Chief Information Security Officer – CISO

🔥 1 minute ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Mission Critical Group

Mission Critical Group

1001 - 5000 employees

⚡ Energy

Energy

Mission Critical Group (MCG) is a U. S. -based provider of integrated power infrastructure and services for mission-critical environments. MCG designs, manufactures, delivers, and services end-to-end electrical systems, configured low- and medium-voltage electrical equipment, factory-built modular power platforms (including modular data centers, microgrids, MCPU units, and generator enclosures), and full lifecycle support (engineering, integration, commissioning, monitoring, maintenance, aftermarket and connected services). The company emphasizes rapid deployment and “time-to-power” for demanding customers in data centers, utilities, oil & gas, healthcare, industrial manufacturing, pharmaceuticals, and semiconductor industries, and operates a large U. S. manufacturing footprint (1. 7M+ sq ft), 1,800+ employees, and multiple manufacturing, distribution, and service locations.

📋 Description

• Develop and execute the enterprise cybersecurity strategy aligned with business objectives. • Present cybersecurity risks, metrics, investment strategies, and emerging threats to executive leadership. • Build a security-first culture throughout the organization. • Develop long-term cybersecurity roadmaps supporting mergers, acquisitions, and business growth. • Lead the enterprise security program including: Information Security Governance, Cyber Risk Management, Security Policies and Standards, Enterprise Security Architecture, Third-Party Risk Management, Data Governance, AI Governance, Security Awareness Program, and Enterprise Vulnerability Management. • Develop security scorecards and executive dashboards to measure organizational risk. • Lead security initiatives protecting Industrial Control Systems (ICS), SCADA Environments, PLC Networks, Manufacturing Execution Systems (MES), Robotics, IoT Devices, Plant Networks, and Building Automation Systems. • Provide oversight for Microsoft 365, Azure Active Directory / Entra ID, Identity Governance, Privileged Access Management (PAM), Endpoint Detection & Response (EDR), SIEM / SOAR, Email Security, Secure Cloud Architecture, Data Loss Prevention (DLP), Network Security, VPN, Firewalls, and Secure Remote Access. • Ensure compliance with NIST Cybersecurity Framework (CSF), NIST SP 800-53, NIST SP 800-171, CMMC Level 2 (if applicable), ISO 27001, SOC 2 Type II, CIS Controls, ITAR, DFARS, GDPR, CCPA, PCI-DSS (where applicable), HIPAA (where applicable). • Lead internal and external security audits. • Establish enterprise processes for Cyber Risk Assessments, Business Impact Analysis, Risk Register Management, Vendor Security Reviews, Penetration Testing, Security Architecture Reviews, and Application Security. • Oversee Security Operations Center (SOC), Incident Response, Threat Hunting, Threat Intelligence, Digital Forensics, Vulnerability Management, Patch Governance, Security Monitoring, Identity Monitoring, and Endpoint Protection. • Develop and test the Cyber Incident Response Plan. • Lead enterprise resiliency programs including Disaster Recovery, Business Continuity, Cyber Recovery, Ransomware Recovery, Crisis Management, Tabletop Exercises, and Executive Incident Simulations. • Develop enterprise data protection strategies covering Intellectual Property, Engineering Designs, CAD Files, ERP Data, Manufacturing Data, Customer Information, Financial Information, and Supplier Information. • Implement Data Classification, Encryption, Rights Management, Data Loss Prevention, Secure Collaboration, and AI Governance. • Provide executive oversight for AI Governance Program, Secure AI Adoption, LLM Risk Management, AI Vendor Assessments, Responsible AI Policies, AI Data Protection, AI Security Controls, Shadow AI Prevention, and AI Risk Assessments. • Develop a mature vendor security program including Security Assessments, Contract Security Requirements, Continuous Monitoring, Supply Chain Risk Management, and Software Risk Reviews.

🎯 Requirements

• Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related field. • 15+ years of progressive IT and cybersecurity leadership experience. • 8+ years leading enterprise cybersecurity organizations. • Experience in securing manufacturing environments. • Experience securing Operational Technology (OT). • Experience presenting to executive leadership and Boards. • Experience leading enterprise incident response. • Experience managing cybersecurity budgets exceeding $5M. • Strong knowledge of Microsoft enterprise security technologies. • Preferred certifications include: CISSP, CISM, CRISC, CGEIT, CCSP, GIAC (GICSP, GRID, GCIA, GREM), Certified Information Systems Auditor (CISA), Microsoft Cybersecurity Architect Expert (SC-100), Azure Security Engineer (AZ-500), Certified Ethical Hacker (CEH).

🏖️ Benefits

• Health insurance • Professional development opportunities • Flexible work arrangements

Apply Now

Similar Jobs

🔥 2 minutes ago

Catch Co.

51 - 200

🛍️ eCommerce

🛒 Retail

⚽ Sports

Head of Technology at CatchCo leading the technology strategy and execution. Responsible for advancing technology through AI solutions and managing e-commerce systems.

🕒 3 days ago

Nagarro

10,000+ employees

💼 Consulting

📣 Marketing

🏥 Healthcare

Distinguished Engineer - CTO shaping BFSI transformation at a global scale in a Digital Product Engineering company. Seeking deep BFSI experience and strategic thinking.

🕒 3 days ago

BTC Inc.

11 - 50

💳 Fintech

📱 Media

₿ Crypto

Chief Technology Officer responsible for architecting and building the data platform at BTC Inc. Overseeing engineering standards and leading a team in cryptocurrency-focused technology environment.

🕒 5 days ago

Democratic National Committee

201 - 500

🏛️ Government

Deputy Chief Technology Officer for Democratic National Committee leading technology initiatives and managing cross-functional projects. Fostering a culture of excellence while operationalizing internal processes.

🕒 5 days ago

Welocalize

1001 - 5000

💼 Consulting

🏥 Healthcare

⚖️ Legal

Head of Technology and Product overseeing product development and engineering for WeloData. Shaping technology strategy and leading cross-domain initiatives in AI-driven services.