Information Security Lead

The TCW Group, Inc.

Los Angeles (CA)

On-site

USD 225,000 - 270,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Discretionary bonus
Comprehensive benefits package

Job summary

The TCW Group, Inc. is seeking an Information Security Lead to drive security strategy and operational execution across cloud, on‑prem, and hybrid environments. You will lead the security team, coordinate cross‑functional initiatives, and act as Incident Commander during security events.

Ideal candidates bring deep security expertise, executive presence, and a collaborative, results‑driven approach to mature security capabilities, governance, and metrics while maintaining accountability.

Qualifications

  • Executive leadership of information security programs for financial services
  • Experience articulating security strategy to executives and stakeholders
  • Proven ability to implement secure architectures across cloud, on‑premises, and hybrid environments
  • Strong incident command and post‑incident governance experience

Responsibilities

  • Lead the security program and drive BAU operations across cloud, on‑prem, and hybrid environments
  • Develop KPIs and risk updates for leadership and governance artifacts
  • Oversee threat detection, vulnerability management, and incident response
  • Partner with engineering, legal, compliance, and business teams to ensure secure deployment and operations
  • Evolve security architecture including Zero Trust and AI security practices

Skills

Leadership
Executive presence
Cross-functional leadership
Program management
Strategic thinking
Operational execution

Education

CISSP
CCSP
CISM
AZ-500
SC-200

Tools

Terraform
CloudFormation
CI/CD tooling

Job description

Position Summary

Overview


Information Security Lead is the senior operational security leader within Engineering Solutions, reporting to the CISO, Head of Security Driven Infrastructure. The role is responsible for driving security strategy, frameworks, and tooling into sustained, repeatable BAU operations across cloud, on-premises, and hybrid environments. The Information Security Lead leads the security team, drives cross-functional execution, and serves as Incident Commander during security events. This is a hands‑on leadership role requiring deep practitioner expertise, strong executive presence, and the ability to maintain a collaborative culture while driving accountability and follow-through.


Purpose


Information Security Lead ensures TCW’s security program translates into measurable operational outcomes. This role is responsible for maturing security capabilities, improving process discipline, and driving strategic initiatives through strong execution, project and program management, documentation, automation, and meaningful metrics. The ideal candidate combines technical depth, leadership presence, and a collaborative, no-ego style with the discipline to drive ownership and follow-through.



Essential Duties

Security Program Leadership & Operational Execution



  • Lead the information security team as a player-coach, maintaining a collaborative, high-accountability culture

  • Drive security strategies, frameworks, and tooling into repeatable BAU operations with clear ownership, metrics, and follow-through

  • Lead cross‑functional initiatives with engineering, infrastructure, legal, compliance, and business stakeholders

  • Serve as Incident Commander during security events and lead escalations, post‑incident review, and operational improvement

  • Develop and present KPIs, metrics, risk updates, and program status to leadership


Cloud, Infrastructure & Identity Security



  • Lead and evolve TCW’s cloud and hybrid security architecture across Azure, identity platforms, and enterprise infrastructure

  • Oversee CSPM, CNAPP, hardening baselines, configuration security, and Infrastructure-as-Code security controls

  • Drive Zero Trust and identity security across human and non‑human identities, including Conditional Access, federation, and least privilege

  • Ensure security controls evolve with cloud migration and broader infrastructure modernization


Threat Detection, Incident Response & Vulnerability Management



  • Lead threat detection, incident response, and threat operations, including hands‑on investigation when needed

  • Own the vulnerability management lifecycle, including prioritization, remediation accountability, exceptions, and reporting

  • Build and mature playbooks, SOPs, automation, and continuous monitoring capabilities

  • Improve analyst efficiency and response quality through automation, telemetry, and operational tooling


Application, Data & AI Security



  • Lead and mature application security, secure development, and software supply chain risk management practices

  • Lead data protection, DLP, insider risk, and data governance controls in partnership with legal and compliance

