> Markdown version of [/jobs/ext/1859798-mvp-chief-information-security-officer](https://www.wearedevelopers.com/jobs/ext/1859798-mvp-chief-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # MVP, Chief Information Security Officer - **Company:** Encore Capital Group - **Location:** San Diego, CA, United States - **Experience:** Expert - **Salary:** $254,100.0 - $330,000.0 - **Contract:** Permanent contract - **Skills:** Control Objectives for Information and Related Technology (COBIT), Cyber Security, PCI Data Security Standards, Information Technology - **Published:** July 8, 2026 - **Apply:** https://encore.wd1.myworkdayjobs.com/externalnew/job/CA---San-Diego/VP--Chief-Information-Security-Officer_HR-20540/apply ## About the Role EDUCATION: Bachelor's FIELD OF STUDY: Information Security/Technology or equivalent experience EXPERIENCE: Must have 15+ years of experience in a combination of risk management, information security and senior IT roles, managing and/or directing an IT and/or security operation. At least four must be in an executive leadership role. Experience in planning, organizing, and developing IT security. CERTIFICATION(S): The ideal candidate will be certified or seeking the following professional certifications: CISA, CISM, CISSP, CEH, or additional technical security certifications., * Experience in planning and executing security policies and standards development. * Excellent knowledge of technology environments, including information security and defense solutions. * Considerable knowledge of business theory, business processes, management, budgeting, and business office operations. * In-depth knowledge of applicable laws and regulations as they relate to security. * Ability to champion culture within the IT risk management and compliance teams. * Ability to connect with others on a personal level while remaining sensitive to individual differences to influence others' and inspire their support. * Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences. * Strong presentation skills to executive audiences., EDUCATION: Bachelor's FIELD OF STUDY: IT/InfoSec EXPERIENCE: CISO experience, prior experience in role CERTIFICATION(S): CISSP, CISM, CRISC, * Poise and ability to act calmly and competently in high-pressure, high stress situations. * High degree of initiative and decision making. * High level of personal integrity, as well as the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity. * Has good judgment, a sense of urgency and has demonstrated commitment to high standards of ethics, regulatory compliance, customer service and business integrity. * A critical thinker and analytical person. ## Description The Vice President and Chief Information Security Officer's role is to provide vision and leadership for developing and supporting security initiatives and governance of all subsidiaries and joint ventures of Encore Capital Group. This role is responsible for establishing and maintaining a global enterprise-wide information security management program and systems to ensure that information assets are adequately protected. This position is responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. The Chief Information Security Officer provides input and guidance on the planning and implementation of enterprise IT systems, business operations, and facility defenses to mitigate security breaches and vulnerability issues based on knowledge of both internal and external environments. This individual is also responsible for identifying issues and risks in existing systems, while directing the administration of security policies, activities, and standards. This role is an integrator of people, process, and technology. This role's key stakeholders are the two BU President's, Global and Cabot CIOs, VP Internal Audit, Chief Strategy, Risk and Compliance officer, and the three senior General Counsel's for Encore, MCM and Cabot. This role will present to the Board on a Quarterly basis. They will lead a team of thirty employees across UK, IE, EU, and US and India. Evidence of success in this role will be the successful implementation of an InfoSec Roadmap and Strategy, NIST CSF alignment, and developing and leading a strong InfoSec team across the globe, wherein they have as a leader-built trust both internally, with the board and senior leaders regarding the InfoSec program. This role is influential internally and a strong technical leader of InfoSec frameworks and knowledge., * Build the network and communicate the vision: Lead and communicate strategic security plans to achieve business goals by prioritizing defense initiatives and coordinating the evaluation, deployment, and management of current and future security technologies using a risk-based assessment methodology. Provides clear risk mitigating directives for projects and plans as it relates to IT projects and controls. Provides regular reporting on the status of the information security program to enterprise risk, senior business leaders and the board of Directors for Encore part of strategic enterprise risk program in order to drive assurance. * Work closely with the IT department on corporate technology development to fully secure information, computer, network, and processing systems. Assist the IT organization and broader enterprise with maintaining compliance with such security frameworks as PCI DSS, ISO 27001, and SOX / COBIT. 30% * Establish Governance and Build Knowledge: Own all assurance & information security governance activities related to the integrity and confidentiality of customer, business partner, employee, and business information in compliance with the organization's information security policies. Leverages the Infosec LT and other governance boards and steering committees to ensure compliance. * Lead the organization: Develop, track, and control the security services annual operating and capital budgets for purchasing, staffing, and operations. Communicate security strategies and plans to executive team, staff, partners, customers, and stakeholders. * Promote and oversee strategic security relationships between internal resources and external entities, including government, vendors, and partner organizations. * Operate the function: Report security performance against established security metrics and key risk indicators. This includes managing and containing information security incidents and events to protect corporate IT assets, intellectual property, regulated data, and the company's reputation. * Develop the Frameworks: Recommend and implement changes in security policies and practices and training in accordance with changes in local or federal law. Maintain and oversee enforcement of these policies and practices. * Perform other duties, as assigned. ## Related Videos - [GitOps keeps focus on apps, not on infrastructure](https://www.wearedevelopers.com/videos/182-gitops-keeps-focus-on-apps-not-on-infrastructure) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [It's not easy being green](https://www.wearedevelopers.com/videos/558-it-s-not-easy-being-green) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)