Charlotte - Director, Information Security

Winston Taylor

Charlotte (NC)

Hybrid

USD 240,000 - 280,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Winston Taylor seeks a Director of Information Security to lead the security engineering & operations team, shaping the firm’s cyber program. The role demands strategic planning and hands-on execution, reporting to the CIO and partnering with IT, security compliance, and stakeholders to prevent threats and advance security architecture.

The ideal candidate combines deep security expertise with leadership, communication, and ability to drive security across a global professional services

Qualifications

  • Bachelor's degree in information technology, information security, or related field required.
  • 8+ years of progressive experience in cybersecurity, with significant experience in security operations and engineering required.
  • 5+ years of experience in a security leadership role required.

Responsibilities

  • Develops and implements a comprehensive security strategy in alignment with the firm's business objectives, goals, and requirements.
  • Establishes and maintains relationships across internal departments and practice areas to foster a security-aware culture.
  • Manages a dedicated team; fosters a collaborative and high-performance culture of delivering outcomes.
  • Evaluates, designs, and implements security solutions and controls to protect the firm's infrastructure, systems, devices, and data.
  • Collaborates with cross-functional Information Technology teams to assess risks and partners to develop requirements and foster implementation of security controls.
  • Oversees day-to-day cyber security operations, monitoring, detection engineering, and manages the response to security alerts, escalations, and incidents.
  • Leads and support security incident response protocols, including investigations, containment, and resolution of security events and incidents.
  • Develops and maintains security incident response plans, including coordination with internal stakeholders and external partners.
  • Manage relationships with third-party vendors, managed security providers, and security technology partners.
  • Develop and track key performance indicators (KPIs) and metrics for detection, response, and security engineering effectiveness.
  • Identifies and evaluates emerging threats and vulnerabilities and coordinates with stakeholders and system owners to implement the appropriate mitigations.
  • Ensure continuous improvement through purple teaming, simulation exercises, and lessons learned from incidents.

Skills

Security operations
Security engineering
Leadership
Executive communication
Cloud security
Threat detection
Risk assessment

Education

Bachelor's degree in information technology or related field

Tools

SIEM
EDR/NGAV
SOAR
Firewalls
IDS/IPS
DLP
Cloud security platforms

Job description

About Us

At Winston Taylor, we set the standard, together.

Winston Taylor is a transatlantic law firm built for the businesses, people, and markets driving capital and innovation. Here, you're in the room. In the action. Sleeves rolled up. You'll work with leading clients. Disruptors. Fast-growth companies. And help them to stay one step ahead of the moment and make critical decisions that shape their future. We're present in the U.S., U.K., Europe, Latin America, and the Middle East, combining the scale and speed that clients demand. You'll be trusted with real responsibility from the outset and build experience through hands-on work. We take your progression personally. We provide the platform. You shape the work around your goals and aspirations. Step into the moments that matter. Join Winston Taylor.

About Us

At Winston Taylor, we set the standard, together.

Winston Taylor is a transatlantic law firm built for the businesses, people, and markets driving capital and innovation. Here, you're in the room. In the action. Sleeves rolled up. You'll work with leading clients. Disruptors. Fast-growth companies. And help them to stay one step ahead of the moment and make critical decisions that shape their future. We're present in the U.S., U.K., Europe, Latin America, and the Middle East, combining the scale and speed that clients demand. You'll be trusted with real responsibility from the outset and build experience through hands-on work. We take your progression personally. We provide the platform. You shape the work around your goals and aspirations. Step into the moments that matter. Join Winston Taylor.

Position Summary

The Director of Information Security is a key leadership role within the firm’s Security Engineering & Operations team that is responsible for developing, overseeing, and maintaining Winston Taylor's cyber security program. This is a critical role that will be primarily responsible for all aspects of security engineering, security operations, and incident response. The ideal candidate is a technologist at heart, has a deep security background, and is comfortable flexing between strategic thinking and tactical execution. The Director will report to the Chief Information Security Officer and will closely collaborate with Information Technology, Security Compliance, and business stakeholders to ensure proactive defense, rapid response to threats, and continuous advancement of security architecture and automation.

