Jobs and Careers
JE

Sr. Director, Global Security & Compliance

JELD-WEN
United Statesfull_timeVerifiedPosted 7 Dec 2023
💰 $299,000/yr($175,900/yr$299,000/yr)

About the role

JELD-WEN is currently seeking a Sr. Director, Global Security & Compliance to join our growing team.

 

The Opportunity

 

As Sr. Director of Global Information Security & Compliance will be responsible for building, developing and managing the information security and compliance team for JELD-WEN and is also responsible for all aspects of information security including strategy, architecture, security policies, security initiatives, internal and external audits and compliance efforts. This individual advises the senior management in the development, implementation and maintenance of a company wide information security infrastructure and services and ensures appropriate control objectives for system integrity, availability and reliability, confidentiality, accountability, and assurance within the context of company’s risk tolerance. This role is also responsible for alignment and conformance with enterprise policy standards, which include monitoring metrics, response integration and escalation and various risk analysis. This role will report to the Chief Information Security Officer.

 

What You Will Do

 

  • Develop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure that integrity, confidentiality, and availability of information is owned, controlled, or processed by the organization.
  • Build and manage a strong cybersecurity organization able to keep pace with a rapidly evolving and demanding regulatory environment, diverse threat landscape and robust technology capabilities.
  • Demonstrate strong technical leadership, people management skills and analytical skills with thorough understanding of information security, development and successful problem definition, decomposition, estimation, and resolution.
  • Recommend, draft, and approve security policies, standards, and processes. Partner with cross functional teams to validate compliance with those policies, standards, and processes.
  • Develop and implement JELD-WEN’s information security risk management and vulnerability management programs.
  • Create, communicate, and implement a risk-based process for vendor risk management, including the assessment and treatment for risks that may result from partners, consultants, and other service providers.
  • Manage and contain information security incidents and events that protect JELD-WEN’s IT assets, intellectual property, regulated data, and the company’s reputation.
  • Monitor the external threat environment for emerging threats and advise relevant stakeholders on the appropriate courses of action.
  • Develop strategies and plans to ensure timely and accurate restoration of JELD-WEN’s critical infrastructure in the event of serious disruption.
  • Lead security training and awareness to ensure employees receive ongoing security training.
  • Develop a metric and reporting framework to measure the efficiency and effectiveness of the security program, facilitate appropriate resource allocation and increase the maturity of the security.
  • Build and maintain a central IT general controls framework mapped to industry with the best practices and regulatory requirements which defines the key IT controls that are performed across IT globally.
  • Conduct ongoing control assessments to validate compliance with policy, controls framework and compliance with regulations and standards.
  • Establish, maintain, and promote awareness of all IT policies for JELD-WEN.
  • Serve as the liaison between internal audit and the IT organization to assist coordinate audits, reviewing scope, reviewing reports and determine appropriate and relevant agreed actions.
  • Develop and manage information security budgets and monitor them for variances.
  • Perform related duties and fulfill responsibilities as required.

 

Who You Are

 

  • Bachelor’s Degree in computer science, information systems or related field. 
  • Minimum 10 years of experience in a combination of risk management, information security and IT jobs. At least four must be in a senior leadership role.
  • Experience in the implementation and management of risk management programs and working knowledge of information security risk management frameworks such as ISO 27001, NIST, COBIT etc.
  • Demonstrated experience in delivering comprehensive solutions to complex security issues on a global scale.
  • Experience in financial, heath care or highly regulated industry

 

How You Stand Out

 

  • Preferred: CISM or similar information security certificate (e.g., CISSP, CISA, CRISC, CEH)
  • Strong verbal and written communication skills
  • Excellent presentation skills
  • Experience in working with remote\ distributed project teams.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

JELD-WEN

View company profile →