> Markdown version of [/jobs/ext/1453126-senior-director-information-security](https://www.wearedevelopers.com/jobs/ext/1453126-senior-director-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Director, Information Security - **Company:** Landis+Gyr - **Location:** Alpharetta, GA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Public Key Infrastructure, Systems Development Life Cycle, Red Team (Cyber Security), Information Technology Security Auditing, Software Security, Mttr, Operational Systems, Vulnerability Analysis - **Published:** July 26, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=3c208c36ea6debb0 ## About the Role Senior security leadership experience (typically 8+ years in security, with significant time in a leadership role) spanning enterprise IT and at least one of OT / product / SaaS security. Demonstrated ability to lead in a matrixed environment, exercising influence over teams not under direct reporting lines. Strong command of security governance, risk, and compliance, including external audit management across cloud, manufacturing, and SaaS contexts. Hands-on understanding of SOC operations, incident response, threat management, secure SDLC, PKI, and identity. Proven executive communication skills, including Board-level engagement. Relevant certifications (e.g., CISSP, CISM, or equivalent) preferred. Key Performance Indicators (illustrative) Reduction in mean time to detect / respond (MTTD / MTTR) across IT and OT. Successful completion of external security audits (cloud, manufacturing, SaaS). Consistency of security standards adoption across all landing organizations. Customer incident handling and SaaS security commitments met within regulatory requirements. ## Description The Senior Director of Information Security is the leader of the enterprise security program and the single point of accountability for the company's security posture across IT, Operational Technology (OT), product, and customer-facing domains. This role acts as the primary liaison between the security organization and senior leadership, ensuring that security strategy is connected to business objectives and that cross-functional security teams operate in a coordinated, consistent manner. While several security functions are organizationally distributed across the Product, Software & Services (OT), and CTO organizations, this role holds end-to-end functional ownership of the security program and ensures these streams remain aligned to a single security strategy, risk appetite, and set of standards - with a global focus spanning IT and OT, manufacturing, cloud, and SaaS environments. Organizational Context The Senior Director of Information Security reports to the CIO with a direct line of communication to the Audit & Risk Committee on security and risk topics. The role operates as a matrixed leadership position: direct ownership of the security functions landing in the IT Organization, and functional (dotted-line) authority over security functions landing in the Product, Software & Services (OT), and CTO organizations., Security Strategy, Governance & Executive Liaison Own and continuously evolve the enterprise security strategy, roadmap, and operating model. Serve as the connection point between executive leadership / the Board Audit and Risk Committee and the operational aspects of security, translating risk into business terms. Establish and maintain enterprise-wide security policies, standards, and a common risk framework applied consistently across all streams. Ensure cross-functional security teams are aligned, avoiding duplication and closing coverage gaps across IT and OT. IT Security - Directly Owned Security Operations: own the SOC, incident response, red team, and threat management, ensuring consistent incident management and response across IT and OT. Information Security: own security compliance and security audit management, including external audits across cloud, manufacturing, and SaaS environments. Customer-facing operational security (IT-landed): own customer security incident management and SaaS environment security as global functions, ensuring proper processes and adherence to legal and regulatory requirements. Functional Alignment Across Other Organizations Sets standards, defines requirements, and governs execution for security functions that land outside IT, while respecting each organization's operating model: Product Security (Product Org): secure SDLC / P-Gate, pen testing, and security scanning. OT / Software & Services Security: PKI and the customer-facing identity provider (IDP). Customer-facing security (CTO / Product Org): security pre-sales and post-sales, and customer contract review. Cross-Stream Operating Model Maintain a single, coherent security operating model and define the interfaces, RACI, and escalation paths between IT, Product, OT, and customer-facing functions. Drive consistent standards, metrics, reporting, and maturity assessment across all streams, and champion a security culture across the organization. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [What Developers Get Wrong About Application Quality](https://www.wearedevelopers.com/videos/233-what-developers-get-wrong-about-application-quality) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)