Position Responsibilities
  • Develops and implements a comprehensive security strategy in alignment with the firm's business objectives, goals, and requirements.
  • Establishes and maintains relationships across internal departments and practice areas to foster a security-aware culture.
  • Manages a dedicated team; fosters a collaborative and high-performance culture of delivering outcomes.
  • Evaluates, designs, and implements security solutions and controls to protect the firm's infrastructure, systems, devices, and data.
  • Collaborates with cross-functional Information Technology teams to assess risks and partners to develop requirements and foster implementation of security controls.
  • Oversees day-to-day cyber security operations, monitoring, detection engineering, and manages the response to security alerts, escalations, and incidents.
  • Leads and support security incident response protocols, including investigations, containment, and resolution of security events and incidents.
  • Develops and maintains security incident response plans, including coordination with internal stakeholders and external partners.
  • Manage relationships with third-party vendors, managed security providers, and security technology partners.
  • Develop and track key performance indicators (KPIs) and metrics for detection, response, and security engineering effectiveness.
  • Identifies and evaluates emerging threats and vulnerabilities and coordinates with stakeholders and system owners to implement the appropriate mitigations.
  • Ensure continuous improvement through purple teaming, simulation exercises, and lessons learned from incidents.
Experience, Skills, And Qualifications
  • Bachelor’s degree in information technology, information security, or related field required.
  • 8+ years of progressive experience in cybersecurity, with significant experience in security operations and engineering required.
  • 5+ years of experience in a security leadership role required.
  • Must live within a commutable distance to a firm office with ability to come into the office 3-4 days per week.
  • Deep expertise in designing and deploying leading security technologies such as SIEM, EDR/NGAV, SOAR, Firewalls, IDS/IPS, DLP, and cloud security platforms.
  • Strong understanding of modern threat landscape, adversary tactics, and detection engineering methodologies.
  • Familiarity with cloud security principles and securing hybrid-cloud architectures (e.g., Azure, AWS, GCP).
  • Familiarity with generative AI security risks and control models (e.g., OpenAI, Anthropic, Harvey AI).
  • Proven leadership abilities, with a track record of building and leading high-performing teams.
  • Strong leadership, communication, and executive presentation skills.
  • Experience working in a global professional services or law firm environment is highly desirable.
  • Relevant certifications (e.g., CISSP, CISM, GIAC) are desirable.
Benefits

Winston offers comprehensive benefits that provide a full spectrum of coverage and support for our full-time employees and their families. Additional information about benefits and rewards can be found here .

Salary

The target annual salary range for this role is currently $240,000 - $280,000 based on a regular, full-time schedule. The amount of compensation offered will be determined by several factors, including but not limited to experience, qualifications, market data and internal equity. Total compensation includes a comprehensive healthcare benefits package, yearly retirement contribution, and may include an annual discretionary merit bonus.

We are an equal opportunity employer and welcome applicants from all backgrounds and experien ces.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Chicago - Director, Information Security
Chicago - Director, Information Security

Winston Taylor • Chicago (IL)

On-site
USD 240,000 - 280,000
Full benefits package
Houston - Director, Information Security
Houston - Director, Information Security

Winston Taylor • Houston (TX)

On-site
USD 240,000 - 280,000
Director of Information Security & Incident Response
Director of Information Security & Incident Response

Winston Taylor • Houston (TX)

On-site
USD 240,000 - 280,000
Senior Director, Information Security & Incident Response
Senior Director, Information Security & Incident Response

Winston Taylor • Chicago (IL)

On-site
USD 240,000 - 280,000
Full benefits package
InfoSec Director: Strategy, Ops & Incident Response
InfoSec Director: Strategy, Ops & Incident Response

Winston Taylor • Charlotte (NC)

Hybrid
USD 240,000 - 280,000
Charlotte - Business Development Manager, Industries & Markets
Charlotte - Business Development Manager, Industries & Markets

Winston & Strawn LLP • Charlotte (NC)

On-site
USD 130,000 - 185,000
Benefits
Director, Information Security
Director, Information Security

United States Digital Space LLC • Boston (MA)

On-site
USD 190,000 - 220,000
Information Security Lead
Information Security Lead

The TCW Group, Inc. • Los Angeles (CA)

On-site
USD 225,000 - 270,000
Discretionary bonus
Comprehensive benefits package
Chicago - Business Development Manager, Industries & Markets
Chicago - Business Development Manager, Industries & Markets

Winston Taylor • Chicago (IL)

On-site
USD 128,000 - 167,000
Charlotte - Business Development Manager, Industries & Markets
Charlotte - Business Development Manager, Industries & Markets

Winston Taylor • Charlotte (NC)

On-site
USD 130,000 - 185,000
Comprehensive healthcare benefits
Yearly retirement contribution
Annual discretionary merit bonus