An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Harris Associates L.P. seeks a Director of Cybersecurity Operations & Risk Governance in Chicago to lead the SOC, manage the cybersecurity risk register, and drive regulatory alignment with SEC, GLBA and FINRA.
You will mentor a small team of analysts/engineers, own incident response and vulnerability management programs, and report key metrics to the CISO and board committees, while coordinating with Legal, Compliance and Internal Audit.
At Harris, the true value of what makes us successful is found in our people. It is our unique mix of cultures, experiences, beliefs and backgrounds that sets Harris apart from the rest. We constantly strive to cultivate, nurture and amplify an unparalleled environment, where we value intellectual curiosity and uniqueness of thought. Inclusion is embedded in the very fabric of our culture of collaboration and openness.
We understand that a job description only tells one part of a broader story, and Harris is seeking dynamic candidates who can add to our best-in-class environment. We recognize that qualifications can be gained through both traditional and non-traditional paths, and we are committed to considering candidates who possess the potential to be excellent in this role regardless of prior experiences.
The Cybersecurity team protects Harris Associates’ information assets and technology environment through security operations (detection, response, and vulnerability management) and cybersecurity risk governance (regulatory compliance, enterprise risk, third-party risk, and board reporting), reporting to the Chief Information Security Officer (CISO). The Director, Cybersecurity Operations & Risk Governance serves as the CISO’s principal deputy, running the firm’s Security Operations Center while owning the cybersecurity risk register, control framework mapping (NIST CSF, NIST AI RMF), and the firm’s obligations under the SEC Cybersecurity Rule, Regulation S-P, GLBA, and FINRA. This individual represents cybersecurity risk posture to committees and Internal Audit, acts as the CISO’s proxy when delegated, and directly leads and mentors a small, growing team of security analysts/engineers (currently 1-2 direct reports) - staying hands-on in daily operations while directing incident response, defending risk decisions to a committee, and briefing examiners or institutional clients as needed.
Given Incident Commander responsibilities, this role requires availability to respond to cybersecurity incidents outside of normal business hours, including nights and weekends, with occasional travel to support regulatory exams or client due diligence.
We offer a comprehensive benefits package designed to integrate life and work and to support our employees and their families. Benefits include, but are not limited to; medical, prescription drug, dental and vision insurance, paid time off, profit sharing plan, 401k plan, tuition reimbursement, commuter and holistic wellness benefits along with volunteer programs.
Actual annual base salaries may vary based on factors including but not limited to education, training, experience, and other job-related factors. If hired, base pay will be determined on an individualized basis and is only one part of the total compensation package, which, depending on the position, may also include a discretionary performance bonus and other Harris-sponsored benefit programs.
Expected range for this Chicago-based role
$180,000 - $200,000 USD
Harris Associates L.P. pursues a policy of equal opportunity in all areas of employment including recruitment, hiring, training, compensation, benefits, advancement, and treatment on the job. This means that Harris does not discriminate against employees, or qualified applicants, based on an individual's race, color, religion, creed, sex, age, national origin, physical disability, sexual orientation, trans‑gender status, transsexual status, status as a veteran or disabled veteran, genetic information or for any other reason prohibited by law. Harris reserves the right to review publicly available information about applicants (i.e., via social networking sites), to the extent permissible under applicable law.
We provide reasonable accommodation for individuals with disabilities and disabled veterans in job application procedures. If you have any difficulty using our online system and you need an accommodation due to a disability, you may use the alternative email address below to contact us about your interest in employment at HR@harrisassoc.com or you can call us at 312-646-3600.
The information you send to us is used for employment purposes only. What you send is kept confidential—we will not give your personal information to outside parties without your consent.