Head of Information Security

4 weeks ago


San Diego, United States Glocomms Full time

Calabasas, CA or San Diego, CA (Hybrid-Flexible)


Glocomms is partnered with a dynamic and rapidly growing e-commerce company committed to providing its customers with exceptional service and innovative products. The client is seeking a highly skilled and experienced Head of Information Security to lead efforts in safeguarding its digital assets, ensuring compliance, and maintaining the highest standards of security. The technology stack is predominantly based on Microsoft technologies and primarily utilizes AWS for cloud infrastructure.


Position Overview:

The Head of Information Security will be responsible for overseeing all aspects of information security, including incident response, bug bounty programs, vulnerability remediation, and compliance. This leadership role requires a strategic thinker with a hands-on approach, capable of managing and developing a high-performing security team. The successful candidate will have a proven track record in information security within the e-commerce sector or a similar fast-paced environment, with strong experience in a Microsoft tech stack and AWS cloud infrastructure.


Key Responsibilities:

Leadership and Strategy:

  • Develop and implement the overall information security strategy aligned with business objectives.
  • Lead and manage a team of three information security professionals, fostering a culture of security awareness and continuous improvement.
  • Provide strategic guidance to executive leadership on security initiatives and risk management.

Incident Response:

  • Oversee the incident response program, ensuring swift and effective handling of security incidents.
  • Coordinate incident response efforts, including investigation, containment, eradication, recovery, and post-incident analysis.
  • Develop and maintain incident response plans, playbooks, and runbooks.

Bug Bounty and Vulnerability Remediation:

  • Establish and manage a bug bounty program to incentivize external security researchers.
  • Oversee vulnerability management processes, including regular scanning, assessment, and remediation of security vulnerabilities.
  • Collaborate with development and operations teams to ensure timely and effective remediation of identified vulnerabilities.

Compliance and Governance:

  • Ensure compliance with relevant regulations, standards, and frameworks (e.g., PCI-DSS, GDPR, CCPA).
  • Develop and maintain security policies, procedures, and documentation.
  • Conduct regular security audits and assessments to ensure compliance and identify areas for improvement.

Risk Management:

  • Identify, assess, and manage information security risks across the organization.
  • Implement and maintain security controls to mitigate identified risks.
  • Develop and deliver security awareness training programs for employees.

Technology and Innovation:

  • Stay current with emerging security trends, threats, and technologies.
  • Evaluate and implement new security tools and technologies to enhance the security posture.
  • Collaborate with IT and engineering teams to integrate security into the software development lifecycle (SSDLC).


Qualifications:

  • Bachelor’s degree in Computer Science, Information Security, or a related field. Master’s degree preferred.
  • 10+ years of experience in information security, with at least 5 years in a leadership role.
  • Proven experience in incident response, vulnerability management, and compliance within an e-commerce or similar environment.
  • Strong knowledge of security standards, regulations, and best practices (e.g., PCI-DSS, GDPR, CCPA).
  • Extensive experience with a Microsoft tech stack, including Windows Server, Active Directory, and related technologies.
  • Strong experience with AWS or Azure cloud infrastructure.
  • Excellent leadership, communication, and interpersonal skills.
  • Relevant certifications (e.g., CISSP, CISM, CEH) are highly desirable.
  • All employees are required to be vaccinated against Covid-19 - reasonable accommodation requests will be considered.


Benefits:

  • Competitive salary and performance-based bonuses
  • Comprehensive health, dental, and vision insurance
  • 401(k) with company match
  • Generous paid time off and holiday schedule
  • Employee discounts for company products


This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday).



  • San Francisco, United States Hampton North Full time

    Reporting directly to the executive leadership team, the Head of Information Security will be responsible for establishing and maintaining a robust cybersecurity framework tailored to the unique challenges of the AI industry. This individual will play a pivotal role in safeguarding our proprietary technologies, data assets, and intellectual property while...


  • San Francisco, United States Hampton North Full time

    Reporting directly to the executive leadership team, the Head of Information Security will be responsible for establishing and maintaining a robust cybersecurity framework tailored to the unique challenges of the AI industry. This individual will play a pivotal role in safeguarding our proprietary technologies, data assets, and intellectual property while...


  • San Francisco, United States Hampton North Full time

    Reporting directly to the executive leadership team, the Head of Information Security will be responsible for establishing and maintaining a robust cybersecurity framework tailored to the unique challenges of the AI industry. This individual will play a pivotal role in safeguarding our proprietary technologies, data assets, and intellectual property while...


  • San Diego, United States Prosum Full time

    JOB SUMMARY: The information security engineer designs, implements, monitors and evaluates network security, host-based security, application security and other forms of technical security systems, mechanisms, configurations and procedures. This position encompasses activities which directly support the confidentiality, integrity and availability of...


  • San Diego, United States Prosum Full time

    JOB SUMMARY: The information security engineer designs, implements, monitors and evaluates network security, host-based security, application security and other forms of technical security systems, mechanisms, configurations and procedures. This position encompasses activities which directly support the confidentiality, integrity and availability of...


