Director of Information Security

DBM Global Inc.

Phoenix (AZ)

On-site

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

DBM Global Inc. is seeking a Director of Information Security to lead and advance the organization’s cybersecurity program, protecting information assets, technology, systems, and operations.

The role spans risk management, security operations, architecture, vulnerability management, incident response, IAM, data protection, third-party risk, and security awareness. The incumbent will drive strategy, establish metrics for leadership visibility, and collaborate with tech teams to implement strong

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
  • CISSP certification required within 12 months of hire.
  • 8+ years of progressive experience in cybersecurity, information security, security engineering, or security operations.
  • 3+ years of cybersecurity leadership experience.
  • Strong knowledge of cybersecurity risk management, security architecture, threat detection, vulnerability management, incident response, identity and access management, cloud security, endpoint security, and data protection.
  • Demonstrated ability to communicate cybersecurity risk and business impact to executive and non-technical stakeholders.
  • Strong leadership, collaboration, analytical, and decision-making skills.

Responsibilities

  • Develop and execute the enterprise cybersecurity strategy, roadmap, policies, standards, and security priorities aligned with business objectives and enterprise risk.
  • Identify, assess, prioritize, and communicate cybersecurity risks across infrastructure, applications, cloud environments, identities, data, and third parties.
  • Oversee security operations, including threat monitoring, detection, vulnerability management, incident response, and continuous improvement of security capabilities
  • Establish and maintain enterprise security architecture and ensure secure-by-design principles are incorporated into infrastructure, cloud, applications, DevSecOps, and technology initiatives
  • Lead cybersecurity incident response and preparedness, including incident playbooks, tabletop exercises, containment, recovery, and post-incident improvement
  • Provide leadership for identity and access security, privileged access, endpoint protection, network and cloud security, and data protection capabilities
  • Develop and maintain cybersecurity awareness and training programs that strengthen employee security behaviors and organizational readiness
  • Establish cybersecurity metrics and reporting that provide the CIO and executive leadership with visibility into security posture, material risks, incidents, vulnerabilities, and risk-reduction initiatives
  • Partner with Infrastructure, DevSecOps, applications, and other technology teams to ensure cybersecurity controls are implemented, operated effectively, and remediated when deficiencies are identified.

Skills

Cybersecurity Leadership
Risk Management
Security Architecture
Security Operations
Incident Response
Vulnerability Management
Identity & Access Security
Data Protection
Executive Communication
Cross-Functional Leadership
Accountability
Business Acumen

Education

Bachelor's degree in Cybersecurity/Info Sec/CS/IT
CISSP certification
8+ years cybersecurity experience
3+ years cybersecurity leadership

Job description

Overview

As the Director of Information Security at DBMG, you are responsible for leading and advancing the organization’s cybersecurity program to protect information assets, technology, systems, infrastructure, and business operations. This role provides strategic and operational leadership across cybersecurity risk management, security operations, architecture, vulnerability management, incident response, identity and access security, data protection, third-party cybersecurity risk, and security awareness.

Responsibilities
  • Develop and execute the enterprise cybersecurity strategy, roadmap, policies, standards, and security priorities aligned with business objectives and enterprise risk.
  • Identify, assess, prioritize, and communicate cybersecurity risks across infrastructure, applications, cloud environments, identities, data, and third parties.
  • Oversee security operations, including threat monitoring, detection, vulnerability management, incident response, and continuous improvement of security capabilities
  • Establish and maintain enterprise security architecture and ensure secure-by-design principles are incorporated into infrastructure, cloud, applications, DevSecOps, and technology initiatives
  • Lead cybersecurity incident response and preparedness, including incident playbooks, tabletop exercises, containment, recovery, and post-incident improvement
  • Provide leadership for identity and access security, privileged access, endpoint protection, network and cloud security, and data protection capabilities
  • Develop and maintain cybersecurity awareness and training programs that strengthen employee security behaviors and organizational readiness
  • Establish cybersecurity metrics and reporting that provide the CIO and executive leadership with visibility into security posture, material risks, incidents, vulnerabilities, and risk-reduction initiatives
  • Partner with Infrastructure, DevSecOps, applications, and other technology teams to ensure cybersecurity controls are implemented, operated effectively, and remediated when deficiencies are identified.

