Director of Information Security

2 weeks ago


Philadelphia Pennsylvania, United States City of Philadelphia Full time
Job Description

The Philadelphia International Airport is managed by the Department of Aviation of the City of Philadelphia.  The airport handles approximately 82,000 travelers per day.  The airport Information Technology department is headed by the Chief Information Officer (CIO). As the Director of Information Security, you will play a pivotal role in safeguarding the confidentiality, integrity, and availability of Philadelphia International Airport's information assets. Reporting directly to the Chief Information Security Officer (CISO), you will be tasked with leading strategic initiatives to mitigate cyber threats, ensure compliance with industry regulations & standards. Must have a sound business acumen to help identify, evaluate and report information security risks in a manner that supports the risk posture of the organization.

Essential Functions and Responsibilities:

Strategic Leadership – Collaborate with the CISO and senior leadership to develop and maintain the organization's information security strategy, policies, and procedures. Provide strategic direction and guidance to the information security team, aligning security initiatives with business objectives and risk tolerance.

Risk Management – Lead the identification, assessment, and prioritization of information security risks, threats, and vulnerabilities across the organization’s IT infrastructure and systems. Implement risk mitigation strategies and controls to address identified risks effectively. Develop capabilities to manage third party Cybersecurity risks.

Security Governance & Compliance – Lead the identification, assessment, and prioritization of information security risks, threats, and vulnerabilities across the organization’s IT infrastructure and systems. Develop risk mitigation strategies and controls to address identified risks effectively.

Threat Management – Execute strategies for continuous monitoring of network traffic, system logs, and user activities to identify unauthorized or suspicious behavior. Review security monitoring tools, technologies to detect and alert potential security incidents and anomalies. Maintain incident response plans and procedures to effectively respond to and mitigate security incidents. Lead the investigation of security breaches and incidents, coordinating response efforts and implementing corrective actions as necessary. 

Third Party Risk Management –Assess and manage risks associated with third-party vendors and service providers, ensuring contractual obligations and security requirements are met. Develop processes for evaluating monitoring vendor security posture and performance.

Security Operations & Technology –Oversee the implementation and maintenance of security technologies and tools, ensuring they effectively identify, protect, detect, respond, and recover to security threats & vulnerabilities.

Change Management –Lead change management committee for reviewing, approving, and implementing changes and ensuring security controls, configurations are updated and maintained. Foster open communication and collaboration among stakeholders, creating forums for dialogue to facilitate decision-making and address concerns related to change initiatives.

Experience/Required skills:

Strong leadership and management skills are essential for effectively leading a team of security professionals.

Proficiency in risk management is necessary for identifying, assessing, and mitigating information security risks.

In-depth knowledge of security architecture and design is necessary for developing and implementing robust security controls.

Expertise in security operations is essential for monitoring, detecting, and responding to security threats and incidents.

A comprehensive understanding of compliance and regulatory requirements is crucial for ensuring that the organization's security practices align with relevant standards and regulations.

Excellent communication and presentation skills are needed for effectively conveying complex security concepts to non-technical stakeholders.

Strategic planning and execution skills are essential for developing and implementing a comprehensive information security strategy aligned with business objectives.

Proficiency in vendor management is necessary for evaluating and selecting security vendors and managing vendor relationships effectively.

Strong team building, and development skills are crucial for fostering a collaborative and high-performing security team.

Desired Experience and Abilities:

Proficiency in analyzing, evaluating security threats and vulnerabilities, as well as assessing the potential impact on the organization.

Extensive experience in conducting thorough risk assessments, vulnerability assessments, and penetration testing to identify and prioritize security risks.

Ability to architect and integrate security solutions into the organization's infrastructure, ensuring the confidentiality, integrity, and availability of information assets.

Commitment to staying updated on emerging security threats, trends, and technologies.

Ability to adapt to evolving security challenges and requirements, proactively adjusting security strategies and tactics to address new threats and vulnerabilities.

Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.

Coordinate information security and risk management projects with resources from the IT organization and business unit teams.

Familiarity with cybersecurity principles, tools, and best practices.



  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description In support of the CIO, the Chief Information Security Officer (CISO), and the OIT Executive Management Team, the Deputy Chief Information Security Officer (DCISO) brings their experience and passion for the field to join a dynamic Security Team responsible for managing information security risk to systems and data throughout The City of...


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description This position is a Departmental IT Director within the Office of Innovation & Technology and is assigned to the Department of License and Inspection (L&I).  Under the direction of OIT’s Chief Information Officer and the L&I Commissioner, the role has management-level responsibility for planning and directing the activities of L&I’s...


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description Responsibilities  Specific responsibilities shall include, but are not limited to, the following:  Ensure safety & security for all OCC operations, staff, and facilities.  Direct strategic security and safety planning initiatives, ensuring effective organization and implementation.  Work with private security firms to ensure 24/7...


  • Philadelphia, United States Doyle Security Services Full time

    **Doyle Security Services, Inc. (DSS) a premium regional security provider seeking an **University Director of Campus Security and Public Safety **in the Philadelphia area.** **Salary: $90,000 - $100,000** **Job Summary**: Provides strategic direction and progressive management for the security and public safety personnel at a major university. Guides...


  • Philadelphia, United States City of Philadelphia Full time

    **Company Description** A best-in-class city that attracts best-in-class talent, Philadelphia is an incredible place to build a career. From our thriving arts scene and rich history to our culture of passion and grit, there are countless reasons to love living and working here. With a workforce of over 30,000 people, and more than 1,000 different job...


  • Philadelphia, United States City of Philadelphia Pennsylvania Full time

    Responsibilities Specific responsibilities shall include, but are not limited to, the following: Ensure safety & security for all OCC operations, staff, and facilities. Direct strategic security and safety planning initiatives, ensuring effective org Security, Director, Operations, Public Safety, Microsoft, Safety, Manufacturing


  • Philadelphia, United States Doyle Security Services Full time

    **Doyle Security Services, Inc. (DSS) is seeking experienced Security Officers in the Philadelphia area for **an** Educational Facility.** **PAY RATE: $16.50 / $17.00 July 1, 2024** **JOB SUMMARY**:Observes and reports activities and incidents at an assigned client site, providing for the security and safety of client property and personnel. Makes periodic...


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description Position Summary: The Board of Ethics is seeking a highly motivated and creative attorney with a commitment to promoting integrity in government. The Deputy Executive Director will report to the Board’s Executive Director as part of the Board’s Enforcement Staff and will assist with administrative tasks related to the Board’s budget...


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description Position Summary: The Philadelphia Department of Public Health is seeking a highly qualified candidate to serve as Deputy Director of the Division of Substance Use Prevention and Harm Reduction. The Deputy Director works with the Division Director, program managers, and other staff of the division to develop, implement, and evaluate...


  • Philadelphia, United States Insight Global Full time

    Day-to-Day:A large healthcare system is looking to hire an Info Security Engineer in the North Philadelphia location. The role is hybrid Monday/Friday WFH and Tuesday-Thursday in the office. This person is on a small team responsible for mitigating the risk of the health systems' vulnerability to cybersecurity attacks through the management of the SIEM tool....


  • Philadelphia, United States Insight Global Full time

    Day-to-Day:A large healthcare system is looking to hire an Info Security Engineer in the North Philadelphia location. The role is hybrid Monday/Friday WFH and Tuesday-Thursday in the office. This person is on a small team responsible for mitigating the risk of the health systems' vulnerability to cybersecurity attacks through the management of the SIEM tool....


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Description The Director of Community Engagement is a key position in helping oversee and implement community engagement campaigns by leading the creation and execution of place-based engagement plans and organizing based on a variety of City-Internal and external projects.   This position includes directly managing the Community Engagement...


  • Philadelphia, United States Doyle Security Services Full time

    Job DescriptionJob DescriptionDoyle Security Services, Inc. (DSS) is seeking experienced Security Officers in the Philadelphia area for an Educational Facility.PAY RATE: $16.50 / $17.00 July 1, 2024JOB SUMMARY: Observes and reports activities and incidents at an assigned client site, providing for the security and safety of client property and personnel....


  • Philadelphia, United States Triumph Enterprises Full time

    Triumph Enterprises is currently looking for a a highly skilled and motivated Information System Security Specialist to join a contract with a federal government client with an important mission. In this role, you will be responsible for ensuring the security and integrity of our organization's information systems. You will work closely with our IT and...


  • Philadelphia, United States Temple Health – Temple University Health System Full time

    Mitigates risk of the Health System's vulnerability to Cybersecurity attacks through the engineering/installation/management of a Security Information Event Management (SIEM) system. Participates in the implementation of the organization's strategic goals for information security. Participates in developing security standards/best practices for the...


  • Philadelphia, United States Temple Health – Temple University Health System Full time

    Mitigates risk of the Health System's vulnerability to Cybersecurity attacks through the engineering/installation/management of a Security Information Event Management (SIEM) system. Participates in the implementation of the organization's strategic goals for information security. Participates in developing security standards/best practices for the...


  • Philadelphia, United States Temple Health – Temple University Health System Full time

    Mitigates risk of the Health System's vulnerability to Cybersecurity attacks through the engineering/installation/management of a Security Information Event Management (SIEM) system. Participates in the implementation of the organization's strategic goals for information security. Participates in developing security standards/best practices for the...


  • Philadelphia, United States Temple Health – Temple University Health System Full time

    Mitigates risk of the Health System's vulnerability to Cybersecurity attacks through the engineering/installation/management of a Security Information Event Management (SIEM) system. Participates in the implementation of the organization's strategic goals for information security. Participates in developing security standards/best practices for the...


  • Philadelphia, United States Triumph Enterprises Full time

    Triumph Enterprises is currently looking for a a highly skilled and motivated Information System Security Manager to join a contract with a federal government client with an important mission. In this role, you will be responsible for ensuring the security and integrity of our organization's information systems. You will work closely with our IT and security...


  • Philadelphia, United States Triumph Enterprises Full time

    Triumph Enterprises is currently looking for a a highly skilled and motivated Information System Security Manager to join a contract with a federal government client with an important mission. In this role, you will be responsible for ensuring the security and integrity of our organization's information systems. You will work closely with our IT and security...