Director, Information Security
CurrentStrategic Leadership· Lead the development and execution of the organization’s enterprise security strategy.· Align security initiatives with business goals and manage security compliance and engineering teams to create a unified security posture.Governance, Risk, and Compliance (GRC)· Maintain a comprehensive IT risk management program, ensuring compliance with NIST, FISMA, PCI-DSS, CJIS, SOC2 and other regulations through regular audits and assessments.Security Architecture & Engineering:· Oversee the design and implementation of advanced security solutions, including Zero-Trust, IAM, XDR, SIEM, and more.· Strengthen infrastructure security across AWS and On-Prem environments.Incident Response & Crisis Management· Act as a lead during security incidents, coordinating response efforts and managing communication with leadership and regulatory bodies.· Implement post-incident recommendations for improved resilience.Stakeholder Engagement & Communication· Liaise with internal teams, external partners, and regulatory agencies.· Provide data-driven security insights and updates to the executive team to ensure informed decision-making.Vendor & Technology Management· Manage security vendors and optimize technology investments to enhance the organization’s security posture with minimal disruption.