Chief Information Security Officer

2 months ago


Avon Lake, United States Avient Full time
Job Summary

The Chief Information Security Officer (CISO) is responsible for leading and directing the global information security strategy, policy, and program for the organization. This role involves safeguarding the company's information assets, managing risks, and ensuring compliance with relevant regulations across all regions in which the company operates. The CISO will collaborate closely with the CIO, legal, privacy, and business leaders, as well as senior management, IT staff, internal and external auditors, and other stakeholders to update and enhance the existing security plan based on evolving business dynamics.

This position also involves overseeing global security architecture, engineering, and operations; managing and maturing the Governance, Risk, and Compliance (GRC) team; organizing and leading the Executive Security Council; ensuring compliance with global regulatory requirements; and continuously improving the organization's security posture while maintaining financial and operational efficiency.

Essential Functions

• Update and Implement Security Strategy: Refine and execute a global information security strategy that adapts to business dynamics and aligns with the organization's objectives and regulatory requirements across all regions, incorporating cybersecurity frameworks such as ISO 27001 and COBIT for IT-related risks and IT governance. Focus on improving the organization's overall security posture while balancing financial and operational efficiency.

• Global Security Architecture and Engineering: Lead the development and implementation of global security architecture and engineering strategies to protect the organization's information assets. Oversee the design, deployment, and management of security technologies and controls worldwide, including cloud security, AI & ML security, and data privacy, ensuring solutions are both effective and cost-efficient

• Global Security Operations: Direct the global security operations to ensure effective monitoring, detection, response, and recovery from security incidents. Implement and oversee advanced security monitoring systems and tools across all regions, optimizing for both security and cost-effectiveness.

• Oversight of Global GRC Team: Provide strategic oversight and management of the Governance, Risk, and Compliance (GRC) team, ensuring its maturation and alignment with the organization's global security objectives. Develop and enhance the GRC function to ensure effective governance, risk management, and compliance practices globally, while maintaining operational efficiency. Leverage metrics and share with the Cybersecurity and Senior Leaders to make data driven decisions.

• Third-Party Risk Management: Formalize and mature the third-party risk management program by establishing a comprehensive framework to evaluate, monitor, and manage risks associated with third-party vendors and partners across all regions. Ensure ongoing risk assessments, compliance reviews, and continuous improvement of third-party security practices, with a focus on minimizing costs and maximizing security.

• Regulatory Compliance: Manage and address compliance with NIS2 and other global regulatory requirements, including but not limited to GDPR, CCPA, and industry-specific standards. Oversee efforts to achieve and maintain CTPAT certification and any other relevant certifications globally, while ensuring efficient use of resources.

• Policy and Compliance: Maintain, enforce, and update global information security policies, standards, and procedures to ensure compliance with current laws, regulations, and industry standards in all regions. Strive for policies that enhance security while promoting operational and financial efficiency.

• Incident Response: Lead the global incident response team in identifying, investigating, and responding to security breaches and incidents. Regularly update and maintain an incident response plan that addresses regional and global considerations, ensuring rapid response capabilities with minimal impact on business operations and costs.

• Executive Security Council: Organize and lead the Executive Security Council, ensuring cross-functional and regional alignment on security priorities, strategies, and risk management. Facilitate regular meetings and provide guidance to senior leaders and board members on global security-related matters, balancing risk reduction with cost management.

• Security Metrics and Reporting: Oversee and enhance global security monitoring systems. Develop and implement security metrics to measure and report on the status of the global information security program. Provide regular updates to senior management and board members on security posture improvements, risks, incidents, and compliance with global regulatory requirements.

• Security Awareness: Foster a culture of security awareness across the global organization through ongoing training programs and communication initiatives, ensuring programs are both impactful and cost-effective.

• Collaboration: Collaborate closely with IT, legal, privacy, compliance, and business units to integrate security practices into organizational processes and projects on a global scale, emphasizing efficiency and cost-effectiveness.

• Auditor Collaboration: Work closely with internal and external auditors to support audits, address findings, and ensure that security controls are effectively designed, implemented, and maintained.

• Monitoring and Reporting: Oversee and enhance global security monitoring systems. Provide regular updates and reports to senior management on the status of the global information security program, focusing on both security posture improvements and cost management.

• Budget Management: Develop and manage the global information security budget, ensuring efficient allocation and use of resources across all regions, and optimizing for financial efficiency without compromising security.

• Vendor Management: Evaluate and manage relationships with global security vendors and service providers to ensure alignment with the organization's security objectives and cost-effectiveness.

• Other duties as assigned.

Education and Experience

• Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. A master's degree or relevant certifications (e.g., CISSP, CISM, CISA) is preferred.

• A minimum of 10 years of experience in information security, with at least 5 years in a leadership role.

• Technical Skills: In-depth knowledge of information security principles, practices, and technologies. Experience with security frameworks such as NIST and knowledge how to apply and implement in security program.

• Leadership: Proven ability to lead and manage a diverse, global team of security professionals, including security architecture, engineering, and operations. Strong decision-making, problem-solving, and project management skills.

