> Markdown version of [/jobs/ext/2551890-associate-director-of-information-security](https://www.wearedevelopers.com/jobs/ext/2551890-associate-director-of-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Associate Director of Information Security - **Company:** Apetan Consulting - **Location:** New York, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software as a Service, Cloud Computing, Cyber Security, Data Governance, Security Information and Event Management, Software Vulnerability Management, Software Security, Information Technology - **Published:** August 28, 2026 - **Apply:** https://www.dice.com/job-detail/d9c8bc73-2512-4bda-a655-2b3e216947c1 ## About the Role * Bachelor's degree in Computer Science, Information Technology, or a related field. * 8+ years of Information Security experience, including 3+ years in a leadership/management capacity. * Strong experience leading DLP programs, with hands-on experience using solutions such as Microsoft Purview or Proofpoint. * Hands-on experience with DSPM platforms in hybrid environments. * Broad knowledge of network, cloud, and application security. * Experience with vulnerability management, SIEM, and security monitoring. * Experience building or managing a TPRM/vendor security program. * Knowledge of GDPR, CCPA, NIST CSF, ISO 27001, and data governance frameworks. * CISSP, CISM, or equivalent certification preferred., We're looking for a security leader who is equally comfortable developing strategy, leading a team, and diving into technical details. Strong communication, problem-solving, organization, initiative, and the ability to influence stakeholders across an organization are critical. ## Description This is a senior technical leadership role combining strategy, program ownership, and hands-on security expertise. The Associate Director will lead a small security team and partner closely with IT, Architecture, Legal, Compliance, and other business stakeholders., * Own the strategy, implementation, and ongoing improvement of enterprise DLP and DSPM programs across on-prem, cloud, and SaaS environments. * Oversee the Third-Party Risk Management (TPRM) program and vendor security assessments. * Develop and maintain security policies, standards, and best practices. * Partner with IT, Legal, Compliance, and Architecture teams to identify and mitigate security risks. * Lead security incident response, investigations, and root-cause analysis. * Conduct security architecture reviews for applications, platforms, and infrastructure. * Monitor emerging threats, data protection technologies, and regulatory requirements. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Data Governance in the Era of AI](https://www.wearedevelopers.com/videos/1622-data-governance-in-the-era-of-ai) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)