Epicareer Might not Working Properly
Learn More

Director of Cyber Security

Salary undisclosed

Apply on


Original
Simplified
  • JOB DESCRIPTION:
  • The purpose of Cybersecurity Engineering and Operations is to provide best in class and versatile security services to the enterprises.
  • As a Director in Cybersecurity Operations and Engineering, you will be responsible for the guidance and oversight of the services the team provides.
  • Maturing and optimizing while driving the team toward excellence in engineering, innovation, and implementation of best-in-class security solutions will be the primary focus.
  • The result will be an obsession of bringing the best of security solutions to protect the assets and systems.
  • This role is a People Leader role, and the security engineers aligned will directly report into this position.
  • As a People Leader (functional manager), strong candidates will have ample experience guiding & mentoring dynamic teams as it relates to each capability, identifying opportune areas to optimize the capability and stretching the squads to meet their maximum performance.
  • Team members will be both within the US and global.
  • RESPONSIBILITIES:
  • As the Director of Cybersecurity Engineering and Operations, you will be providing leadership to a growing global team of analysts, engineers, and incident responders. You will be responsible for ensuring that your team has the right skills, tools, competence, and processes to detect, defend and respond to any cyber event.
  • Influence the delivery, metrics and direction of the Security Operations performance and trends by proactively looking forward on security gaps, anticipation of upskilling and resource prioritization that require planning
  • The Director will be developing comprehensive security strategies aligned with the organization's overall security objectives. This involves identifying and evaluating potential risks associated with cloud services, applications, and infrastructure, and devising proactive measures to mitigate these risks effectively.
  • To ensure the teams adhere to relevant regulatory requirements, industry standards, and internal policies. This involves conducting regular audits and assessments to evaluate compliance with standards across company.
  • Participate in iteration planning, backlog management, and other agile ceremonies with Scrum Masters
  • Lead talent planning, career development mentoring, coaching and feedback to team members and remote employees while evaluating team member performance leading to continuous optimization.
  • Build partnerships with collaborators while keeping management up to date with the status of major deliverables as well as sustain strong working relations with business partners, peers to enhance business value.
  • QUALIFICATIONS:
  • Bachelor’s degree or equivalent experience
  • Minimum 10 years technology industry experience with a minimum three years in a cybersecurity leadership role.
  • The ability to lead and motivate teams, set strategic direction, and effectively communicate cybersecurity priorities to collaborators across the organization.
  • Capable of developing long-term cybersecurity strategies aligned with business objectives and industry trends. This includes anticipating future threats and proactively implementing measures to address them.
  • Strong Information Security experience in many of the following Operational Security Domains: Network Security, Endpoint Security (EDR), IdM/ IAM/ PAM, SIEM, Cloud (AWS/Azure), Containers, Cloud Access Security Broker, Zscaler (Zero Trust), SOAR, SRE, DLP, UEBA, DLP, PKI/ Certificate Management, File Integrity, and Vulnerability Management etc.)
  • Strong people leadership skills with experience leading Agile security engineering team
  • Communicate effectively, including executive communication to senior leadership
  • Strong, proven technical experience in Cybersecurity engineering, design, implementation, and documentation. This includes understanding of all aspects of network infrastructure (Networking protocols- TCP/IP, HTTP, HTTPS, DNS, firewalls, proxies, IDS, IPS etc.), agent/ agentless security, XaaS (SaaS, IaaS, PaaS, DaaS, DBaaS, FaaS) and FOSS
  • Knowledge of industry-standard Information Security frameworks, policies and procedures
  • Security certifications (CISSP, CISM, GSEC, CCSP, CEH, OSCP, etc.) are a plus