient and embrace challenges as they come. By constantly iterating and fostering an Always Day 1 mindset, we achieve meaningful breakthroughs for ourselves, our company, and our users. When we create and grow together, the possibilities are limitless. Join us.

Diversity & Inclusion
TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.


TikTok Accommodation
TikTok is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at Information
For Pay Transparency Compensation Description (Annually) - Washington, DC
The base salary range for this position in the selected city is 179820 - 336960 annually.
Compensation may vary outside of this range depending on a number of factors, including a candidates qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units.
Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure).
The Company reserves the right to modify or change these benefits programs at any time, with or without notice.

Seniority level
  • Seniority level Associate
Employment type
  • Employment type Full-time
Job function
  • Job function Other, Information Technology, and Management
  • Industries Computer and Network Security

Referrals increase your chances of interviewing at TikTok by 2x

Get notified about new Security Professional jobs in Washington, DC .

District of Columbia, United States 1 day ago

District of Columbia, United States 1 day ago

District of Columbia, United States 5 hours ago

District of Columbia, United States 6 days ago

Armed Protective Security Officers (PSO) - Various locations within Armed Protective Security Officers (PSO) - Washington, D.C.

District of Columbia, United States 8 hours ago

Junior Personnel Security Specialist(Top Secret Required)

District of Columbia, United States 1 week ago

District of Columbia, United States 2 weeks ago

District of Columbia, United States 1 week ago

District of Columbia, United States 1 week ago

District of Columbia, United States 5 days ago

District of Columbia, United States 4 days ago

Unarmed Security Officer Ashburn, Sterling, Herndon VA

District of Columbia, United States 1 week ago

District of Columbia, United States 3 weeks ago

District of Columbia, United States 3 weeks ago

District of Columbia, United States 2 weeks ago

District of Columbia, United States 3 weeks

View Now

Director, Cyber Security Strategy and Access Governance, IT Full-Time (21572) BHC (Fort Lauderdale)

33308 Fort Lauderdale, Florida Broward Health

Posted 12 days ago

Job Viewed

Tap Again To Close

Job Description

full time

Broward Health Corporate ISC

Shift: Shift 1

FTE: 1.000

Summary:

The Director, Cyber Security Strategy and Access Governance will lead the development and implementation of comprehensive cyber security strategies to protect sensitive data across Broward Health. This role is responsible for overseeing access governance, ensuring that appropriate security measures are in place to control and monitor user access to critical systems and data. The director will develop IT Security strategy in collaboration with IT and other organizational stakeholders to ensure Broward Health's mission and objectives are met. The position also involves managing a team of cyber security professionals, ensuring continuous monitoring, incident response, and risk mitigation efforts. The Director will drive initiatives for cyber security awareness and best practices to protect against evolving threats and safeguard patient and organizational data.

Education:
Essential:
* Bachelor's Degree

Experience:
Essential:
* Seven Years

Credentials:

Education equivalent experience:
Essential:
* Master's degree preferred

Visit us online at or contact Talent Acquisition

*Bonus Exclusions may apply in accordance with policy HR-004-026

Broward Health is proud to be an equal opportunity employer. Broward Health prohibits any policy or procedure which results in discrimination on the basis of race, color, national origin, gender, gender identity or gender expression, pregnancy, sexual orientation, religion, age, disability, military status, genetic information or any other characteristic protected under applicable federal or state law.

At Broward Health, the dedication and contributions of veterans are valued. Supporting the military community and giving back to those who served is a priority. Broward Health is proud to offer veteran's preference in the hiring process to eligible veterans and other individuals as defined by applicable law.

#J-18808-Ljbffr
View Now
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Strategy Jobs