Key Performance Indicators

Success in this role may be measured through:

  • Reduction in material cybersecurity risk exposure
  • Critical and high-risk vulnerability remediation performance
  • Security incident frequency, severity, and response effectiveness
  • Security control and tooling coverage

    Core Competencies

    Cybersecurity Leadership Risk Management Security Architecture Security Operations Incident Response Vulnerability Management Identity & Access Security Executive Communication Business Acumen Cross-Functional Leadership Accountability

    Role Boundary

    • The Director of Information Security owns the technical and operational cybersecurity program, including cybersecurity architecture, security operations, incident response, vulnerability remediation, identity security, security tooling, and related technical controls
    • Independent IT compliance assurance, SOX and regulatory control testing, audit coordination, compliance evidence management, and compliance framework readiness are owned by the IT Compliance Manager and the appropriate Compliance/Internal Audit organization.
    Qualifications
    • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
    • Certified Information Systems Security Professional (CISSP) certification required within 12 months of hire.
    • 8+ years of progressive experience in cybersecurity, information security, security engineering, or security operations.
    • 3+ years of cybersecurity leadership experience.
    • Strong knowledge of cybersecurity risk management, security architecture, threat detection, vulnerability management, incident response, identity and access management, cloud security, endpoint security, and data protection.
    • Demonstrated ability to communicate cybersecurity risk and business impact to executive and non-technical stakeholders.
    • Strong leadership, collaboration, analytical, and decision-making skills.

    Preferred Qualifications

    • Experience working in complex, distributed, multi-business-unit environments.
    • Experience securing Microsoft Azure, Microsoft 365, hybrid infrastructure, and enterprise applications.
    • Additional relevant cybersecurity certifications such as CISM, CCSP, GIAC, or cloud security certifications.

    Additional Duties & Responsibilities

    This job description is not an exclusive or exhaustive list of all responsibilities and functions that an employee in this position may be asked to perform. Duties and responsibilities may be changed, expanded, reduced, or delegated by management to meet the business needs of the company.

    Work Environment This position is generally indoors in a climate controlled office environment. Reasonable accommodations will be made upon request for those who have disabilities that qualify under the American with Disabilities Act.

    DBM Global Inc is an Equal Opportunity Employer

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Director of Cybersecurity Strategy & Operations
Director of Cybersecurity Strategy & Operations

DBM Global Inc. • Phoenix (AZ)

On-site
USD 140,000 - 190,000
Director of Information Security
Director of Information Security

Dbm Global • Phoenix (AZ)

On-site
USD 170,000 - 240,000
Director IT Security
Director IT Security

84 Lumber • Eighty Four (PA)

On-site
USD 90,000 - 150,000
Cybersecurity Director
Cybersecurity Director

10xTalents • Newark (NJ)

On-site
USD 140,000 - 180,000
Director of Cybersecurity
Director of Cybersecurity

Precise Resource • Plain City (OH)

On-site
USD 130,000 - 160,000
Director, Cybersecurity
Director, Cybersecurity

Asset Living • United States

On-site
USD 150,000 - 190,000
Director - Information Security
Director - Information Security

The Projex Group • Camden (NJ)

On-site
USD 150,000 - 180,000
401(k) retirement plan
Hybrid work schedule
Director of Cybersecurity #1031946
Director of Cybersecurity #1031946

Fasttek • Newark (NJ)

On-site
USD 140,000 - 210,000
Director of Information Security
Director of Information Security

Old Republic Commercial Risk • Center Square (PA)

On-site
USD 180,000 - 240,000
Director, Cybersecurity and IT Support
Director, Cybersecurity and IT Support

Beauty Industry Group • Los Angeles (CA)

On-site
USD 180,000 - 240,000
Equal opportunity employer
Global team collaboration