Назад
Company hidden
2 дня назад

AVP, Information Security (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
c_level
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
AVP, Information Security (Cybersecurity): Leading enterprise cybersecurity strategy and operations for an insurance company with an accent on cyber risk management, regulatory compliance, security governance, and incident response. Focus on directing the SOC, validating technical controls through vulnerability assessments and penetration testing, and advising executive leadership and the board on evolving cyber threats.

Location: Farmington Hills, Michigan, United States; 3-day hybrid schedule with onsite work required at the Farmington Hills office

Company

hirify.global is a property and casualty insurance company serving mid-sized commercial enterprises in construction, manufacturing, and healthcare.

What you will do

  • Lead enterprise cybersecurity strategy, operations, governance, and risk management.
  • Advise the CIO, executive leadership, board of directors, and regulators on cybersecurity posture and risk.
  • Develop and maintain security policies, standards, controls, metrics, and regulatory compliance programs.
  • Oversee the SOC, including threat detection, threat hunting, incident response, digital forensics, and vulnerability management.
  • Lead cyber incident investigations, tabletop exercises, security audits, and third-party risk management.
  • Manage security staff, vendors, budgeting, succession planning, and cross-functional collaboration with ERM and business continuity teams.

Requirements

  • At least 10 years of IT experience, including 5 years in management with budgeting and forecasting responsibilities.
  • At least 8 years of information security experience across applications, systems, networks, and heterogeneous architectures.
  • Degree in Computer Science, a related field, or equivalent education and experience.
  • One or more relevant certifications, such as CISSP, CCISO, CISM, CRISC, GSEC, CEH, Security+, or SSCP.
  • Expertise in security frameworks, audit processes, risk management, cloud security, DevSecOps, business continuity, and vendor management.
  • Strong executive communication, analytical judgment, strategic planning, and incident response capabilities.

Nice to have

  • Master’s degree in Cybersecurity, Information Assurance, Business Administration, or a related discipline.
  • Insurance or financial services industry experience.
  • Knowledge of NAIC, GLBA, HIPAA, NYDFS Cybersecurity Regulation, MI DIFS, and state privacy requirements.

Culture & Benefits

  • Competitive base pay and performance-based incentive pay.
  • Health and welfare benefits, a 401(k) savings plan with profit sharing, and paid time off.
  • Flexible work arrangements supporting work-life balance.
  • Environment focused on collaboration, professional growth, and employee development.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →