Director of Information Security / CISO

Motion Recruitment Partners LLC.
New York, NY, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Cyber Security Data Infrastructure Data Security Disaster Recovery Fault Tolerance Network Architecture Computer Networking Systems Information Security Management System Vulnerability Analysis

Job description

As the Director of Information Security (CISO), you will report directly to the President to champion and advance the organization’s information security management system (ISMS). In this high-impact role, you will evaluate security policies, drive complex certifications, and lead cross-functional risk management initiatives. You will serve as the core technical expert ensuring the network, physical security, and data infrastructure remain completely resilient against evolving threats., * Evaluate, design, and implement ISMS policies and procedures to eliminate security gaps and enhance the organization’s security profile.

  • Partner with IT and management to harden network infrastructure, access controls, and physical security measures.
  • Manage the compliance calendar, ensuring all monthly, quarterly, and annual security tasks and document reviews are executed.
  • Schedule and lead annual external certification audits (ISO 27001 and HiTrust), including evidence collection and submission.
  • Coordinate responses to customer security assessments, requests for information (RFIs), and third-party compliance audits.
  • Oversee regular penetration testing and vulnerability scanning, translating findings into actionable mitigation tasks.

Requirements

  • Proven experience leading information security frameworks, data security standards, and system resiliency strategies.
  • Deep technical knowledge of network platforms, software, virtualization, and modern data security architecture.
  • Strong expertise with ISO 27001 and HiTrust certification requirements.
  • Demonstrated capability in conducting risk assessments, vulnerability scanning, and business continuity/disaster recovery planning.
  • Commitment to continuous professional development, with a track record of completing advanced security training annually.

Benefits & conditions

The organization offers a competitive executive compensation package, comprehensive benefits, and a collaborative work culture that deeply values technical excellence and professional growth. This hybrid position provides the strategic autonomy to shape enterprise security strategy while working directly alongside supportive executive leadership.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:05 min

Practical Byzantine Fault Tolerance in distributed computing systems

Jonan Scheffler · WWC 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

Videos

See all

Related articles

See all