Director of Cybersecurity

WME

Beverly Hills (CA)

On-site

USD 184,000 - 245,000

Full time

42 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

WME is seeking a Director of Cybersecurity in Beverly Hills to lead the security program, set strategy, and own the risk posture across a global footprint. You will build and lead the internal security team, manage vendors and SLAs, and direct incident response and cyber resilience.

You will report to the VP IT Infrastructure & Cybersecurity, translating technical risk into business terms for boards and executives.

Qualifications

  • 12+ years in cybersecurity with 5+ years leading security teams
  • Experience building internal security function and insourcing from MSSP
  • Executive- and board-level cyber-risk reporting experience
  • Global risk management and multi-jurisdiction regulatory literacy (SOX ITGC, GDPR, CCPA/CPRA, PIPL)
  • Proven vendor and contract management and SLA enforcement
  • Architecture fluency across identity, cloud (Azure), data protection, and SASE

Responsibilities

  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint anchored to NIST CSF 2.0
  • Deliver executive- and board-level cyber-risk reporting
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable
  • Build and lead the internal security team and insource functions from a managed provider
  • Direct incident response and cyber resilience, including business continuity and disaster recovery
  • Establish cybersecurity governance, policy, and security-awareness programs
  • Own the cybersecurity budget and headcount plan

Skills

Leadership experience
Executive communication
Vendor management
Incident response leadership
Budget ownership
Security architecture fluency

Education

Bachelor's degree or equivalent
CISSP/CISM certification

Job description

Position Summary

The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.

Key Responsibilities
  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
  • Deliver executive- and board-level cyber-risk reporting.
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
  • Build and lead the internal security team and bring core security functions in-house from managed providers.
  • Direct incident response and cyber resilience, including business continuity and disaster recovery.
  • Establish cybersecurity governance, policy, and security-awareness programs.
  • Own the cybersecurity budget and headcount plan.
Functions Owned

Security Leadership & Strategy

  • Governance, Policy & Awareness
  • Incident Response & Cyber Resilience (supports GRC, Risk & Compliance and AI Governance & Emerging Tech)
Required Qualifications
  • 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
  • Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) — governance, policy, control framework, and a multi-year maturity roadmap.
  • Track record building and leading an internal security function — hiring, developing, and retaining architects, engineers, and analysts — including insourcing functions from a managed provider (MSSP).
  • Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
  • Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint — SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
  • Proven vendor and contract management — negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
  • Incident-response leadership — has directed the organization’s response to a material security incident and owns cyber-resilience / BCP-DR direction.
  • Security-budget ownership — has built and defended a security operating budget and headcount business case.
  • Working architecture fluency across identity, cloud (Azure), data protection, and SASE — enough to direct architects and challenge technical designs.
  • Bachelor’s degree in a relevant field or equivalent experience; CISSP and/or CISM required.
Preferred Qualifications
  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
  • Media, entertainment, talent-representation, or high-net-worth-individual environment — elevated BEC/impersonation and privacy exposure.
  • Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
  • Experience insourcing security functions from a managed provider on a phased plan.
  • Advanced credentials — CRISC, CCISO, or an MBA / MS in cybersecurity.

Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum

$183,750 annually (minimum will not fall below the applicable state/local minimum salary thresholds)

Hiring Rate Maximum

$245,000 annually

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of Cybersecurity
Director of Cybersecurity

WME Group • Beverly Hills (CA)

On-site
USD 184,000 - 245,000
Health care
Retirement plan
Paid time off
Director of Cybersecurity
Director of Cybersecurity

WME - William Morris Endeavour • Beverly Hills (CA)

On-site
USD 184,000 - 245,000
Cybersecurity Director
Cybersecurity Director

10xTalents • Newark (NJ)

On-site
USD 140,000 - 180,000
Director of Cybersecurity
Director of Cybersecurity

Kinect • Los Angeles (CA), California (MO)

On-site
USD 180,000 - 270,000
Cyber Security Manager
Cyber Security Manager

North LA County Regional Center (NLACRC) • California (MO)

On-site
USD 133,000 - 168,000
Cybersecurity Director
Cybersecurity Director

CGS (Computer Generated Solutions) • New York (NY)

On-site
USD 150,000 - 180,000
Competitive compensation
Global benefits package
Flexible workplace culture
Lead Cyber Defense Strategy
Lead Cyber Defense Strategy

The Security Executive Council • Bethpage (NY), Northern (KY)

Hybrid
USD 134,000 - 220,000
Sr. Director IT Cyber Security
Sr. Director IT Cyber Security

Daikin Comfort • Waller (TX)

On-site
USD 150,000 - 200,000
Director of Cyber Security
Director of Cyber Security

UT Medical • Knoxville (TN)

On-site
USD 180,000 - 280,000
Director of Cyber Security
Director of Cyber Security

Interactive Resources - iR • United States

On-site
USD 180,000 - 215,000