Search Remote Jobs

Regional Information Security Officer

🔥 12 hours ago

🗽 New York – Remote

infoinfo

đź’µ $136k - $170k / year

⏰ Full Time

đźź  Senior

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

đź‘» Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of ZEISS Group

ZEISS Group

10,000+ employees

🏭 Manufacturing

🏥 Healthcare

🧬 Biotechnology

Manufacturing • Healthcare • Biotechnology

ZEISS Group is a global technology leader specializing in optics and optoelectronics, with a rich history dating back to 1846. Headquartered in Oberkochen, Germany, ZEISS operates in four main segments: Semiconductor Manufacturing Technology, Industrial Quality & Research, Medical Technology, and Consumer Markets. The company generated annual revenue of 10 billion euros and employs around 43,000 people across nearly 50 countries, including a robust network of production sites, sales and service companies, and research & development facilities. ZEISS’s specialties include binoculars, microscopy, eyeglass lenses, biomedical research, and various advanced technologies such as artificial intelligence and machine learning.

đź“‹ Description

• Serve as an independent 2nd Line-of-defense representing Corporate Information Security in the region • Design and drive information security policies, standards, and processes • Review and interpret CSOPs, SSOPs, and other information-security documents and directives • Direct regional security teams in implementing and improving security standards and processes • Communicate and coordinate information security strategy, programs, and services with business stakeholders • Monitor and improve regional security posture and maturity • Advise on least privilege, need-to-know, security-by-design, and security-by-default principles • Ensure M&A projects and post-merger integrations comply with ZEISS security standards • Review security concepts for central business-supporting functions and regional demands • Address regional incident tickets and service requests • Participate in security risk management and aggregation of first-line risks • Support regional incident response and drive closure of gaps and vulnerabilities • Collaborate with CIRT/SOC, CIT, regional IT, local IT, and Business IT during security incidents • Serve as the primary escalation contact for regional information security topics • Participate in CIDA for regional security incidents • Conduct regional investigations, eDiscovery, and digital evidence gathering and analysis • Coordinate litigation holds with HR and Legal • Assess and approve regional information security requirements, with veto rights for critical risks • Evaluate project risks and define security requirements, including for M&A integrations • Guide local security assessments and conduct on-site compliance visits • Support regulatory certifications and compliance, including CMMC, ISO 27001, TISAX, HIPAA, CyberEssentials, and NIS2 • Assess local regulatory requirements and advise on cybersecurity changes • Monitor regional information security status, KPIs, and KRIs • Identify business risks and mitigation strategies • Coordinate physical and facility security topics with Corporate Health & Safety • Support BISO review of information security contract amendments and security questionnaires • Recommend regional security awareness initiatives and support Corporate InfoSec programs

🎯 Requirements

• University degree in information security, information technology, engineering, cyber security, natural sciences, technology or similar • Minimum of 10 years of experience in information security, IT security, or a related field • Proven track record in a leadership role within information security, preferably in a regional or global capacity • Experience in a technology-driven industry, preferably manufacturing, healthcare, or another regulated sector • Knowledge of applicable international and regional regulatory requirements and standards in Cybersecurity and Data Protection • Hands-on experience with cybersecurity frameworks such as NIST and ISO 27001 • Experience with risk management methodologies • Experience managing security projects from inception to completion • Ability to prioritize tasks and manage multiple projects simultaneously • Experience working with cross-functional teams and engaging with senior leadership • CISSP certification would be beneficial

🏖️ Benefits

• Performance bonus or sales commissions • Medical plans • Vision • Dental • 401k Matching • Employee Assistance Programs • Vacation and sick pay • Retirement savings plan • Paid time off

Apply Now

Similar Jobs

🔥 13 hours ago

Capgemini Government Solutions

501 - 1000

đź’Ľ Consulting

🎖️ Defense

🏥 Healthcare

Security Engineer supporting Capgemini’s enterprise cybersecurity operations for aerospace and federal clients. Monitoring threats, responding to incidents, and optimizing security platforms.

🔥 13 hours ago

ActiveFence

201 - 500

đź”’ Cybersecurity

🤖 Artificial Intelligence

GenAI cyber red-team expert testing AI systems against industrial, SCADA, ICS, and CBRNE threats. Strengthening guardrails for Alice's AI safety and security clients.

🔥 13 hours ago

NVIDIA

10,000+ employees

🏥 Healthcare

🏭 Manufacturing

🤖 Artificial Intelligence

NVIDIA Principal Engineer building agentic identity security for internal AI workflows. Architecting secure APIs, tools, and infrastructure across cloud, on-premises, and hybrid environments.

🔥 16 hours ago

Experian

10,000+ employees

đź’Ľ Consulting

📣 Marketing

📦 Logistics

Experian security leader governing cybersecurity metrics, risk, AWS posture, and executive reporting. Coordinating cross-functional security programs, vendors, and business-unit priorities.

🔥 16 hours ago

9th Way Insignia

51 - 200

đź’Ľ Consulting

🏥 Healthcare

📦 Logistics

Senior Cybersecurity Engineer securing government customer systems through Zero Trust engineering. Translating NIST, FISMA, RMF, and FedRAMP requirements into technical controls and authorization evidence.