Cyber Security & Infrastructure Lead

U.S. Tech Solutions Inc.
United States
23 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Cloud Computing Security Cyber Security Information Systems Identity and Access Management Network Security Role-Based Access Control Phishing Software Vulnerability Management Enterprise Software Applications Cloud Platform System Information Technology

Job description

  • Cybersecurity Strategy & Leadership
  • Own and execute the enterprise cybersecurity strategy and multi-year security roadmap.
  • Serve as the organization’’s senior cybersecurity subject-matter expert and advisor to IT and business leadership.
  • Translate technical cybersecurity risks into clear business impact, priorities, and investment recommendations.
  • Establish measurable security objectives, key risk indicators, and executive-level reporting.
  • Develop business cases and recommendations for security investments based on risk reduction, business value, and total cost of ownership.

Governance, Risk & Compliance

  • Lead the continued development and maturity of the enterprise cybersecurity program using the NIST Cybersecurity Framework and other applicable standards and leading practices.
  • Maintain and enforce cybersecurity policies, standards, procedures, and control frameworks.
  • Own the enterprise cyber risk assessment process and maintain visibility into material cybersecurity risks and remediation plans.
  • Partner with Legal, Internal Audit, technology teams, and business stakeholders to support regulatory, contractual, insurance, and audit requirements.

Security Operations & Incident Response

  • Provide leadership and oversight for enterprise security monitoring, detection, investigation, containment, and response.
  • Maintain and continuously improve cybersecurity incident response plans, playbooks, escalation procedures, and crisis-management processes.
  • Lead the organization’’s response to significant cybersecurity incidents and coordinate activities across technology, leadership, Legal, communications, and third parties as necessary.

Security Architecture & Engineering

  • Partner with infrastructure, cloud, network, application, and enterprise architecture teams to embed security into technology design and operations.
  • Provide security review and approval for significant technology initiatives and architectural changes.
  • Establish and maintain appropriate security controls across identity and access management, endpoint security, networks, cloud environments, email, data protection, and enterprise applications.
  • Promote secure configuration, least privilege, segmentation, encryption, and modern identity-security practices.
  • Evaluate cybersecurity technologies and recommend changes based on capability, risk, cost, and operational effectiveness.

Security Awareness & Culture

  • Own the enterprise cybersecurity awareness and education program.
  • Develop targeted security education for employees, technology teams, privileged users, and executives.
  • Use phishing exercises, awareness metrics, incident trends, and other data to identify and address areas of human risk.
  • Build a culture in which cybersecurity is viewed as a shared business responsibility rather than solely an IT function.

Vendor & Partner Management

  • Provide security oversight for strategic cybersecurity vendors, managed service providers, and technology partners.
  • Establish performance expectations and hold providers accountable for service quality, risk reduction, and contractual obligations.
  • Participate in vendor selection, contract reviews, renewals, and security-related negotiations.
  • Identify opportunities to simplify the security technology portfolio and improve value from cybersecurity investments.

Requirements

  • 10+ years of progressive information security or cybersecurity experience, including significant responsibility for enterprise security programs.
  • Demonstrated experience leading cybersecurity strategy, governance, risk management, security operations, and incident response.
  • Strong understanding of enterprise security architecture, network security, endpoint security, cloud security, identity and access management, and data protection.
  • Experience implementing or operating cybersecurity programs aligned with the NIST Cybersecurity Framework or a comparable control framework.
  • Demonstrated experience managing vulnerability remediation and cybersecurity risk across complex enterprise environments.
  • Experience leading significant cybersecurity incidents and communicating effectively with both technical and executive audiences.
  • Strong vendor-management and third-party risk-management capabilities.
  • Demonstrated ability to operate effectively in an environment requiring both strategic leadership and hands-on problem solving.
  • Bachelor’’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related discipline, or equivalent relevant experience.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all