Job Closed
This listing is no longer active.
We help CEOs, boards and investors develop winning executive teams and make high-stakes leadership decisions.
Director, Information Security – Technology
Location
United States
Posted
106 days ago
Salary
$180K - $190K / year
Seniority
Lead
Job Description
Director, Information Security – Technology
ghSMART
• Lead ghSMART’s enterprise information security program as the firm’s internal expert, driving strategy, operations, and continuous improvement. • Develop, align, and execute the firm’s information security roadmap in partnership with key stakeholders, ensuring alignment with business priorities and risk tolerance. • Define, implement, and continuously improve information security policies, standards, controls, and incident response practices, with a goal of aligning to a framework such as the ISO 27001. • Manage key security vendor relationships, including the external SOC, balancing impact, risk, and budget. • Foster a strong culture of security awareness across the firm and provide effective change management as security practices evolve. • Oversee ghSMART’s Azure environment and enterprise Microsoft ecosystem, including Microsoft 365, Entra ID, and Windows endpoint management, ensuring secure and scalable systems. • Lead, develop, and scale a high-performing IT Support team, setting standards for service excellence, reliability, and security while ensuring highly responsive support for all employees. • Own the end‑to‑end lifecycle of IT hardware and digital infrastructure, including provisioning, employee onboarding, offboarding, and device management. • Own and oversee all technology spend, including software, hardware, and outsourced services, ensuring responsible budgeting and cost management.
Job Requirements
- A bachelor’s degree in information security, information technology, computer science, or a related field, or equivalent experience.
- 8–10+ years of experience in enterprise IT, information security, or technology leadership roles.
- Strong technical foundation across enterprise IT environments, including Microsoft 365, Entra ID, Windows endpoint management, cloud infrastructure, and modern security operations.
- Deep expertise in information security governance, risk management, compliance frameworks, and security operations.
- Experience defining and implementing security policies, controls, and incident response processes; experience building or maturing an information security program from the ground up is a plus.
- Proven experience leading and managing IT and cybersecurity teams.
- Strong vendor and stakeholder management skills, particularly with security partners and cross‑functional leaders.
- Demonstrated ability to lead through influence, drive firmwide change management, and clearly communicate complex technical and security concepts to non‑technical stakeholders.
Benefits
- Annual discretionary performance bonus
- 401(k) plan with an annual employer contribution
- Comprehensive benefits package
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Oversee a lean team of analysts and engineers • Reporting into the VP of IT, you will have the opportunity to impact the trajectory of our IT delivery • Conduct on-site risk assessments and provide recommendations for remediation to business leaders and stakeholders for both Ultraviolet Cyber and our customers • Develop and maintain relationships with key business partners, including IT, Risk Management, and Compliance functions • Collaborate with field teams to identify and mitigate security risks associated with new initiatives or projects at Ultraviolet Cyber customers • Develop, implement, and maintain comprehensive cybersecurity strategies and programs aligned with organizational goals and objectives • Provide strategic guidance on cybersecurity risk management and mitigation, including incident response and crisis management • Lead the development and maintenance of policies, standards, and procedures for a comprehensive information security, compliance, and IT risk management program • Drive cybersecurity as an enabler and value-add to the company’s core business functions • Develop and maintain a deep understanding of both technical and business aspects of cybersecurity to provide effective guidance to customers, field teams, and senior leadership • Collaborate with other functions, including IT, Risk Management, and Compliance, to ensure that cybersecurity is integrated into all aspects of the organization • Oversee the establishment and maintenance of a comprehensive cybersecurity incident response plan and a disaster recovery plan. • Manage and oversee the effective deployment of security technologies and software. • Develop and manage security strategies for vendor selection and evaluation and monitor and manage the security aspects of the vendor lifecycle • Communicate with stakeholders about the cybersecurity posture and strategies clearly and effectively • Prepare and/or present cybersecurity reports for the Board of Directors and other stakeholders
• Monitorar alertas de segurança em XDR/SIEM; • Realizar triagem inicial (Triage N1) e coletar evidências básicas (logs, artefatos); • Executar playbooks de resposta documentados; • Abrir, atualizar e encerrar incidentes; • Operar o processo de Gestão de Vulnerabilidades; • Entender fluxo de ataque (Kill Chain / MITRE); • Participar de exercícios de incident response; • Apoiar atividades simples de Threat Hunting; • Contribuir com sugestões de melhoria em detecções.
• Support security design and installation projects throughout North America • Manage all aspects of the project from initial engagement through project completion • Manage multiple projects and scopes of work • Identify project schedule, scope parameters, and oversee security design and implementation per client design requirements and standards • Manage early project initiation activities and develop project security scope, schedule, critical deliverables, and requirements • Prepare, issue, and manage Request for Proposal (RFP) documents for security systems installation scope • Evaluate RFP responses and prepare evaluation reports • Perform security site evaluations of potential client properties and review proposed design concepts • Produce project status and issues reports and meet with client stakeholders weekly • Conduct on-site inspections during construction and installation and final acceptance testing of completed systems installation
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a highly skilled and motivated Ping Developer to join the ICAM Cyber Modernization project team. The ideal candidate will have an understanding and experience with LDAP integrations and SSO capabilities. - Exceptional communication and interpersonal skills. - Work directly with clients and act as a liaison between technical teams and stakeholders. - High technical acumen and a thorough understanding of Identity, Credential, and Access Management (ICAM) principles and policies. - Engagement with multiple teams and contributing to key decisions. - Providing solution support for clients. - Foster a collaborative environment that encourages internal and external teams to share knowledge and best practices. - Collaborate with the project team to develop and implement innovative strategies and recommendations to meet project objectives. - Work closely with clients and other stakeholders to understand their requirements and deliver solutions that will contribute to enhancing the Department's security posture. Qualifications - Must be a US Citizen. - Must be able to pass a full background check and drug screen. - Must have a minimum of a Bachelor's Degree.



