Director Of It Security
Lake Oswego, Or, Us
Defined, championed and executed a new information security program. Provide strong vision and leadership to ensure the company effectively leverages technology to achieve and maintain a sustainable security program. Develop and lead a security technology strategy for the Enterprise that supports strong business alignment and provides a sound, flexible foundation for the future.Partner with technology and operations teams to ensure data protection and development and implementation of security best practices. Direct the Information Security program, including framework, strategy, policies - including but not limited to data classification, network resource use, and information protection - process, and metrics. Experienced with developing, collaborating with outside partners, deploying and supporting critical systems for a highly dynamic organization. Established and lead Information Security Steering Committee and influence corporate culture to be more security minded/focused. Report directly to Board of directors to inform and be accountable for regular updates on security positioning. Manage information security budget, internal and external facing vendor relationships, and contracts in providing products and services related to the information security program. Identify, assess and manage emerging risks. Collect and monitor information security metrics, assessing security posture and health. Implement services and products to enable or improve information security capabilities - IDM, BC/DR, Compliance, IPS/IDS, Corporate Training/Awareness. Oversee internal and external security risk and vulnerability audits, recommend and implement countermeasures as needed. Serve as a consultant to the various enterprises business units, especially in areas such as marketing, sales, IT, services and support, where the intersection of existing and emerging technologies can impact top-line revenue. Evaluate and deliver cutting edge security technology and solutions.