Director, Cyber Security
$165,000–$200,000 year
RemoteUnited States
Job Summary
Define and operationalize the enterprise cybersecurity strategy, roadmap, and multi-year plan to protect digital assets against complex threats. Lead a high-performing cybersecurity organization, managing managers and senior contributors while establishing priorities, operating models, and accountability frameworks. Oversee incident response, business continuity, and disaster recovery, providing executive oversight during major events and driving post-incident remediation. Govern risk management, compliance, and third-party security across infrastructure, cloud environments, and applications, ensuring adherence to frameworks like NIST, ISO, and PCI DSS. Direct the security technology stack, including SIEM, EDR, and zero-trust architecture, while sponsoring AI governance and emerging technology risk strategies. Deliver executive reporting on security posture and partner with VP-level leadership to embed security into business operations. Available for regular Pacific Standard Time hours, on-call rotations, evenings, and weekends.
Required Qualifications
- High school diploma or GED
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a closely related field
- Minimum of fifteen (15) years of progressive experience in cybersecurity, information security, or related technical fields
- Minimum of seven (7) years of progressive leadership experience, including direct management of managers within a cybersecurity or technology function
- Demonstrated experience leading enterprise-scale cybersecurity programs and influencing VP-level stakeholders
- Proven experience balancing strategic planning with operational execution in a complex and evolving environment
- Extensive experience securing IT infrastructure, managing vulnerability programs, and leading incident response
- Experience implementing and managing security frameworks such as NIST CSF, ISO 27001, or CIS benchmarks
- Strong knowledge of network security, cloud security platforms, and enterprise security operations tools (SIEM, IDS/IPS, EDR)
- Experience with identity management, system hardening, and emerging threat mitigation techniques
- Familiarity with DevSecOps practices and secure software development lifecycle (SDLC)
- Must be available to work regular business hours Pacific Standard Time
- Must also be available to work on-call, evenings and weekends as needed
Desired Qualifications
- CISM, CISSP, CEH, or comparable cybersecurity certifications
- Experience in telecommunications, ISP, or highly regulated industries
- Experience leading cybersecurity transformation initiatives in a high-growth or scaling organization
- Experience presenting cybersecurity strategy or risk posture to executive leadership or board-level stakeholders
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.