Deputy CISO
Save this job and keep your search organized
Create a free account to save jobs, create alerts and return to this listing from your dashboard.
3-4x a week on-site in Wilmington DE - Non-Negotiable
*No sponsorship provided*
THIS ROLE REQUIRES DEEP TECHNICAL KNOWLEDGE AROUND TECHNOLOGY/ SECURITY ARCHITECTURE AND SECURITY ENGINEERING
The SVP, Head of Security Technology , leads the modernization and delivery of the enterprise's core cybersecurity technology capabilities through an AI-enabled, automation-first, engineering-led model. This role reports to the CISO.
This Role Is Accountable For Evolving And Integrating:
- Security Architecture
- Security Engineering
- Identity and Access Management (IAM)
- Continuous Threat and Exposure Management (CTEM)
The Position Transforms Legacy, Siloed Security Functions (e.g., Vulnerability Management, Attack Surface Management, Application Security) Into a Scalable, Intelligence-driven Security Ecosystem That:
- Reduces enterprise risk through engineering and automation
- Embeds security into enterprise architecture and technology platforms
- Strengthens identity lifecycle governance and compliance
- Enables continuous, risk-based exposure management
- Improves efficiency, control effectiveness, and compliance readiness
- Drives alignment between cybersecurity capabilities and business risk priorities, ensuring security investments directly support enterprise resilience, customer trust, and growth objectives
Security Architecture
- Define enterprise security architecture strategy, standards, and roadmaps
- Embed secure-by-design principles across cloud, applications, data, and AI
- Establish reusable design patterns and reduce exception-based approvals
- Integrate security into transformation and modernization efforts
- Lead Zero Trust security architecture strategy and adoption across identity, network, application, and data layers
- Establish reference architectures for multi-cloud and hybrid environments, including CNAPP, CIEM, and data protection controls
Security Engineering
- Lead engineering and lifecycle management of security platforms and controls
- Establish automation-first operations (API, orchestration, policy-as-code)
- Standardize tooling and reduce manual processes through automation
- Improve platform resilience, telemetry, and service performance
- Transition to a product and platform-based security engineering model with defined service ownership, SLAs, and performance metrics
- Drive rationalization of security tools and vendors to reduce cost and complexity while improving capability coverage
Identity and Access Management (IAM) - User Administrative Lifecycle Scope
- Lead and own overarching IAM strategy and lifecycle governance, including:
- Provisioning (joiners), Access changes (movers), De-provisioning (leavers)
- Enhance user access reviews and certifications
- Implement, enhance and automate segregation of duties (SoD) monitoring and governance
- Design and implement role and entitlement management capabilities
- Enable access-related compliance and audit readiness in preparation for continuous control monitoring and assessment in alignment with Governance Risk and Control Function
- Ensure least privilege, timely access removal, and reduction of orphaned accounts
- Integrate IAM with HR, applications, and enterprise platforms
- Enhance privileged access management and management of non-human identities in preparation for advanced agentic AI capabilities
- Advance privileged access, machine identity, and non-human identity security in support of automation, cloud, and AI use cases
- Implement identity-centric Zero Trust controls and continuous authentication models
Continuous Threat and Exposure Management (CTEM)
- Transform vulnerability, attack surface, and application security into a unified CTEM function
- Implement continuous, threat-informed prioritization of exposures
- Align findings to asset criticality and business risk
- Improve remediation effectiveness and reduce expl