• GRC Oversight: Demonstrated experience in overseeing and maturing a Governance, Risk, and Compliance (GRC) function as a strategic owner on a global scale.

• Collaboration: Demonstrated experience in working closely with legal, privacy, business leaders, and internal and external auditors across different regions to ensure security practices align with organizational goals.

• Executive Council Leadership: Experience organizing and leading cross-functional executive committees or councils to drive security strategy and alignment globally.

• Regulatory Compliance: Experience managing compliance with NIS2, GDPR, CCPA, and other global regulatory requirements, including maintaining certifications such as CTPAT.

• Third-Party Risk Management: Proven experience in developing, implementing, and maturing a third-party risk management program, including conducting assessments and managing vendor relationships to mitigate risks globally.

• Communication: Excellent verbal and written communication skills. Ability to articulate complex security concepts to board members and non-technical stakeholders across different regions.

• Analytical Skills: Strong analytical and critical thinking abilities. Experience in conducting risk assessments and vulnerability testing.

• Ethical Standards: High level of integrity and ethical standards in managing sensitive information.

Environmental, Health, Safety, & Security (EHS&S) Requirements

• Avient integrates EHS&S into all aspects of our operations. Each position at Avient is responsible for complying with all applicable EHS&S requirements. Additionally, employees and management are responsible for reporting all EHS&S incidents immediately to ensure we keep EHS&S a priority within the organization.

Security includes physical security and cyber security.

Who We Are

Avient Corporation provides specialized and sustainable material solutions that transform customer challenges into opportunities, bringing new products to life for a better world. Examples include:

• Dyneema®, the world's strongest fiber™, enables unmatched levels of performance and protection for end-use applications, including ballistic personal protection, marine and sustainable infrastructure and outdoor sports

• Unique technologies that improve the recyclability of products and enable recycled content to be incorporated, thus advancing a more circular economy

• Light-weighting solutions that replace heavier traditional materials like metal, glass and wood, which can improve fuel efficiency in all modes of transportation and reduce carbon footprint

• Sustainable infrastructure solutions that increase energy efficiency, renewable energy, natural resource conservation and fiber optic / 5G network accessibility

Avient employs approximately 10,000 associates and is certified ACC Responsible Care®, a founding member of the Alliance to End Plastic Waste and certified Great Place to Work®. For more information, visit www.avient.com.

Why Avient

Avient Corporation is a world-class sustainable organization built on innovation, collaboration, and employee development. We are committed to providing a supportive and dynamic work environment where our diverse associates can grow and succeed, as well positively impacting our planet and the communities we serve. Our Great Place to Work culture, values, and benefits make Avient an employer of choice for top talent.

We believe diversity of ideas and backgrounds gives us the creativity to be successful in a rapidly changing world. In support of this, we stress equality of opportunity for all qualified individuals in accordance with applicable laws. Decisions on hiring, promotion, development, compensation or advancement are based solely on a person's qualifications, abilities, experience and performance.

Avient Corporation is a drug free workplace. Avient is an equal opportunity employer. We maintain a policy of non-discrimination in providing equal employment to all qualified employees and candidates regardless of race, sex, sexual orientation, gender identity, age, color, religion, national origin, disability, genetic information, protected veteran's status, or other legally protected classification in accordance with applicable federal, state and local law.

#LI-MM1
#LI-Hybrid

  • Avon Lake, Ohio, United States Avient Full time

    About the Role">The estimated salary for this position is $220,000 per year, based on industry standards and location.We are seeking a highly experienced Chief Information Security Officer to lead our global cybersecurity strategy. As a key member of our leadership team, you will be responsible for developing and implementing information security policies,...


  • Avon Lake, United States Avient Full time

    Chief Information Security Officer (CISO) The Chief Information Security Officer (CISO) is responsible for leading and directing the global information security strategy, policy, and program for the organization. This role involves safeguarding the company's information assets, managing risks, and ensuring compliance with relevant regulations across all...


  • Salt Lake, Utah, United States Thrivent Financial Full time

    OverviewWe're seeking an experienced Chief Information Security Officer to lead our organization's information security efforts. As a key member of our executive team, you'll be responsible for developing and implementing our information security strategy.


  • Avon Lake, Ohio, United States Avient Full time

    At Avient, we are seeking a highly skilled Chief Information Security Officer (CISO) to lead our global information security strategy, policy, and program. This is a unique opportunity for an experienced cybersecurity professional to join our team and make a significant impact on the organization's security posture.About the RoleThe CISO will be responsible...


  • Salt Lake, Utah, United States Sorenson Full time

    Job Title: Chief Information Technology OfficerA highly respected and experienced technology leader is sought to serve as the Chief Information Technology Officer at Sorenson Communications. This key position oversees all aspects of our global IT infrastructure, ensuring seamless operation, high performance, and strategic alignment with our business goals.


  • Salt Lake, Utah, United States Dyno Nobel, Inc. Full time

    About Dyno Nobel, Inc.Dyno Nobel, Inc. is a leading global provider of commercial explosives and blasting solutions. With a strong presence in North America, Australia, and the Asia Pacific region, we offer innovative products and services to customers worldwide.Our company values prioritize safety, customer satisfaction, and employee well-being. We strive...


