VP, Cyber Defense
CNAAbout the role
You have a clear vision of where your career can go. And we have the leadership to help you get there. At CNA, we strive to create a culture in which people know they matter and are part of something important, ensuring the abilities of all employees are used to their fullest potential.
Reporting directly to the Global Chief Information Security Officer (CISO), this position has overall responsibility for all aspects of the Cyber Security Operations for CNA. The position will work closely with senior CNA leaders (SVPs and VPs) to provide strategic cyber security focus for the enterprise and define, plan, and direct all key cyber security operations initiatives within their group.This role will identify, develop, implement, and maintain cyber-related processes that reduces CNA’s operational risks. This is a highly visible role that requires forward-thinking mindset, providing leadership to the cyber teams, while ensuring the team proactively analyzes and responds to all threats, deploying risk mitigation strategies, processes, and procedures.
This position develops and oversees an organization that is the first line of defense against nation-state-attackers, external criminal entities and malicious insiders. The person filling this role will need to work with and give direction to executives and senior leaders throughout the company during a major security event.
Partnering with executives and senior leaders, this person will have additional responsibility for crafting and framing all incident response and crisis recovery plans. This is a highly visible role that requires an extremely adaptable mindset that can react quickly to ever changing complex threat landscape providing leadership in the cyber security, infrastructure and application development areas in planning for and reacting to major security events.
JOB DESCRIPTION:
Essential Duties & Responsibilities
Performs a combination of duties in accordance with departmental guidelines:
Own the vision and strategy to implement a comprehensive Cyber Security Defense program that encompasses development and running all aspects of operational security capabilities
Effectively leads a team of Cyber Security leaders and Analyst over all aspects of Cyber Security Operations in the areas of Threat Detection and Incident Response, 24x7 Security Operation Center (SOC), Threat Intel & Hunt, Vulnerability Management, Penetration Testing, eDiscovery, Tabletop exercises and Application Security
Manages the reporting, investigation, and resolution of information security incidents. Works with and consults with senior business leaders such as the Chief Compliance Officer and the Office of General Counsel on potential data breaches. Oversees digital forensics activities to support Human Resources, Legal, and other key stakeholders while maintaining appropriate chain of custody
Leads, directs, and has full management accountability for the performance and development of subordinate staff in the Information Security Operations team (both employees and third-party outsourced employees, people leaders, Directors, and AVPs) consisting of multiple departments
Establishes and directs the design, development, testing and implementation of appropriate Information Security detective and incident response controls for the above areas
Leads strategic and special projects required for CNA to meet its objectives related to cybersecurity and detective technologies including the evaluation and implementation of new cybersecurity technology
Monitors, evaluates, and reports on cybersecurity operational performance and processes to assure the continuous improvement of the overall program
Oversees staff supporting the Office of the General Counsel in the collection, delivery, and presentation of electronic evidence regarding litigation for and against the company. Provides services to manage the full lifecycle of electronically stored information to those ends
Works closely with various Technology Leaders, Corporate Security & Safety to ensure common approach to threat and intelligence analysis, risk management methodologies, compliance reporting, crisis management, and other security services common to teams across CNA
Provides strategic insight and advice on emerging security threats to CNA and Loews-owned companies and internal depar
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s