Head of Information Security and Data Privacy
We are seeking a Head of Information Security and Data Privacy to lead our security initiatives, including:
- Information security at the enterprise level, covering application security and cloud security.
- Certification compliance with standards such as ISO, SOC, PCI DSS.
- Data privacy, including GDPR and CCPA readiness and compliance.
Key Objectives and Responsibilities:
- Cloud Security: Design, implement, and manage security measures for cloud infrastructure, ensuring data confidentiality, integrity, and availability. Conduct regular security assessments and collaborate with teams to embed security best practices.
- Application Security: Develop strategies for securing applications throughout the SDLC, perform code reviews, and conduct vulnerability assessments.
- Identity and Access Management (IAM): Oversee IAM processes to ensure secure access controls.
- Incident Response and Threat Detection: Develop response plans, monitor security logs, and respond promptly to incidents.
- Security Compliance: Ensure adherence to relevant standards, work with auditors, and demonstrate compliance.
- Security Automation: Implement automation tools to streamline security operations.
- Data Privacy: Lead GDPR and CCPA compliance programs, conduct privacy assessments, and address data processing risks.
Education & Work Experience:
- Over 18 years of experience in information security and privacy.
- Experience with a global footprint.
- Proven expertise in developing enterprise risk management strategies.
- Familiarity with ISO/IEC 27001, NIST frameworks.
This job posting appears to be active and does not indicate it is expired.