Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
TKO Group Holdings, Inc. is seeking a VP of Cybersecurity Operations & Engineering to lead and mature the enterprise cybersecurity program across a global environment.
You will drive strategy, risk management, and measurable security outcomes in collaboration with legal, compliance, privacy, and business units. You will oversee security operations, incident response, threat intelligence, and security engineering, while partnering with infrastructure and software teams to embed security into
TKO Group Holdings, Inc. (NYSE: TKO) is a premium sports and entertainment company. TKO owns iconic properties including UFC, the world's premier mixed martial arts organization; WWE, the global leader in sports entertainment; and PBR, the world's premier bull riding organization. Together, these properties reach 1 billion households across 210 countries and territories and organize more than 500 live events year-round, attracting more than three million fans. TKO also services and partners with major sports rights holders through IMG, an industry-leading global sports marketing agency; and On Location, a global leader in premium experiential hospitality.
The VP, Cybersecurity Operations & Engineering is responsible for leading and maturing the enterprise cybersecurity Operations and Engineering programs with oversight on Cybersecurity program execution, and risk management, while leading cybersecurity operations and engineering capabilities. This leader partners across Cybersecurity, technology, legal, compliance, privacy, and business units to align and articulate strategy, operationalize policy, strengthen controls, improve resilience, and provide measurable security outcomes across a complex global environment.
The ideal candidate brings a strong blend of executive leadership, program & project management discipline, technical depth, and business partnership. They are equally effective shaping long-range roadmaps, communicating across all levels of an enterprise, driving control maturity, and ensuring day-to-day operational readiness across detection, response, vulnerability management, security engineering, risk management, and threat-informed defense.
Lead the enterprise cybersecurity operations & engineering programs, including documenting strategy, risk governance, organization roadmap development, budgeting, KPI reporting, and preparing executive communications.
Contribute to cybersecurity policies, standards, procedures, and control frameworks aligned to business objectives and risk appetite.
Develop and maintain governance forums, steering committee materials, risk updates, and decision-supporting business cases for senior leadership.
Partner with legal, compliance, privacy, internal audit, and technology stakeholders to strengthen the company's overall security, regulatory, and governance posture.
Drive consistent security practices across corporate, cloud, application, and business environments, ensuring alignment with enterprise architecture and operating models.
Translate threat, control, and assessment findings into practical, risk-informed recommendations and prioritized remediation plans.
Provide executive oversight for security operations, including SOC and/or MSSP performance, alert monitoring, incident triage, escalation management, and operational readiness.
Own and mature incident response planning, operational runbooks, tabletop exercises, and cross-functional response coordination with technology, legal, HR, and compliance teams.
Oversee threat intelligence, threat detection, threat hunting, and vulnerability management capabilities to improve visibility, response speed, and control effectiveness.
Ensure the organization is prepared to protect, detect, respond to, and recover from cybersecurity events affecting critical systems, intellectual property, data, and brand reputation.
Develop and monitor operational metrics and service-level indicators for security operations, incident management, remediation progress, and program effectiveness.
Oversee the design, implementation, enhancement, and lifecycle management of cybersecurity technologies and control capabilities across on-premises, cloud, endpoint, identity, and network domains.
Partner closely with infrastructure, platform, and software engineering teams to embed security into enterprise architecture, system design, and operational workflows.
Support secure development lifecycle practices, software assurance, secure coding, and application security initiatives across internal and customer-facing environments.
Guide the selection and optimization of security tools and services, including SIEM, EDR, IDS/IPS, firewalls, vulnerability management, logging, monitoring, and related protection technologies.
Promote automation, orchestration, and process simplification to improve scalability, consistency, and efficiency across cybersecurity operations and engineering.
Lead cyber risk assessments across infrastructure, applications, vendors, business processes, and emerging technology initiatives.
Support compliance and control maturity efforts related to frameworks and obligations such as NIST, ISO 27001, PCI-DSS, SOC, SOX, GDPR, privacy, and other applicable requirements.
Provide security leadershi