Position Title: Global Head Security Risk and Compliance
Chandler, AZ, US, 85224
Summary:
This role is responsible for providing vision and leadership for developing and supporting security initiatives. They will direct the planning and implementation of enterprise IT systems, business operations, and facility defenses against security breaches and vulnerability issues. This role is also responsible for auditing existing systems, while directing the administration of security policies, activities, and standards.
This role requires a visionary leader with sound knowledge of business management and a working knowledge of cybersecurity technologies covering the corporate network as well as the broader digital ecosystem. This role is responsible for establishing and maintaining the cybersecurity program to ensure that information assets and associated technology, applications, systems, infrastructure and processes are adequately protected in the digital ecosystem in which we operate.
This role will be responsible for implementing and running the enterprise cybersecurity program. That will involve identifying, evaluating and reporting on legal and regulatory, IT, and cybersecurity risk to information assets, while supporting and advancing business objectives.
Essential Functions:
- Participate as a member of the senior management team in governance processes of the organization’s security strategies.
- Lead strategic security planning to achieve business goals by prioritizing defense initiatives and coordinating the evaluation, deployment, and management of current and future security technologies using a risk-based assessment methodology.
- Develop and communicate security strategies and plans to executive team, staff, partners, customers, and stakeholders.
- Assist with the design and implementation of disaster recovery and business continuity plans, procedures, audits, and enhancements.
- Develop, implement, maintain, and oversee enforcement of policies, procedures, and associated plans for system security administration and user system access based on industry-standard best practices.
- Define and communicate corporate plans, procedures, policies, and standards for the organization for acquiring, implementing, and operating new security systems, equipment, software, and other technologies.
- Act as advocate and primary liaison for the company’s security vision via regular written and in-person communications with the company’s executives, department heads, and end users.
- Work closely with the IT department on corporate technology development to fully secure information, computer, network, and processing systems.
- Manage the administration of all computer security systems and their corresponding or associated software, including firewalls, intrusion detection systems, cryptography systems, and anti-virus software.
- Manage the administration of the facility’s physical security systems and their corresponding equipment or software and anti-theft measures.
- Develop, track, and control the security services annual operating and capital budgets for purchasing, staffing, and operations.
- Ensure that facilities, premises, and equipment adhere to all applicable laws and regulations.
- Recommend and implement changes in security policies and practices in accordance with changes in local or federal law.
- Creatively and independently provide resolution to security problems in a cost-effective manner.
- Other duties as assigned.
Qualifications:
- University degree in Computer Science or Business Administration.
- Master’s or PhD degree in one these fields or Information Security preferred.
- Certifications in CISSP, CompTIA Security+, and CISM an asset.
- 15+ years experience managing and/or directing an IT and/or security operation.
- 10+ years experience working in the manufacturing industry or other relevant experience.
- Proven experience in planning, organizing, and developing IT security and facility security system technologies.
- Experience in planning and executing security policies and standards development.
- Excellent knowledge of technology environments, including information security, building security, and defense solutions.
- Considerable knowledge of business theory, business processes, management, budgeting, and business office operations.
- Substantial exposure to data processing, hardware platforms, enterprise software applications, and outsourced systems, including ERP and associated manufacturing operational technology.
- Good understanding of computer systems characteristics, features, and integration capabilities.
- Experience with systems design and development from business requirements analysis through to day-to-day management.
- Ability to lead and motivate the cybersecurity team to achieve tactical and strategic goals, even when only "dotted" reporting lines exist
- Excellent stakeholder management skills
- Financial/budget management, scheduling and workforce management
- A master of influencing entities and decisions in situations where no formal reporting structures exist, but achieving the desirable outcome is vital
- Business acumen and an understanding of the organization’s risk profile
- Ability to develop and implement security strategies that are aligned with the organization's business goals
- Travel: Up to 50%
Nearest Major Market: Phoenix