An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Global Manufacturing Organization is seeking a Chief Information Security Officer to lead and evolve enterprise cybersecurity for a global manufacturing footprint. Reporting to the CIO, you will drive strategy, governance, and risk management while aligning security with business goals and digital transformation.
You will oversee IT/OT security, AI security, and cyber resilience, building strong relationships with senior leaders and the Board to ensure security investments deliver measurable
Chief Information Security Officer (CISO)
Global Manufacturing Organization
We have been retained by a large, global manufacturing organization to identify its next Chief Information Security Officer (CISO).
This is an opportunity to lead cybersecurity for a complex global enterprise with a significant manufacturing footprint. The organization has a strong security foundation, an established global team, and mature operational security capabilities. The mandate for the next CISO is not to rebuild a broken security organization. It is to determine what comes next.
Reporting to the CIO and working closely with the Executive Leadership Team and Board, the CISO will develop the forward-looking cybersecurity strategy that supports business growth, global manufacturing operations, digital transformation, and the rapidly changing impact of AI.
The CISO will inherit a global security organization of approximately 25 professionals, including five direct reports, with several security capabilities supported by strategic vendor partners.
During the first 12-18 months, the CISO will be expected to:
IT/OT cybersecurity is one of the most important components of this role.
We are particularly interested in leaders who have operated within process manufacturing environments such as chemicals, specialty materials, energy, oil & gas, refining, pharmaceuticals, industrial gases, food & beverage, or similarly complex operations.
The CISO will establish and evolve the cybersecurity strategy across operational technology, industrial control systems, process control environments, manufacturing networks, plant connectivity, and cyber-physical risk.
This includes:
The successful leader must understand that cybersecurity in a manufacturing environment cannot exist independently of safety, reliability, uptime, productivity, and business operations.
AI represents both a significant business opportunity and a rapidly evolving cybersecurity challenge. The CISO will help define the enterprise security strategy surrounding the organization's adoption of AI, including generative AI, agentic AI, machine learning, copilots, and AI-enabled business workflows. Internally, this leader will build upon an existing secure-by-design approach, establishing appropriate security guardrails around AI systems, data, access, identity, monitoring, third-party usage, and emerging non-human and AI agent identities.
Externally, the CISO will prepare the organization for AI-enabled threats including:
We are looking for someone who can think beyond today's controls and help answer:
What does cybersecurity need to look like three to five years from now as AI changes both the business and the threat landscape?
While IT/OT and AI are strategic priorities, this is a full enterprise CISO role.
The CISO will maintain executive responsibility for the broader cybersecurity program, including:
The CISO will also continue developing the global security organization, ensuring the team has the leadership, capabilities, and skills necessary to execute the future cybersecurity roadmap.
The CISO will own the enterprise approach to preventing, detecting, responding to, and recovering from significant cybersecurity incidents. This includes partnering with IT, Manufacturing, Enterprise Risk, Business Continuity, Disaster Recovery, Legal, Communications, and executive leadership to establish appropriate response plans, escalation procedures, recovery priorities, tabletop exercises, and crisis-management capabilities. The goal is not simply preventing attacks. It is ensuring the business can continue operating and recover quickly when incidents occur.
Technical credibility is important. Business judgment is essential.
The CISO must be comfortable operating with the CIO, Executive Leadership Team, and Board and translating complex cybersecurity issues into business decisions.
The conversation cannot simply be:
"Here is the vulnerability and the technology we need to buy."
Instead, the CISO must be able to articulate:
Significant cybersecurity investments and strategic decisions are made collaboratively across the IT leadership team. The CISO will be expected to bring a strong point of view, challenge assumptions, and advocate for change when there is a compelling business reason to do so. This is not an environment for a security leader whose default answer to risk is "no" or who maintains the status quo simply because it is the status quo.
The ideal candidate will bring:
Professional certifications such as CISSP, CISM, CISA, CRISC, GIAC, or CCSP are preferred but are not the primary measure of fit.