  • San Diego, California, United States AMN Healthcare Services, Inc. Full time

    Information Security Engineer,San Diego, CA (Hybrid - 3 days onsite) - - This role doesn't provide sponsorship or H 1 transferWelcome to AMN Healthcare:Where Your Career Becomes the Next Big Success Story Have you ever wondered what it takes to b Security Analyst, Information, Analyst, Security, Healthcare, Staffing


  • San Diego, United States Cask Technologies Full time

    Cask is a leading Management Consulting firm specializing in delivering business and technical expertise to clients across commercial and government markets. Join the many happy employees at Cask! We have been named a top 5 firm to work for by Consulting Magazine for 5 of the past 6 years. **Duties**: - Provide cybersecurity and Risk Management SME(s) with...


  • San Rafael, United States BioMarin Pharmaceutical Inc. Full time

    Title: Head of Global Cyber Security   Location: San Rafael, CA Work style:  Hybrid local onsite three days + per week   Who We Are For more than two decades, going our own way has led to countless breakthroughs, bettering the lives of those suffering from rare genetic disease. In 1997 we were founded to make a big difference in small patient...


  • San Diego, United States RSI Security Full time

    Job DescriptionJob DescriptionTHIS IS A REMOTE, WORK-FROM-HOME POSITION.The starting salary range is based on your experience, education, and skills. There is also bonus potential for this position.RSI Security is a small organization where collaboration is not only encouraged, but expected. We value relationships within our team and are intentional to build...


  • San Diego, United States RSI Security Full time

    Job DescriptionJob DescriptionTHIS IS A REMOTE, WORK-FROM-HOME POSITION.The starting salary range is based on your experience, education, and skills. There is also bonus potential for this position.RSI Security is a small organization where collaboration is not only encouraged, but expected. We value relationships within our team and are intentional to build...


  • San Rafael, United States BioSpace, Inc. Full time

    Job Details Title: Head of Global Cyber Security Location: San Rafael, CA Work style: Hybrid local onsite three days + per week Who We Are For more than two decades, going our own way has led to countless breakthroughs, bettering the lives of those suffering from rare genetic disease. In 1997 we were founded to make a big difference in small patient...


  • San Diego, California, United States Canonical Full time

    This global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build...


  • San Rafael, United States BioMarin Pharmaceutical Full time

    Title: Head of Global Cyber Security Location: San Rafael, CA Work style: Hybrid local onsite three days + per week Who We Are For more than two decades, going our own way has led to countless breakthroughs, bettering the lives of those suffering from rare genetic disease. In 1997 we were founded to make a big difference in small patient populations. Now we...


  • San Diego, California, United States Cybersecurity And Infrastructure Security Agency Full time

    This is a high-profile, public facing position, requiring a unique set of skills ranging from public speaking to technical acumen to the ability to operate professionally in an independent capacity on behalf of the agency.The primary duties associated with this Cybersecurity Advisor position consist of collaborating with partners across the government and...


  • San Diego, United States ICW Group Insurance Companies Full time

    Are you looking for more than just a job? Do you want to have a voice and feel a sense of belonging? At ICW Group, we hire innovative people who consistently adapt, grow and deliver. We believe in hard work, a fun work environment, and embracing creativity that only comes about when talented people collaborate to develop solutions. Our mission is to create...


  • San Diego, United States Robert Half Full time

    IT Security EngineerSummaryThis role is responsible for securing and maintaining the overall IT infrastructure, including networks, servers, back-end applications, desktops, and operating systems. The key focus is to safeguard the information and systems used by our branches, partners, customers, and central support center.Responsibilities:Security...


  • San Diego, United States Robert Half Full time

    IT Security EngineerSummaryThis role is responsible for securing and maintaining the overall IT infrastructure, including networks, servers, back-end applications, desktops, and operating systems. The key focus is to safeguard the information and systems used by our branches, partners, customers, and central support center.Responsibilities:Security...


  • San Diego, United States Imagine One Technology & Management, Ltd. Full time

    **Job Location: San Diego, California** **Job Code: 16416354** *** Imagine One Technology & Management is currently seeking several **Information System Security Specialists **“contingent” on award of the associated work to the Imagine One Team supporting The Naval Information Warfare Center Pacific (NIWC Pacific), formerly the Space and Naval Warfare...


  • San Diego, United States Steadfast Security, Inc. Full time

    Company DescriptionWelcome to Steadfast Security, Inc! We are the premier private guards security company, specializing in providing top-notch security guard services to property managers in Southern California. Our extensive experience in working with property managers at shopping centers, business parks, industrial complexes, gated communities, and office...


  • San Diego, United States Steadfast Security, Inc. Full time

    Company DescriptionWelcome to Steadfast Security, Inc! We are the premier private guards security company, specializing in providing top-notch security guard services to property managers in Southern California. Our extensive experience in working with property managers at shopping centers, business parks, industrial complexes, gated communities, and office...