Jobs and Careers
CN

VP, Cyber Defense

CNA
United Statesfull_timeVerifiedPosted 7 Aug 2025
💰 $308,000/yr($194,000/yr$308,000/yr)

About the role

You have a clear vision of where your career can go. And we have the leadership to help you get there. At CNA, we strive to create a culture in which people know they matter and are part of something important, ensuring the abilities of all employees are used to their fullest potential. 

Reporting directly to the Global Chief Information Security Officer (CISO), this position has overall responsibility for all aspects of the Cyber Security Operations for CNA. The position will work closely with senior CNA leaders (SVPs and VPs) to provide strategic cyber security focus for the enterprise and define, plan, and direct all key cyber security operations initiatives within their group.

This role will identify, develop, implement, and maintain cyber-related processes that reduces CNA’s operational risks. This is a highly visible role that requires forward-thinking mindset, providing leadership to the cyber teams, while ensuring the team proactively analyzes and responds to all threats, deploying risk mitigation strategies, processes, and procedures.

This position develops and oversees an organization that is the first line of defense against nation-state-attackers, external criminal entities and malicious insiders. The person filling this role will need to work with and give direction to executives and senior leaders throughout the company during a major security event.

Partnering with executives and senior leaders, this person will have additional responsibility for crafting and framing all incident response and crisis recovery plans. This is a highly visible role that requires an extremely adaptable mindset that can react quickly to ever changing complex threat landscape providing leadership in the cyber security, infrastructure and application development areas in planning for and reacting to major security events.

JOB DESCRIPTION:

Essential Duties & Responsibilities

Performs a combination of duties in accordance with departmental guidelines:

  • Own the vision and strategy to implement a comprehensive Cyber Security Defense program that encompasses development and running all aspects of operational security capabilities

  • Effectively leads a team of Cyber Security leaders and Analyst over all aspects of Cyber Security Operations in the areas of Threat Detection and Incident Response, 24x7 Security Operation Center (SOC), Threat Intel & Hunt, Vulnerability Management, Penetration Testing, eDiscovery, Tabletop exercises and Application Security

  • Manages the reporting, investigation, and resolution of information security incidents. Works with and consults with senior business leaders such as the Chief Compliance Officer and the Office of General Counsel on potential data breaches. Oversees digital forensics activities to support Human Resources, Legal, and other key stakeholders while maintaining appropriate chain of custody

  • Leads, directs, and has full management accountability for the performance and development of subordinate staff in the Information Security Operations team (both employees and third-party outsourced employees, people leaders, Directors, and AVPs) consisting of multiple departments

  • Establishes and directs the design, development, testing and implementation of appropriate Information Security detective and incident response controls for the above areas

  • Leads strategic and special projects required for CNA to meet its objectives related to cybersecurity and detective technologies including the evaluation and implementation of new cybersecurity technology

  • Monitors, evaluates, and reports on cybersecurity operational performance and processes to assure the continuous improvement of the overall program

  • Oversees staff supporting the Office of the General Counsel in the collection, delivery, and presentation of electronic evidence regarding litigation for and against the company. Provides services to manage the full lifecycle of electronically stored information to those ends

  • Works closely with various Technology Leaders, Corporate Security & Safety to ensure common approach to threat and intelligence analysis, risk management methodologies, compliance reporting, crisis management, and other security services common to teams across CNA

  • Provides strategic insight and advice on emerging security threats to CNA and Loews-owned companies and internal depar

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CNA

View company profile →