AVP - Information Security - Americas

PRA GROUP, INC.

Norfolk (VA)

On-site

USD 130,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

PRA GROUP, INC. in Norfolk, Virginia is seeking a Senior Technical Execution Leader for its Information Security organization. This role entails overseeing the full lifecycle of security solution design, from architecture to operation, in a multinational environment.

The ideal candidate will have extensive experience in managing security teams, implementing AI capabilities, and engaging with executive stakeholders. A Bachelor's degree is required, with a preference for those holding a Master's degree in a relevant field.

Qualifications

  • 12+ years of experience in information security with strong architecture and engineering skills.
  • 5+ years in a leadership role managing security teams.
  • Experience in complex regulated environments like healthcare or finance.

Responsibilities

  • Lead security architecture and standards across multiple domains.
  • Oversee the engineering and delivery of security solutions.
  • Develop AI-driven security and automation strategies.

Skills

Information security
Security architecture
AI implementation
Cloud security
Programming (Python, SQL, etc.)
Compliance and regulatory knowledge

Education

Bachelor's Degree in Computer Science or related field
Master's Degree preferred

Tools

SIEM
XDR
SOAR platforms

Job description

Position Summary

Serve as the senior technical execution and delivery leader within our global Information Security organization. Responsible for the full lifecycle of security solution design, build, and operation across a complex, regulated multinational environment encompassing both U.S. and European operations. Direct management authority over Security Architects and Solutions Engineers and serve as the primary decision‑maker for security architecture standards, platform selection, tooling strategy, and engineering execution. Work in close partnership with the CISO, IT Architecture, and Risk functions to translate enterprise security strategy into implementable, technically defensible controls.

Key Responsibilities
  • Security Architecture Leadership – Set standards across cloud, identity, endpoint, application, data, and network domains; lead the team in creating reference architectures, patterns, and guardrails; govern architecture review and exception management.
  • Security Solutions Engineering & Delivery – Direct Solutions Engineers in design, implementation, configuration, and operationalization of security platforms (SIEM/XDR, endpoint, identity, email, cloud, application); own platform lifecycle, evaluation, proof‑of‑concept, deployment, integration, tuning, and continuous improvement.
  • AI‑Driven Security & Automation – Lead design and operationalization of AI‑enabled and automation‑first capabilities such as AI‑assisted alert triage, LLM‑enriched investigation workflows, and ML‑based behavioral detection; drive automation strategy and operational governance.
  • Security Operations Integration – Improve MTTD, MTTR, alert fidelity, and analyst efficiency through detection logic, data pipelines, and automation; align detection engineering with adversary tradecraft (MITRE ATT&CK). Oversee vulnerability intelligence, prioritization, and remediation tracking.
  • Risk, Compliance & Regulatory Alignment – Ensure controls support regulatory and audit requirements (GLBA, NYDFS §500, SOX, GDPR, etc.); provide audit‑defensible evidence and coordinate risk acceptance processes.
  • People Leadership & Talent Development – Manage Security Architects and Solutions Engineers; provide performance feedback, development plans, career growth opportunities; build an engineering‑first culture grounded in automation and continuous improvement.
Authority & Decision Rights
  • Final decision‑making authority on security architecture standards, reference architectures, and design patterns across cloud, identity, endpoint, application, and network domains.
  • Vendor and tooling selection authority for security platforms within budget thresholds and coordination with IT Architecture.
  • Signing authority for security design approvals and risk‑accepted exceptions.
  • Full people‑management authority over Security Architects and Solutions Engineers, including hiring, performance, and development.
  • Escalation authority for high‑risk architecture decisions with direct escalation to the CISO and, where appropriate, IT Architecture leadership.
Qualifications
  • Minimum 12 years progressive experience in information security with significant hands‑on technical depth across architecture and engineering.
  • Minimum 5 years in a senior leadership role managing security architects, engineers, or equivalent technical practitioners.
  • Minimum 5 years operating in complex, regulated enterprise environments (financial services, healthcare, or equivalent).
  • Minimum 2 years direct hands‑on experience implementing AI or ML capabilities within a security operations or engineering context.
  • Working knowledge of LLM‑based enrichment, ML‑based anomaly detection, or AI‑assisted investigation workflows.
  • Understanding of AI‑related security risks (hallucination, bias, data leakage, model governance) and ability to operationalize mitigations.
  • Track record of leading end‑to‑end security platform delivery – from requirements through design, build, and production operations.
  • Experience engaging executive and board‑level stakeholders on technical security risk.
  • Bachelor’s Degree required; Master’s preferred in Computer Science, Information Systems, Engineering, or related technical field.
  • Active certification(s) preferred: CISSP, CISM, CCSP, GIAC (GCED, GCSA, or equivalent), cloud security certification (AWS Security Specialty, AZ‑500, or equivalent).
  • Security Architecture experience – 5+ years, including design of reference architectures and security review governance.
  • Hands‑on cloud security engineering – 3+ years across Azure, AWS, or GCP.
  • Identity and access management architecture – 3+ years, including PAM, MFA, and Zero Trust principles.
  • Application security and SDLC integration – 2+ years (SAST, DAST, SCA, secure code review).
  • Working knowledge of SIEM, XDR, and SOAR platforms – tuning, integration, and detection engineering.
  • Programming and scripting – proficient in one or more languages (Python, PowerShell, KQL, SQL, REST API development); ability to build detection logic programmatically.
EEO Statement

All qualified applicants will receive consideration for employment regardless of age, race, color, sex, gender, religion, national origin, physical or mental disability, citizenship, or any other class recognized by state or local law or any characteristic protected under applicable federal, state, or local law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AVP - Information Security
AVP - Information Security

PRA Group (Nasdaq: PRAA) • Virginia (MN)

Hybrid
USD 150,000 - 200,000
Senior Security AI Engineer
Senior Security AI Engineer

Imperial PFS • Kansas City (MO)

On-site
USD 130,000 - 160,000
Senior Security AI Engineer
Senior Security AI Engineer

Imperial Funding Corporation • Kansas City (MO)

On-site
USD 130,000 - 190,000
Medical, prescription, dental benefits
Wellness program and EAP
401(k) with company match
+1
Principal Engineer – Secure AI
Principal Engineer – Secure AI

Jobtailor • Brooklyn Park (MN)

On-site
USD 150,000 - 230,000
AVP – Product Security
AVP – Product Security

Jobtailor • Dallas (TX)

On-site
USD 180,000 - 260,000
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026

JPMorgan Chase & Co. • McLean (VA)

On-site
USD 120,000 - 160,000
Security Architect
Security Architect

Overture Partners • Boston (MA)

On-site
USD 180,000 - 230,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
AVP, Engineering Security Operations Manager
AVP, Engineering Security Operations Manager

Jobtailor • Arizona

On-site
USD 150,000 - 230,000
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026

JPMorgan Chase & Co. • Jersey City (NJ)

On-site
USD 140,000 - 190,000