  • Establish and enforce security governance for AI and Generative AI adoption across the firm

  • Govern the secure use of AI‑assisted development and productivity tools through practical controls and clear risk guidance


Governance, Risk & Partnership



  • Manage security risk and support compliance with regulatory expectations applicable to financial services

  • Partner with cross‑functional teams to assess risk, onboard solutions, and ensure security controls are in place before production deployment

  • Maintain strong relationships with vendors, industry peers, and the broader security community

  • Develop documentation, standards, playbooks, and governance artifacts that support durability and institutional knowledge



Required Qualifications


  • Collaborative, no‑ego leadership style with the ability to maintain culture while driving accountability and execution

  • Strong executive presence and communication skills across technical, business, client, regulatory, and legal audiences

  • Strong cross‑functional leadership and project/program management discipline

  • Strategic and data‑driven problem‑solving, with the ability to prioritize effectively in a fast‑paced environment

  • Operational mindset with a bias toward execution, documentation, and measurable outcomes



Professional Skills Qualifications


  • Experience in financial services or asset management

  • Relevant industry certifications such as CISSP, CCSP, CISM, AZ-500, or SC-200

  • Familiarity with Infrastructure-as-Code and DevSecOps practices

  • Experience supporting enterprise cloud migration and secure adoption of AI‑assisted tools



Estimated Compensation:


Base Salary: For CA based position, the base salary range is $225k - $270k. This is an anticipated range only.



Other Compensation & Benefits: In addition to base salary, employees are eligible for a discretionary bonus and a comprehensive benefits package designed to support you and your family, invest in your health and wellbeing, and help build long‑term financial security. Benefits include medical, dental, and vision coverage, retirement benefits, and paid time off. These benefits reflect our commitment to supporting the health, wellbeing, and long‑term financial security of our employees and their families.



#LI-TG1

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Lead
Information Security Lead

TCW • Los Angeles (CA)

Hybrid
USD 225,000 - 270,000
Comprehensive benefits package
Eligibility for annual discretionary bonus
Chicago - Director, Information Security
Chicago - Director, Information Security

Winston Taylor • Chicago (IL)

On-site
USD 240,000 - 280,000
Full benefits package
Houston - Director, Information Security
Houston - Director, Information Security

Winston Taylor • Houston (TX)

On-site
USD 240,000 - 280,000
Associate Director Cloud Security Operations
Associate Director Cloud Security Operations

The Depository Trust & Clearing Corporation (DTCC) • Tampa (FL)

Hybrid
USD 140,000 - 200,000
Competitive compensation
Health insurance
Pension / Retirement benefits
+1
Charlotte - Director, Information Security
Charlotte - Director, Information Security

Winston Taylor • Charlotte (NC)

Hybrid
USD 240,000 - 280,000
Cloud Security & Automation Engineer (IaC Lead)
Cloud Security & Automation Engineer (IaC Lead)

Tata Consultancy Services • Irving (TX)

On-site
USD 110,000 - 135,000
Discretionary incentive
Medical coverage
Parental leave
+12
Associate Director Cloud Security Engineering
Associate Director Cloud Security Engineering

The Depository Trust & Clearing Corporation (DTCC) • Tampa (FL)

Hybrid
USD 140,000 - 180,000
Cloud Engineer
Cloud Engineer

Tata Consultancy Services • New London (NH)

On-site
USD 150,000 - 180,000
Annual incentive
Medical coverage
Parental leave
+6
Director Cybersecurity Technical Delivery Manager
Director Cybersecurity Technical Delivery Manager

The Depository Trust & Clearing Corporation (DTCC) • Tampa (FL)

Hybrid
USD 150,000 - 190,000
Competitive compensation
Comprehensive health and life insurance
Pension/Retirement benefits
+2
Chicago - Director, Information Security
Chicago - Director, Information Security

Winston & Strawn LLP • Chicago (IL)

On-site
USD 240,000 - 280,000
Health insurance
Retirement plan
Bonus potential