This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Director of Information Security will serve as the principal strategist for our digital defense and risk management framework. This role is responsible for architecting and driving the organization’s Strategic Security Initiatives while providing high-level oversight of our Managed Security Service Provider (MSSP). They will be the bridge between executive leadership’s vision and the operational execution of our security roadmap, ensuring every project aligns with our broader business objectives.
Job Responsibility:
Security Roadmap Development: Design and execute a multi-year enterprise cyber security strategy that supports organizational scaling, digital transformation, and investment readiness
Technology Investment Governance: Evaluate and prioritize security projects based on ROI, risk reduction, and business enablement
Cross-Functional Alignment: Collaborate with Finance, Operations, Risk, and Legal to ensure security initiatives (such as AI frameworks or cloud migrations) are integrated into the company’s core DNA
Managed Services Oversight: Direct the focus and daily work of the MSSP to ensure they are meeting SLAs and addressing the most critical threats to the environment. Perform process audits to confirm SOC is working effectively for our organization
Continuous Improvement: Act as the primary point of contact for the MSSP, conducting regular business reviews (QBRs) to tune detection rules and response playbooks
Vulnerability Management: Oversee the company’s vulnerability exposure and work with engineering teams to ensure devices are patched appropriately on schedule
Security Incident Playbooks: Ensure the company’s various incident response plans are regularly assessed and kept up to date, and that our teams can execute them precisely when needed during a potential security event
Governance Frameworks: Lead the implementation of frameworks (e.g., NIST, SOC2, or ISO) to ensure the organization remains compliant and audit ready
Threat Intelligence: Convert high-level threat landscape data into actionable internal projects that harden our infrastructure against emerging risks
External Resource Management: Modernize and manage the lifecycle of third-party risk management, from vendor selection and contract negotiation to ongoing performance auditing
Requirements:
10+ years in IT/Security, with a proven track record of managing multi-million-dollar strategic projects
Requires hands-on experience with EDR/XDR, SIEM, Firewall and Cloud security systems
Extensive experience managing MSSP, MDR, or specialized security consulting firms that may be disparately located across the globe
Ability to translate complex security risks into business-impact language for the C-Suite and Board of Directors
Bachelor’s degree in a relevant technology field
CISSP or CISM is highly preferred
What we offer:
competitive pay with early access to earned wages
flexible scheduling
health, dental, vision, life, and disability insurance