  • Avon Park, Florida, United States MRINetwork Jobs Full time

    Exciting Senior IT Leadership OpportunityWe are seeking a seasoned Chief Information Officer (CIO) to lead our IT organization and drive business growth through strategic technology initiatives.About the RoleThis is a senior leadership position responsible for developing and implementing IT strategies aligned with the company's goals and objectives. You will...


  • Lake Elmo, United States Suffolk County Water Authority Full time

    The Chief Technology Officer will provide direction and support for the long-range direction of IT solutions that enhance mission-critical business operations and strategic goals for the Authority. This includes strategy, governance, alignment and daily management of all digital platforms, networking, support services, program management, information...


  • Avon Lake, United States Securitas Inc. Full time

    Mobile Security OfficerWage: $15.00-15.50/ hourValid OH Driver's License RequiredSchedule is third shift (overnight) and includes weekend hours.Are you interested in being part of our Security Team? Apply quickly and efficiently online. Weekly pay. Growth opportunities within the company. Health, dental, vision, and more! Employee referral bonus...


  • Lake Geneva, Wisconsin, United States Gamma Team Security Inc Full time

    Job DescriptionWe are seeking a highly skilled Security Officer to join our team at Gamma Team Security Inc. in Lake Geneva. In this role, you will play a vital part in creating a safe and secure environment for our premises, assets, and employees.The ideal candidate has experience with public safety and security and operates with a high degree of integrity...


  • Salt Lake City, United States The Road Home Full time

    WHO WE AREThe Road Home has been a leader in the fight to end homelessness for 100 years (1923-2023). We provide low-barrier emergency shelters, supportive services, and housing-first-minded rental assistance that helps individuals and families step out of homelessness and back into the community.We are seeking compassionate and empathetic individuals who...


  • Salt Lake City, United States The Road Home Full time

    WHO WE AREThe Road Home has been a leader in the fight to end homelessness for 100 years (1923-2023). We provide low-barrier emergency shelters, supportive services, and housing-first-minded rental assistance that helps individuals and families step out of homelessness and back into the community. We are seeking compassionate and empathetic individuals who...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    DMBA (Deseret Mutual Benefit Administrators) is a non-profit organization that administers benefits for companies who are owned or affiliated with The Church of Jesus Christ of Latter-day Saints. Position Summary: DMBA is looking for an Information Security Analyst I to join the Information Security Team. The Information Security Team reports to the Chief...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    DMBA (Deseret Mutual Benefit Administrators) is a non-profit organization that administers benefits for companies who are owned or affiliated with The Church of Jesus Christ of Latter-day Saints. Position Summary: DMBA is looking for an Information Security Analyst I to join the Information Security Team. The Information Security Team reports to the Chief...


  • Avon Park, Florida, United States MRINetwork Jobs Full time

    Are you a seasoned IT leader looking for a challenging role in the waste management industry? Do you have experience in strategizing and hands-on architecting enterprise applications?We are seeking a Chief Information Officer to lead our IT organization and drive digital transformation across the company. As a key member of our executive team, you will be...

  • Security Officer

    1 month ago


    Avon, United States Securitas Inc. Full time

    Security Officer - Entry LevelWage: $16.00-18.00/ hour1 year of Security Experience Required We help make your world a safer place.Are you interested in being part of our Security Team? Apply quickly and efficiently online. Weekly pay. Growth opportunities within the company. Health, dental, vision, and more! Employee referral bonus program.Competitive...


  • Salt Lake City, UT, United States The Road Home Full time

    WHO WE ARE The Road Home has been a leader in the fight to end homelessness for 100 years (1923-2023). We provide low-barrier emergency shelters, supportive services, and housing-first-minded rental assistance that helps individuals and families step out of homelessness and back into the community. We are seeking compassionate and empathetic individuals who...

  • Security Officer

    4 weeks ago


    North Salt Lake, United States GardaWorld Security Services U.S. Full time

    Job Description:GardaWorld – Security ServicesSecurity Officer – Now Hiring!Shift 1: 7am to 3 pm Friday Saturday and Sunday (24 hours per week )Shift 2: 3pm to 11pm Saturday and Sunday 11pm to 7am Monday (24 hours per week)Compensation: $17 / hourYou’ve got the right skills. What you need is the right opportunity to unleash your potential. We agree,...


  • Salt Lake City, United States Sorenson Communications Full time

    Description Salary: $210K DOE Bonus Hybrid for Local and Fully Remote in the United States Essential Duties and Responsibilities Strategic Leadership: Assist the CISO in developing and implementing the overall information security strategy. Provide leadership and direction to the information security team, ensuring alignment with organizational goals....


  • Salt Lake, Utah, United States Omega Morgan Full time

    Safety Specialist Job DescriptionWe are seeking a Chief Safety Officer to join our team at Omega Morgan. The ideal candidate will have a strong background in occupational health and safety and experience in developing and implementing safety programs.About the RoleThe Chief Safety Officer will be responsible for leading the development and implementation of...