> Markdown version of [/jobs/ext/2410811-cyber-security-infrastructure-lead](https://www.wearedevelopers.com/jobs/ext/2410811-cyber-security-infrastructure-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security & Infrastructure Lead - **Company:** U.S. Tech Solutions Inc. - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cloud Computing Security, Cyber Security, Information Systems, Identity and Access Management, Network Security, Role-Based Access Control, Phishing, Software Vulnerability Management, Enterprise Software Applications, Cloud Platform System, Information Technology - **Published:** August 12, 2026 - **Apply:** https://www.dice.com/job-detail/4b4897fc-2be7-4fd5-8175-6ebdf642c245 ## About the Role * 10+ years of progressive information security or cybersecurity experience, including significant responsibility for enterprise security programs. * Demonstrated experience leading cybersecurity strategy, governance, risk management, security operations, and incident response. * Strong understanding of enterprise security architecture, network security, endpoint security, cloud security, identity and access management, and data protection. * Experience implementing or operating cybersecurity programs aligned with the NIST Cybersecurity Framework or a comparable control framework. * Demonstrated experience managing vulnerability remediation and cybersecurity risk across complex enterprise environments. * Experience leading significant cybersecurity incidents and communicating effectively with both technical and executive audiences. * Strong vendor-management and third-party risk-management capabilities. * Demonstrated ability to operate effectively in an environment requiring both strategic leadership and hands-on problem solving. * Bachelor''s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related discipline, or equivalent relevant experience. ## Description * Cybersecurity Strategy & Leadership * Own and execute the enterprise cybersecurity strategy and multi-year security roadmap. * Serve as the organization''s senior cybersecurity subject-matter expert and advisor to IT and business leadership. * Translate technical cybersecurity risks into clear business impact, priorities, and investment recommendations. * Establish measurable security objectives, key risk indicators, and executive-level reporting. * Develop business cases and recommendations for security investments based on risk reduction, business value, and total cost of ownership. Governance, Risk & Compliance * Lead the continued development and maturity of the enterprise cybersecurity program using the NIST Cybersecurity Framework and other applicable standards and leading practices. * Maintain and enforce cybersecurity policies, standards, procedures, and control frameworks. * Own the enterprise cyber risk assessment process and maintain visibility into material cybersecurity risks and remediation plans. * Partner with Legal, Internal Audit, technology teams, and business stakeholders to support regulatory, contractual, insurance, and audit requirements. Security Operations & Incident Response * Provide leadership and oversight for enterprise security monitoring, detection, investigation, containment, and response. * Maintain and continuously improve cybersecurity incident response plans, playbooks, escalation procedures, and crisis-management processes. * Lead the organization''s response to significant cybersecurity incidents and coordinate activities across technology, leadership, Legal, communications, and third parties as necessary. Security Architecture & Engineering * Partner with infrastructure, cloud, network, application, and enterprise architecture teams to embed security into technology design and operations. * Provide security review and approval for significant technology initiatives and architectural changes. * Establish and maintain appropriate security controls across identity and access management, endpoint security, networks, cloud environments, email, data protection, and enterprise applications. * Promote secure configuration, least privilege, segmentation, encryption, and modern identity-security practices. * Evaluate cybersecurity technologies and recommend changes based on capability, risk, cost, and operational effectiveness. Security Awareness & Culture * Own the enterprise cybersecurity awareness and education program. * Develop targeted security education for employees, technology teams, privileged users, and executives. * Use phishing exercises, awareness metrics, incident trends, and other data to identify and address areas of human risk. * Build a culture in which cybersecurity is viewed as a shared business responsibility rather than solely an IT function. Vendor & Partner Management * Provide security oversight for strategic cybersecurity vendors, managed service providers, and technology partners. * Establish performance expectations and hold providers accountable for service quality, risk reduction, and contractual obligations. * Participate in vendor selection, contract reviews, renewals, and security-related negotiations. * Identify opportunities to simplify the security technology portfolio and improve value from cybersecurity investments. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How Many Jobs Are Available in Technology?](https://www.wearedevelopers.com/magazine/450-how-many-jobs-are-available-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer)