Chief Information Security Officer

WITAN INC
United States
6 days ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Systems Data Security Internet Security Information Systems Security Architecture Professional PCI Data Security Standards Google Cloud
+4 more
Software Security Information Technology Cyber Warfare Devsecops

Job description

Our client is a globally established manufacturer operating across multiple international markets, with a workforce of several thousand employees and manufacturing operations spanning North America, Europe, and Asia. The business supports a portfolio of recognised commercial and consumer-focused brands serving a broad global customer base through both physical and digital channels. Following a recent public market listing, the organisation now operates within a highly regulated corporate governance environment, including increased cybersecurity, compliance, and reporting obligations, creating greater visibility and strategic importance for the security function.

This is a high-impact executive appointment for a commercially minded cybersecurity leader ready to own the programme from the top. Reporting directly to the Chief Technology Officer and partnering with the CEO, CFO, Chief Legal Officer, and Audit Committee, the CISO will set strategy, shape risk posture, and lead the organisation through a period of rapid threat evolution, including the rise of AI-enabled offensive capabilities. You will inherit a capable cybersecurity team and a complex, genuinely interesting environment spanning IT, OT/ICS across global manufacturing sites, a large-scale connected-product platform, and the full obligations of a newly public company.

Key Responsibilities

  • Own enterprise cybersecurity strategy and multi-year roadmap in partnership with the CTO

  • Serve as the executive voice on cybersecurity to the CEO, ELT, board, and Audit Committee, translating technical risk into business and financial terms

  • Own all SEC cybersecurity disclosure obligations (10-K Item 1C, Item 1.05 material incident determinations, disclosure controls) and executive ownership of cybersecurity-relevant SOX controls

  • Lead cybersecurity insurance strategy, coverage adequacy, and renewal

  • Lead executive incident communication and material breach response in coordination with Legal and Investor Relations

  • Lead, mentor, and develop the existing cybersecurity organisation, including the Director of Cyber Operations

  • Set cybersecurity strategy across IT, cloud, identity, and end-user computing, aligned with NIST CSF, ISO 27001, and SOC 2

  • Own the OT and ICS security programme across six global manufacturing sites - bridging IT and OT without disrupting operations

  • Provide executive cybersecurity oversight for the connected-product platform (millions of users), including secure-by-design standards, DevSecOps, and PCI-DSS compliance for payment products

  • Own AI cybersecurity strategy: governance for AI tool adoption, deployment of AI-enabled security platforms, and response to AI-enabled offensive threats

  • Own the third-party cybersecurity risk programme and executive relationships with strategic vendors, MSSPs, audit firms, and outside cyber counsel

Requirements

  • 12+ years of progressive cybersecurity experience, with 5+ years in a senior leadership role (CISO, Deputy CISO, VP of Security, or equivalent)

  • Experience as the named cybersecurity executive at a public company, or senior exposure to SEC cybersecurity disclosure, audit-committee engagement, and SOX cybersecurity controls

  • Track record of executive and board communication, material incident response, and cybersecurity insurance strategy ownership

  • Strong working knowledge of cloud security (AWS, Azure, GCP), application security, identity, and modern detection and response

  • Bachelor’s degree in IT, Information Security, Computer Science, Engineering, or related field

  • Senior-level certification: CISSP, CISM, or CISA

Nice-to-Haves

  • Global manufacturing or industrial experience, including OT/ICS security

  • Experience securing IoT platforms or connected products at scale

  • Familiarity with emerging AI security considerations and offensive AI threat vectors

  • Advanced degree in a relevant discipline

  • Cloud and/or OT/ICS security certifications

What’s in it for you?

  • Executive-level ownership of cybersecurity at a globally recognised, NYSE-listed manufacturer

  • Direct access to the CEO, CFO, board, and Audit Committee - genuine influence at the highest level, Amazon Web Services (AWS), Applications Security, Artificial Intelligence (AI), Business Support, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, Computer Science, Computer Security, Consumer Branding, Corporate Governance, Customer Relations, Executive Relationships, GCP (Good Clinical Practices), ISO (International Organization for Standardization), Incident Response, Information/Data Security (InfoSec), Insurance, Internet Security, Internet of Things, Investor Relations, Leadership, Legal, Legal Support Skills, Manufacturing, Manufacturing Operations, Mentoring, Microsoft Windows Azure, PCI-DSS, Regulatory Compliance, Risk, Sarbanes-Oxley Act (SOX), Securities and Exchange Commission (SEC), Security Infrastructure, Strategic Planning, U.S. National Institute of Standards and Technology (NIST), Vendor/Supplier Planning, Vendor/Supplier Relations, Willing to Travel

Benefits & conditions

  • A technically rich and varied environment: IT, OT/ICS, connected products, cloud, and AI security under one remit

  • Lead and develop an existing cybersecurity team in a company that takes security seriously

  • Competitive executive compensation, benefits package, and remote-first flexibility

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all