Director, Cybersecurity Compliance

Cardworks

South Jordan, UT, US
Base: $151,165 to $167,961 (ny metro/ny state); bo...
Hybrid
Information security risk management
Vendor security assessment programs
Cyber risk identification and mitigation
The Director oversees and performs information security risk assessments across internal systems, business processes, third-party vendors, and enterprise projects to ensure risks are effectively identified, rated, and managed

Job Summary

  • The Director oversees and performs information security risk assessments across internal systems, business processes, third-party vendors, and enterprise projects to ensure risks are effectively identified, rated, and managed.
  • Lead, mature, and operationalize the organization’s information security risk management and vendor security assessment programs, providing strategic and hands-on leadership.
  • The company offers a competitive total rewards package comprised of a competitive base rate of pay, variable pay incentive programs, and a comprehensive benefit suite.

Matching Summary

The Director oversees and performs information security risk assessments across internal systems, business processes, third-party vendors, and enterprise projects to ensure risks are effectively identified, rated, and managed.

Salary

Base: $151,165 to $167,961 (NY Metro/NY State); Bonus/Equity: Bonus Target or Variable Pay Incentive Program; Benefits: Medical, Dental, Vision, 401(k) with match, etc.

Skills & Requirements

Must-have

  • Information security risk management
  • Vendor security assessment programs
  • Cyber risk identification and mitigation
  • NIST Cybersecurity Framework
  • PCI DSS compliance
  • Third-party vendor risk management

Nice-to-have

  • Proactive security risk management culture
  • Continuous improvement and automation
  • Trusted advisor and credible authority
  • Collaboration across diverse stakeholders

Key Requirements

  • 8+ years experience in information security
  • 3+ years leadership/program management
  • Experience with CRI Profile, NIST CSF, CIS-CSC, PCI DSS
  • Familiarity with GRC platforms
  • Bachelor's or Master's degree preferred
  • CRISC, CISM, CISSP, or CISA preferred

Work Rights

Not specified

Tailored Resume

Cover Letter