Director of IT, Information Security & Data Privacy

Information Consulting Services
Exton, PA, United States
27 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Collaborative Software Cyber Security Identity and Access Management IT Management Intrusion Detection and Prevention Software Vulnerability Management
+9 more
Software Licensing Enterprise Software Applications Okta Software Security Microsoft InTune Containerization Information Technology Casper Suite Gsuite

Job description

Our client is seeking an experienced Director of IT, Information Security & Data Privacy to lead and scale the organization’s internal technology, cybersecurity, and data privacy functions. This is a high-impact leadership role responsible for driving IT strategy, strengthening security operations, and ensuring compliance across a rapidly growing SaaS environment.

The ideal candidate combines strong technical expertise with proven leadership experience and is equally comfortable developing long-term strategy while remaining hands-on with execution. This individual will play a critical role in building scalable systems, managing risk, and supporting continued business growth., IT Leadership & Operations

  • Develop and execute the company’s IT strategy, roadmap, and operational initiatives.
  • Lead and mentor a high-performing IT and Information Security team.
  • Oversee IT infrastructure, endpoint management, collaboration tools, and enterprise applications.
  • Manage help desk operations and ensure an exceptional end-user support experience.
  • Drive automation, process improvement, and operational scalability.
  • Manage IT vendors, software licensing, hardware procurement, and departmental budgets.
  • Maintain business continuity and disaster recovery plans while ensuring operational resilience., * Develop and continuously enhance the organization’s cybersecurity strategy and security posture.
  • Lead identity and access management, endpoint security, vulnerability management, threat detection, incident response, and security monitoring.
  • Partner with engineering teams to strengthen cloud and application security.
  • Establish and maintain security policies, standards, and controls aligned with industry best practices.
  • Lead company-wide security awareness and training initiatives.
  • Manage third-party security assessments, customer security reviews, and vendor risk programs.

Data Privacy & Compliance

  • Lead the organization’s data privacy and governance initiatives.
  • Ensure compliance with security and privacy frameworks including SOC 2, ISO 27001, GDPR, CCPA , and other applicable standards.
  • Partner cross-functionally with Legal, HR, Engineering, and business leaders to implement privacy and compliance programs.
  • Support enterprise customer security assessments and due diligence activities., * Serve as a trusted advisor to executive leadership on IT, cybersecurity, privacy, and risk management.
  • Evaluate emerging technologies and evolving security threats to support business growth.
  • Build scalable processes, governance, and operational controls for a high-growth SaaS organization.
  • Develop KPIs, metrics, and reporting to measure IT and security performance.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field (or equivalent experience).
  • 10+ years of progressive IT and Information Security leadership experience.
  • 5+ years in a Director or senior leadership role.
  • Experience leading IT and Security organizations within a high-growth SaaS or cloud-native environment.
  • Strong technical expertise across cloud infrastructure, networking, identity management, endpoint management, and security operations.
  • Proven success building and leading high-performing technical teams.
  • Deep understanding of cybersecurity frameworks, risk management, and security best practices.
  • Experience leading and maintaining SOC 2, ISO 27001 , and related compliance programs.
  • Experience implementing modern cloud security technologies and processes.
  • Excellent communication, organizational, project management, and cross-functional leadership skills., * Experience supporting remote and hybrid work environments.
  • Hands-on experience with technologies such as:
  • Microsoft 365
  • Google Workspace
  • Okta
  • JAMF
  • Microsoft Intune
  • AWS and/or Azure
  • Cloud security platforms
  • Industry certifications such as CISSP, CISM , or similar.
  • Experience supporting mergers and acquisitions, organizational scaling, or rapid company growth., * Strategic leader who remains hands-on when needed.
  • Strong communicator who can effectively influence both technical and business stakeholders.
  • Calm, decisive leader with excellent incident management capabilities.
  • Collaborative, pragmatic, and solutions-oriented mindset.
  • Passion for building secure, scalable technology environments that enable business success.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · WWC 2023

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

Videos

See all

Related articles

See all