An application made for this job — a tailored resume and cover letter that speak straight to the posting.
RED SKY Consulting is seeking an Americas Regional CISO & Global Head of Security Engineering to drive security strategy and operations across the Americas and global engineering efforts. This executive role reports to the Group CISO and requires collaboration with IT, risk, and business leaders.
The position combines regional security leadership with global engineering oversight, including automation, cloud and network security, and innovation initiatives across multiple regions.
This dual-function role combines regional CISO responsibilities for the Americas with global leadership of our Security Engineering function. Reporting directly to the Group CISO, you will serve as a senior member of the Global Information Security Leadership team whilst overseeing all information security operations for the Americas region. This position requires managing regional security operations, risk management, and regulatory compliance whilst simultaneously leading the development and execution of security engineering strategy and managing global security engineering operations, technology implementation, and security tooling across all regions including Japan, Americas, EMEA, India, and Asia Excluding Japan (AeJ).
Strategic Leadership: Develop and execute a global cyber security engineering strategy and framework that aligns with business objectives and the Security Risks and Controls Framework. Build, mentor, and manage a high-performing global team of cyber security engineers across all regions. Foster a culture of continuous improvement, innovation, and collaboration within the team. Lead budget planning and resource allocation for global security engineering activities.
Change Leadership: Serve as a strong change agent in transforming how we deliver security engineering services and manage security platforms. Drive the adoption of modern operating models, automation, and emerging technologies including artificial intelligence and machine learning to improve efficiency, scalability, responsiveness, and the overall effectiveness of security controls.
Security Engineering & Implementation: Develop and maintain security solutions and products for the information security team, ensuring alignment with enterprise technology standards. Define and implement security standards, best practices, and guidelines for technology infrastructure, applications, and systems globally. Lead design and implementation of secure network solutions, cloud security solutions, and endpoint protection mechanisms including security tooling management (change management, patching, upgrades).
Global Infrastructure: Support the establishment of a Security Engineering Hub in our India-based delivery centre to provide 24x7 engineering support for Japan and global security platforms.
Technology Evaluation & Selection: Collaborate with cross-functional teams to evaluate and select security technologies including AI/ML, SaaS, security automation, and R&D initiatives. Provide technical guidance and expertise on security infrastructure design, configuration, and deployment across all regions. Provide clarity to IT (including projects) to ensure the most optimal risk reduction solutions are implemented.
Security Controls & Protection: Design and implement security controls and measures to protect against cyber threats, malware, and unauthorized access. Lead relevant assessments to identify gaps, vulnerabilities, and areas for resilience improvement.
DevSecOps & SDLC: Develop secure software development life cycle (SDLC) practices and implement DevSecOps program for the company globally.
Innovation & Testing: Establish and manage security lab and sandbox for evaluating security solutions and testing emerging technologies for the business. Stay current on emerging technologies, trends, and threats in the field of information security engineering.
Stakeholder Collaboration: Collaborate with internal and external stakeholders to ensure alignment with industry standards, regulatory requirements, and compliance frameworks. Partner with regional CISOs and security leaders to understand and address region-specific security engineering requirements. Work closely with IT, business units, legal, HR, and compliance teams to integrate security engineering solutions into business operations.
Resourcing & Coverage: Establish resourcing plans to build strong security engineering capabilities across key regions to support regional business, IT, and business development needs.
Adhere to and promote company values and ethical framework across global and regional teams. Lead environment where people management and development is top priority, empowering and mentoring direct reports. Drive achievement of high performance through effective career management, succession planning, and talent management. Act as role model communicating SMART business-driven objectives and ensuring continuous performance reviews. Proactively manage people decisions aligning performance with organizational needs. Provide regional and global perspective on talent, skills, development, promotion, and compensation. Contribute to year-end compensation process, hiring, retention, promotion, and disciplinary actions.