Deputy CISO

5 days ago

Wilmington DE, New Castle County, DE; Delaware State, United States Jobleads-US Full-time

3-4x a week on-site in Wilmington DE - Non-Negotiable

*No sponsorship provided*

THIS ROLE REQUIRES DEEP TECHNICAL KNOWLEDGE AROUND TECHNOLOGY/ SECURITY ARCHITECTURE AND SECURITY ENGINEERING

The SVP, Head of Security Technology , leads the modernization and delivery of the enterprise's core cybersecurity technology capabilities through an AI-enabled, automation-first, engineering-led model. This role reports to the CISO.

This Role Is Accountable For Evolving And Integrating:

  • Security Architecture
  • Security Engineering
  • Identity and Access Management (IAM)
  • Continuous Threat and Exposure Management (CTEM)

The Position Transforms Legacy, Siloed Security Functions (e.g., Vulnerability Management, Attack Surface Management, Application Security) Into a Scalable, Intelligence-driven Security Ecosystem That:

  • Reduces enterprise risk through engineering and automation
  • Embeds security into enterprise architecture and technology platforms
  • Strengthens identity lifecycle governance and compliance
  • Enables continuous, risk-based exposure management
  • Improves efficiency, control effectiveness, and compliance readiness
  • Drives alignment between cybersecurity capabilities and business risk priorities, ensuring security investments directly support enterprise resilience, customer trust, and growth objectives

Security Architecture

  • Define enterprise security architecture strategy, standards, and roadmaps
  • Embed secure-by-design principles across cloud, applications, data, and AI
  • Establish reusable design patterns and reduce exception-based approvals
  • Integrate security into transformation and modernization efforts
  • Lead Zero Trust security architecture strategy and adoption across identity, network, application, and data layers
  • Establish reference architectures for multi-cloud and hybrid environments, including CNAPP, CIEM, and data protection controls

Security Engineering

  • Lead engineering and lifecycle management of security platforms and controls
  • Establish automation-first operations (API, orchestration, policy-as-code)
  • Standardize tooling and reduce manual processes through automation
  • Improve platform resilience, telemetry, and service performance
  • Transition to a product and platform-based security engineering model with defined service ownership, SLAs, and performance metrics
  • Drive rationalization of security tools and vendors to reduce cost and complexity while improving capability coverage

Identity and Access Management (IAM) - User Administrative Lifecycle Scope

  • Lead and own overarching IAM strategy and lifecycle governance, including:
  • Provisioning (joiners), Access changes (movers), De-provisioning (leavers)
  • Enhance user access reviews and certifications
  • Implement, enhance and automate segregation of duties (SoD) monitoring and governance
  • Design and implement role and entitlement management capabilities
  • Enable access-related compliance and audit readiness in preparation for continuous control monitoring and assessment in alignment with Governance Risk and Control Function
  • Ensure least privilege, timely access removal, and reduction of orphaned accounts
  • Integrate IAM with HR, applications, and enterprise platforms
  • Enhance privileged access management and management of non-human identities in preparation for advanced agentic AI capabilities
  • Advance privileged access, machine identity, and non-human identity security in support of automation, cloud, and AI use cases
  • Implement identity-centric Zero Trust controls and continuous authentication models

Continuous Threat and Exposure Management (CTEM)

  • Transform vulnerability, attack surface, and application security into a unified CTEM function
  • Implement continuous, threat-informed prioritization of exposures
  • Align findings to asset criticality and business risk
  • Improve remediation effectiveness and reduce expl