Associate Director of Information Security

Apetan Consulting
New York, United States
9 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Software as a Service Cloud Computing Cyber Security Data Governance Security Information and Event Management Software Vulnerability Management Software Security Information Technology

Job description

This is a senior technical leadership role combining strategy, program ownership, and hands-on security expertise. The Associate Director will lead a small security team and partner closely with IT, Architecture, Legal, Compliance, and other business stakeholders., * Own the strategy, implementation, and ongoing improvement of enterprise DLP and DSPM programs across on-prem, cloud, and SaaS environments.

  • Oversee the Third-Party Risk Management (TPRM) program and vendor security assessments.
  • Develop and maintain security policies, standards, and best practices.
  • Partner with IT, Legal, Compliance, and Architecture teams to identify and mitigate security risks.
  • Lead security incident response, investigations, and root-cause analysis.
  • Conduct security architecture reviews for applications, platforms, and infrastructure.
  • Monitor emerging threats, data protection technologies, and regulatory requirements.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • 8+ years of Information Security experience, including 3+ years in a leadership/management capacity.
  • Strong experience leading DLP programs, with hands-on experience using solutions such as Microsoft Purview or Proofpoint.
  • Hands-on experience with DSPM platforms in hybrid environments.
  • Broad knowledge of network, cloud, and application security.
  • Experience with vulnerability management, SIEM, and security monitoring.
  • Experience building or managing a TPRM/vendor security program.
  • Knowledge of GDPR, CCPA, NIST CSF, ISO 27001, and data governance frameworks.
  • CISSP, CISM, or equivalent certification preferred., We’re looking for a security leader who is equally comfortable developing strategy, leading a team, and diving into technical details. Strong communication, problem-solving, organization, initiative, and the ability to influence stakeholders across an organization are critical.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman Ā· World Congress 2022

1:53 min

Reinventing data governance as a collaborative business foundation

Farooq Sheikh Farooq Sheikh +3 Ā· World Congress 2025

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo Ā· World Congress 2024

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal Ā· LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger Ā· LIVE

2:51 min

Alibaba Cloud developer resources and cloud computing training

Cheng Zhang Ā· LIVE

Videos

See all

Related articles

See all