Director, Global Cyber Security
J.M. Huber CorporationAbout the role
Portfolio Business: Corporate
J.M. Huber Corporation is one of the largest privately held, family-owned companies in the United States. Established in 1883, we are a diversified, global supplier of specialty and commodity chemicals, hydrocolloid solutions, engineered wood products and natural resources to customers spanning a wide variety of industries. With approximately $3 billion in sales and 4,000 employees worldwide, we have a material presence in more than 20 countries.
Position Summary
Reporting to the EVP & CIO, the Director of Global Cyber Security is a member of Huber's Enterprise Risk Management Committee and the IT Management Council (ITMC). The Director is responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. The Information Security Leader will proactively work with the CIO, business unit leaders, Senior Management and the Board of Directors to implement practices that meet defined objectives and standards for information security. He or she will also oversee a variety of IT-related risk management activities.
Flexible Work Arrangement: This position is eligible for a hybrid work arrangement with some days in the Atlanta, GA office and some days working from home each week.
Principal Duties & Responsibilities
- Interface with IT executives and business partners to set the strategic direction of the enterprise IT security program, ensure integration with business systems/applications strategies, introduce evolutionary concepts, and solicit feedback to ensure alignment with the business goals
- Develop, maintain, and publish up-to-date information security policies, standards, and guidelines. Oversee the approval, training, and dissemination of security policies and practices
- Facilitate information security governance through the implementation of a hierarchical governance program across Enterprise and BU IT, including managing the information security steering committee
- Provide strategic risk guidance for IT projects, including evaluation & recommendation of technical controls
- Liaise with IT architecture teams to ensure alignment between the security and enterprise architecture and life cycle management
- Lead and Manage the security incident management process
- Monitor the external threat environment for emerging threats & advise relevant stakeholders on the appropriate risks and courses of action.
- Liaise with external agencies, such as law enforcement and other advisory bodies as necessary, to ensure that the organization maintains a strong security posture and is able to effectively respond to threats and incidents.
- Coordinate the use of external resources involved in the information security program, including, but not limited to, interviewing, negotiating contracts and fees, and managing external resources and contract execution.
- Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitate appropriate resource allocation, and increase the maturity of the security program and its staff.
- Works closely with the Global IT Infrastructure Operations organization and Business Unit Applications organizations to ensure systems security is appropriately considered at onset of initiatives and throughout technology lifecycle
- Coordinate & manage information security and risk management awareness training programs for all employees, contractors, and approved system users
- Define and facilitate the information security risk assessment process, including the reporting and oversight of treatment efforts to address actionable findings.
- Mentors the performance and career development of IT staff members
Education, Specialized Knowledge & Required Skills
- Bachelor's degree in Computer Science, Information Security or closely related field required
- 10+ years of experience in a combination of IT Infrastructure management, risk management and/or information security.
- 3+ years of experience in a senior leadership role
- Strong leadership and teambuilding skills coupled with effective business acumen
- Proven track record and experience in developing information security policies and procedures, as well as successfully executing programs that meet the objectives of excellence in a dynamic environment
- Poise and ability to act calmly and competently in high-pressure, high-stress situations
- Knowledge of common information security management frameworks, such as ISO/IEC 27001, ITIL, COBIT and ones from NIST
- Project management skills: financial/budget management, scheduling, and resource management
- A
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s