Job Details

ID #40991724
State California
City Sanfrancisco
Job type Permanent
Salary USD USD180,000 - USD220,000 USD180000 - USD220000
Source Randstad Technologies
Showed 2022-05-16
Date 2022-05-15
Deadline 2022-07-14
Category Security
Create resume

Director of Information Systems, Security

California, Sanfrancisco, 94115 Sanfrancisco USA

Vacancy expired!

job summary:

This company has an opening for a Director of Information Systems Security who is excited to lock arms with the Chief Technology Officer and leadership team to build best-in-class security systems for the organization. The Director of IS Security will establish, plan, and administer the overall policies, goals and procedures corporate-wide for the information security program to ensure that information assets are adequately protected. They initiate, implement, and develop information security programs in accordance with organizational information security standards. They perform and evaluate information risk on a regular time schedule and promote information security awareness within the organization. The Director of IS Security is essential to delivering on the company's purpose and business objectives.

location: San Francisco, California

job type: Permanent

salary: $180,000 - 220,000 per year

work hours: 8am to 4pm

education: Bachelors

responsibilities:

Responsibilities

  • Work with the CTO to develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure that the integrity, confidentiality, and availability of information is owned, controlled or processed by the organization.
  • Ensure company meets all compliance and certification requirements required by our industry, customers or suppliers.
  • Manage the process of gathering, analyzing and assessing the current and future threat landscape, as well as providing the leadership with a realistic overview of risks and threats in the enterprise environment.
  • Work with the leadership to develop budget projections based on short-term and long-term goals and objectives.
  • Monitor and report on compliance with security policies, as well as the enforcement of policies within the IS department.
  • Develop, maintain and publish up to date information security policies, standards, and guidelines. Oversee the approval, training, and dissemination of security policies and practices. Propose changes to existing policies and procedures to ensure operating efficiency and regulatory compliance.
  • Assist resource owners and IS staff in understanding and responding to security audit failures reported by auditors.
  • Create and manage information security and risk management awareness training programs for all employees, contractors and approved system users, which may range from senior leaders to IS staff.
  • Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation. Manage production issues and incidents, and participate in problem and change management forums.
  • Serve as an active and consistent participant in the information security governance process.
  • Work with the leadership and business stakeholders to define metrics and reporting strategies that effectively communicate successes and progress of the security program.
  • Create and manage a unified and flexible control framework to integrate and normalize the wide variety and ever-changing requirements resulting from global laws, standards and regulations, including audit support.
  • Ensure that security programs are in compliance with relevant laws, regulations and policies to minimize or eliminate risk and audit findings.
  • Consult with IS and security staff to ensure that security is factored into the evaluation, selection, installation and configuration of hardware, applications and software.
  • Work with the enterprise architecture team to ensure that there is a convergence of business, technical and security requirements; liaise with IS leadership to align existing technical installed base and skills with future architectural requirements.
  • Develop a strong working relationship with the engineering team to develop and implement controls and configurations aligned with security policies and legal, regulatory and audit requirements
  • Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitate appropriate resource allocation, and increase the maturity of the security. Coordinate, measure and report on the technical aspects of security management.
  • Monitor the external threat environment for emerging threats, and advise relevant stakeholders on the appropriate courses of action. Manage the day-to-day activities of threat and vulnerability management, identify risk tolerances, recommend treatment plans and communicate information about residual risk.
  • Design, coordinate and oversee security testing procedures to verify the security of systems, networks and applications, and manage the remediation of identified risks.

qualifications:

  • Experience level: Director
  • Minimum 8 years of experience
  • Education: Bachelors

skills:
  • Director (3 years of experience is required)
  • IT Governance
  • CEH (Certified Ethical Hackers)/PenTest
  • Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

    Qualified applicants in San Francisco with criminal histories will be considered for employment in accordance with the San Francisco Fair Chance Ordinance.

    We will consider for employment all qualified Applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance.

    For certain assignments, Covid-19 vaccination and/or testing may be required by Randstad's client or applicable federal mandate, subject to approved medical or religious accommodations. Carefully review the job posting for details on vaccine/testing requirements or ask your Randstad representative for more information.

    Vacancy expired!

    Subscribe Report job