Job Openings
Vice President of IT Security
About the job Vice President of IT Security
Our client is a pioneer in online trading. They enable customers to trade on the worlds financial markets. Focused on customer-centric solutions, they aspire to be the worlds leading online trading service provider.
They are looking to add to their growing team a VP of IT Security. The job holder will be responsible for the IT security of well over 1200 endpoints. 200 on-prem and cloud applications and several hundreds of servers spread across 5 continents. To be successful in this role, you must be intimately familiar with cloud technologies, coding, offensive and defensive security and security awareness.
Key Responsibilities:
- Create, advocate and hands-on implement an IT security vision, strategy, and roadmap that keeps our business secure, competitive and proactive.
- Manage and expand a global team of approximately 25 security engineers, researchers, analysts and awareness specialists in all aspects. Note the word global.
- Achieve and maintain level 4 in both the security maturity model and the security awareness maturity model. Think of incredibly cool projects and devious security awareness exercises.
- Work very closely with counterparts in IT Administration, Disaster Recovery, AIM, DevOps, WinOps and IT Development to ensure that IT Security becomes part of the DNA of everything done.
- Over-communicate the need for security at every opportunity!
Key Requirements:
- 15+ years of leadership experience running security programs and teams in a mid-to-large-sized company.
- Extensive hands-on experience with cloud infrastructure, automation, containerization, DevSecOps, virtualization, etc.
- Real-world experience with penetration testing (white box, black box, and grey box).
- Ability to hold ground during code reviews, and familiarity with secure coding practices.
- Broad knowledge about social engineering threats and tests (phishing attacks, tailgating, dumpster diving, endpoint security, etc.)
- Exposure to compliance and regulatory frameworks (e.g. SOX, NIST, ISO 27001, PCI DSS)
- Excellent written and spoken English communication skills.