Назад
Company hidden
обновлено 2 дня назад

Principal, Corporate Information Security (Cybersecurity)

134 400 - 165 000$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal, Corporate Information Security (Cybersecurity): Acting as a Business Information Security Officer for internal business verticals by evaluating security postures, assessing risk maturity, and guiding secure application and policy launches with an accent on enterprise risk management, security architecture, governance, and executive risk communication. Focus on translating technical vulnerabilities into business impact, operationalizing COBIT, NIST CSF, or ISO 27001 controls, and evaluating emerging AI security threats.

Location: Dallas, TX, United States

Annual pay range: USD 134,400–165,000

Company

hirify.global provides property intelligence, data, connectivity, and technology solutions across the property industry and has approximately 5,000 employees globally.

What you will do

  • Act as the primary security advisor and Business Information Security Officer for assigned business verticals, initially supporting the Insurance vertical.
  • Review application architecture, vulnerability data, security exceptions, and risk maturity before launches and policy changes.
  • Translate technical vulnerabilities into operational and financial business impact for executive stakeholders.
  • Track remediation activities and conduct governance reviews of identity and access controls.
  • Participate in incident response and change control oversight.
  • Help transition security operations from an ad-hoc state to a defined and managed model while mentoring others and building a security-first culture.

Requirements

  • Hands-on experience in enterprise risk management, internal security architecture, threat modeling, compensating controls, and defense-in-depth principles.
  • Experience advising executives, negotiating security requirements, and communicating complex technical risks in clear business terms.
  • Working knowledge of COBIT, NIST CSF, or ISO 27001 governance frameworks.
  • Hands-on expertise with Qualys and Veracode for vulnerability and scan management.
  • Experience with executive risk dashboards using Google Looker/Looker Studio, Tableau, or Power BI, plus enterprise GRC platforms such as Archer GRC and security ratings platforms such as BitSight or SecurityScorecard.
  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or a related field, or 8+ years of equivalent senior security experience; CISSP certification is required.

Nice to have

  • Experience with Black Duck.
  • Familiarity with SABSA security design models or a SABSA certification.
  • CISM certification.
  • Experience evaluating enterprise AI security controls, including prompt injection, rogue AI, AI agents, zombie agents, and AI data pipeline governance.

Culture & Benefits

  • Flexible working model, competitive time off, and health coverage with mental health and wellness support.
  • Generous PTO, 11 paid holidays, well-being time, and volunteer time off.
  • Up to 16 weeks of fully paid parental leave and a baby stipend.
  • 401(k) with company match and vesting after one year.
  • $400 annual well-being stipend and tuition assistance of up to $5,250.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →