HamburgerMenu
hirist

Job Description

Job Description :


We are seeking an experienced Cybersecurity Leader with 12+ years of progressive experience in Enterprise Security Architecture, Infrastructure Security, Cyber Risk Management, Security Governance, Identity & Access Management (IAM), Network & Cloud Security, Threat Detection, Incident Response, and Vulnerability Management. The ideal candidate will lead enterprise-wide security initiatives, define security strategy, drive risk reduction programs, and ensure alignment of cybersecurity controls with business objectives and regulatory requirements.

This role requires strong leadership capabilities, deep technical expertise, and the ability to collaborate with executive stakeholders to establish a resilient and secure technology environment.

Key Responsibilities :

Cybersecurity Leadership & Strategy :

- Define and execute enterprise cybersecurity strategy aligned with organizational goals.

- Serve as a trusted advisor to executive leadership on security risks, emerging threats, and cybersecurity investments.

- Lead cybersecurity transformation initiatives across on-premises, cloud, and hybrid environments.

- Develop cybersecurity roadmaps, policies, standards, and security frameworks.

Enterprise Security Architecture :

- Design and govern enterprise security architecture across applications, infrastructure, cloud, networks, and data platforms.

- Establish security-by-design principles throughout the technology lifecycle.

- Review and approve architecture designs to ensure compliance with security standards and regulatory requirements.

- Drive Zero Trust Architecture initiatives and secure digital transformation programs.

Infrastructure & Cloud Security :

- Lead security architecture and controls for enterprise infrastructure, data centers, cloud platforms, and hybrid environments.

- Implement security best practices for AWS, Azure, and Google Cloud platforms.

- Oversee cloud security posture management, workload protection, container security, and DevSecOps initiatives.

- Ensure secure configuration and hardening of servers, databases, endpoints, and network infrastructure.

Cyber Risk Management & Governance :

- Establish enterprise cyber risk management frameworks and methodologies.

- Conduct security risk assessments and provide risk mitigation strategies.

- Drive governance, compliance, audit readiness, and regulatory adherence.

- Present risk metrics, security posture, and compliance status to senior management and governance committees.

Identity & Access Management (IAM) :

- Define and implement enterprise IAM strategy.

- Oversee Privileged Access Management (PAM), Single Sign-On (SSO), Multi-Factor Authentication (MFA), and identity governance initiatives.

- Ensure least privilege and role-based access controls across enterprise systems.

Network Security :

- Lead network security architecture, segmentation, secure connectivity, and perimeter defense strategies.

- Oversee deployment and optimization of firewalls, IDS/IPS, VPNs, secure web gateways, NAC, and DDoS protection solutions.

- Ensure network security controls support business continuity and resilience.

Threat Detection & Incident Response :

- Lead Security Operations Center (SOC) strategy and operational effectiveness.

- Oversee threat monitoring, detection engineering, threat intelligence, and incident response activities.

- Manage cyber incident investigations, containment, remediation, and post-incident reviews.

- Develop and test incident response, disaster recovery, and cyber resilience plans.

Vulnerability Management :

- Establish enterprise vulnerability management and remediation programs.

- Drive continuous security assessments, penetration testing, and attack surface reduction initiatives.

- Track remediation efforts and ensure compliance with security SLAs.

- Collaborate with infrastructure and application teams to prioritize and address security findings.

Security Governance & Compliance :

- Develop and maintain security policies, standards, procedures, and control frameworks.

- Ensure compliance with ISO 27001, NIST CSF, CIS Controls, PCI-DSS, GDPR, SOC 2, and other applicable standards.

- Support internal and external audits and regulatory reviews.

Team Leadership & Stakeholder Management :

- Lead and mentor cybersecurity architects, engineers, analysts, and security managers.

- Manage vendor relationships, security technologies, and third-party security assessments.

- Collaborate with business leaders, technology teams, auditors, and regulators.

- Drive cybersecurity awareness and security culture initiatives across the organization.

Required Qualifications :

- Bachelor's degree in Computer Science, Information Security, Engineering, or related field.

- 12+ years of experience in cybersecurity, information security, or enterprise security architecture.

- Strong experience in enterprise security architecture, cyber risk management, cloud security, and security governance.

- Hands-on experience with IAM, PAM, SIEM, EDR/XDR, vulnerability management, and network security technologies.

- Experience leading large-scale security programs and enterprise-wide initiatives.

- Strong understanding of Zero Trust, Secure Access Service Edge (SASE), cloud-native security, and security automation.

- Excellent communication, leadership, and stakeholder management skills.

Preferred Certifications :

- CISSP (Certified Information Systems Security Professional)

- CISM (Certified Information Security Manager)

- CCSP (Certified Cloud Security Professional)

- GIAC Certifications (GSEC, GCIH, GCIA, or equivalent)

- CASP+ (CompTIA Advanced Security Practitioner)

- ISO 27001 Lead Implementer / Lead Auditor (Preferred)

Technical Skills :

- Enterprise Security Architecture

- Cyber Risk Management

- Security Governance & Compliance

- Identity & Access Management (IAM/PAM)

- Threat Detection & Incident Response

- Vulnerability Management

- Security Operations (SOC)

- Cloud Security (AWS, Azure, GCP)

- Network Security

- SIEM, SOAR, EDR/XDR

- Zero Trust Architecture

- DevSecOps & Application Security

- Data Protection & Encryption

- Security Assessment & Penetration Testing

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...