Director of Information Security

Kwik Trip Inc.
La Crosse, WI, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$145,614.0 - $225,701.0
Working hours
Shift work
Job source

Tech stack

Business Systems Cloud Computing Security Cyber Security Identity and Access Management IT Management Intrusion Detection and Prevention PCI Data Security Standards Security Information and Event Management Software Vulnerability Management Information Technology

Job description

Kwik Trip is seeking a strategic and execution-focused Director of Information Security to lead our enterprise cybersecurity program and help protect the systems, data, and technology services that support our coworkers, guests, and business operations. In this role, you will oversee the strategy, governance, and operational delivery of information security services while ensuring security practices align with business objectives, regulatory requirements, and evolving threats.

You will lead cross-functional teams responsible for security operations, security engineering, identity and access management, governance, risk and compliance, and security awareness initiatives. Success in this role requires balancing risk reduction, business enablement, operational excellence, and the development of high-performing teams., * Lead and develop the Information Security department, including multiple teams of managers, engineers, analysts, and security professionals

  • Define and execute short to mid-term 1 to 3 year cybersecurity strategies aligned with business goals and organizational risk tolerance
  • Own the operational delivery of security services, ensuring capabilities are reliable, scalable, and effective
  • Establish and maintain enterprise security governance, policies, standards, and procedures
  • Lead security operations, incident response, vulnerability management, and threat detection programs
  • Drive enterprise identity and access management strategies to protect critical business systems and data
  • Oversee governance, risk management, compliance, and audit activities to support regulatory and business requirements
  • Partner with technology and business leaders to integrate security into projects, platforms, and operational processes
  • Lead security architecture and technology roadmaps that support secure growth and modernization efforts
  • Develop and monitor security metrics, reporting, and risk indicators to support executive decision-making
  • Foster a security-aware culture through training, education, and stakeholder engagement
  • Partner with internal stakeholders, auditors, and external vendors to support security initiatives and compliance obligations
  • Ensure security programs balance risk reduction with operational efficiency and business enablement, Monday through Friday, daytime hours. Flexibility may be required to meet business needs. This position is based onsite at our La Crosse Support Campus.

Requirements

Do you have experience in Vulnerability management?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field

  • 6 to 8 years of experience in information security, risk management, cybersecurity operations, or IT leadership
  • Proven ability to lead cross-functional teams and deliver enterprise security programs
  • Strong understanding of security frameworks, governance, risk management, compliance, and security operations
  • Experience managing security technologies such as SIEM, endpoint protection, identity and access management, vulnerability management, and cloud security platforms
  • Experience supporting regulatory and compliance initiatives such as PCI DSS, SOX, privacy regulations, or other industry requirements
  • Strong communication, leadership, and strategic planning skills
  • Ability to translate technical risks into business-focused decisions and recommendations
  • Experience leading incident response efforts and driving continuous security improvements
  • High level of integrity, confidentiality, and adaptability in a fast-paced environment

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance
  • Paid time off, Actual pay will be based on various factors, such as a candidate’s qualifications, skills, competencies, proficiency for the role, and internal equity. In addition to base pay, Kwik Trip gives 40% of pre-tax profits back to our coworkers with bonuses ranging from 8-12% of each coworker’s gross annual wage depending on company profitability and offers a comprehensive benefits package, including health insurance, 401k, paid time off, and more.

About the company

Kwik Trip, Inc. is a family-owned, Midwest company, in operation since 1965. We are dedicated to serving our guests and coworkers while treating everyone like family. Along with our award-winning culture, we are proud to be an Equal Opportunity Employer. Learn more about Kwik Trip and our culture.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Managing infrastructure limitations with managed Amazon Aurora databases

Dharin Shah Dharin Shah · WWC 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:30 min

Solving impossible enterprise problems instead of retrofitting applications

Dona Sarkar +1 · Coffee With Developers

5:30 min

Identifying non-coding software vulnerabilities and organizational risks

Tino Sokic · WWC 2023

5:00 min

Managing complex state with scope-based resource management

Bjarne Stroustrup · WWC 2022

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

Videos

See all

Related articles

See all