Jobs and Careers
CA

VP, Global Strategy and Governance

Carnival Corporation & plc
United Statesfull_timeVerifiedPosted 20 May 2025

About the role

The Vice President, Governance & Strategy serves as a trusted advisor and strategic integrator for the Global Chief Information Security Officer (CISO), playing a dual role that blends executive leadership, operational excellence, and enterprise-wide coordination. This position leads the Office of the CISO, overseeing key functions such as Security Governance, Risk & Compliance (GRC), Cybersecurity Strategy & Planning, and Change Enablement, while also serving as a central point of alignment across cybersecurity pillars and Brand Information Security Officers (BISOs).In this role, the VP ensures that enterprise security strategy is effectively translated into actionable initiatives, tracked against meaningful KPIs, and communicated with clarity across business and technical stakeholders. The role supports the CISO in driving execution of high-priority initiatives, fostering cross-functional integration, and sustaining a consistent operating rhythm across the global cybersecurity program. The VP also champions talent management, employee engagement, and a unified security culture across the GISCS organization. This position requires a unique blend of leadership presence, operational rigor, strategic foresight, and cross-functional agility to ensure that cybersecurity remains a business enabler across Carnival Corporation’s diverse brand portfolio and technology landscape.

Essential Functions:

  • Security Governance & Information Governance: Define and drive the global cybersecurity governance model. Ensure consistent frameworks, policies, and standards across all regions and brands. Lead regulatory compliance strategy, internal/external audits, and interface with legal and privacy stake                                                               
  • Risk Management & Compliance: Own and mature the enterprise risk management program for cybersecurity. Oversee security risk assessments, third-party risk management, data privacy alignment, and executive risk reporting. Ensure risk-based decision-making is embedded into all security and business initiatives.                                                                    
  • Strategic Planning & KPI Management: Lead the development of the multi-year security strategy and annual operating plans. Track execution through KPIs/KRIs, dashboards, and executive reports to ensure the program is aligned with enterprise priorities and delivering measurable value.
  • Change Enablement & Communications: Oversee change management and organizational communications for security programs. Ensure end-user adoption, behavior change, and stakeholder alignment for all major security initiatives. Partner with corporate comms, HR, and brand teams to embed cybersecurity into the culture. 
  • Employee Experience & Talent Management: Lead workforce strategy for GCS, including recruiting, onboarding, retention, career pathing, succession planning, training, and performance management. Create an inclusive culture that promotes diversity and continuous learning.  
  • Cross-Functional Collaboration: Collaborate with cross-functional teams, including Security Domains, IT, Legal, and compliance, to integrate cybersecurity measures seamlessly into business operations. Participate in cross-functional meetings to address brand-specific cybersecurity concerns and requirements.                   
  • Executive and Board Engagement: Prepare and deliver updates to executive committees and the Board on program strategy, maturity, risks, and incidents. Partner with the CISO to shape the security narrative across the enterprise.                                                                       
  • Budget Ownership: Develop, manage, and optimize the security budget across owned functions. Ensure alignment with business growth and cost efficiency goals.
  • Special Projects & Research: Lead ad hoc projects for the CISO such as strategic assessments, external benchmarking, vendor analysis, or executive-level briefings. 

Qualifications:

  • A minimum of 10 years of managerial and leadership experience in global-scale cybersecurity organizations.
  • Previously acted as senior member of information security team in large organization.  Proven leadership experience in multi-brand business environments.
  • Bachelor's degree or higher in the field of Engineering, Computer Science, Business Informatics, Information Technology, Information security or equivalent advance technology field of study. Management degrees are a plus. 
  • Desired to have one of or more of the following

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Carnival Corporation & plc

View company profile →