Jobs and Careers
EN

Principal Director, Cyber Security Operations

Envestnet
United States, United Statesfull_timeVerifiedPosted 4 Nov 2024
💰 $234,000/yr($156,000/yr$234,000/yr)

About the role

Envestnet is seeking a passionate and talented Principal Director, Cyber Security Operations to join our Data and Analytics team.

Envestnet is transforming the way financial advice and wellness are delivered. Our mission is to empower advisors and financial service providers with innovative technology, solutions, and intelligence to make financial wellness a reality for everyone.

Since our founding 20 years ago, we are fully vested in helping people live an intelligent financial life. If you love the idea of working in a Fintech company with the environment and excitement of a start-up where you are making everyday impact - then read on.

Job Summary:

Yodlee is seeking a highly experienced and strategic Principal Director of Cyber Security Operations. This role will be responsible for overseeing all aspects of our security operations.

Job Responsibilities:

  • Leadership, Strategy and Planning:
    • Develop and execute a comprehensive cyber security strategy aligned with organizational goals.
    • Conduct risk assessments and develop mitigation plans to address identified risks.
    • Plan and manage the cyber security budget, ensuring efficient allocation of resources.
    • Collaborate with cross-functional teams, including IT, development, and business units, to ensure security is integrated into all aspects of the organization.
    • Communicate effectively with executive leadership, providing regular updates on security posture and initiatives.
    • Responsible for overseeing the implementation, measurement, and continuous improvement of security operations across the organization. 
    • Establish key performance metrics (KPIs) to track the effectiveness of incident response, vulnerability management, threat intelligence, and compliance activities.
  • Technology and Innovation:
    • Evaluate and implement cutting-edge cybersecurity technologies and tools to enhance the organization’s security capabilities.
    • Lead the selection and deployment of advanced cybersecurity technologies, such as AI-driven security analytics, threat intelligence platforms, and automated incident response systems.
    • Ensure that the organization’s IT infrastructure is properly secured, with adequate encryption, firewalls, and access controls in place.
  • 24x7 Security Monitoring:
    • Lead the Security Operations Center (SOC) to ensure continuous, around-the-clock monitoring and analysis of security events.
    • Develop and implement SOC processes and procedures to enhance detection and response capabilities and experience with Expel and Crowdstrike Falcon.
    • Oversee the deployment and management of security information and event management (SIEM) systems, including experience with Splunk.
  • Platform Certifications:
    • Ensure compliance with relevant security certifications and standards for our platform.
    • Manage the certification process and maintain up-to-date documentation.
  • Threat Hunting:
    • Develop and implement proactive threat hunting strategies to identify and mitigate potential threats.
    • Collaborate with the SOC team to enhance threat detection and response capabilities.
  • Incident Investigation:
    • Lead the incident response team in the investigation and resolution of security incidents.
    • Conduct thorough post-incident analysis and implement lessons learned to improve security posture.
  • Network and Systems Security Standards:
    • Develop and enforce security standards and best practices for network and systems security.
    • Ensure the security of on-premises and cloud-based infrastructure, including AWS.
  • Infrastructure Vulnerability Management:
    • Develop and manage a comprehensive infrastructure vulnerability management program.
    • Conduct regular vulnerability assessments and penetration testing.
    • Collaborate with IT and development teams to remediate identified vulnerabilities.
  • Threat Monitoring:
    • Implement and manage threat monitoring tools and processes to detect and respond to security threats.
    • Integrate threat intelligence into security operations to enhance situational awareness

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Envestnet

View company profile →