Sr Director, Cyber Security
Wheels UpAbout the role
Overview
At Wheels Up, we're proud to be a global leader in on-demand private aviation. As one of the largest companies in the industry and a strategic partner of Delta Air Lines – we are committed to making private air travel safe, reliable, and enjoyable. With a diverse fleet of owned aircraft plus a global network of trusted charter operators, we offer our customers access to the right aircraft for their needs and the ability to fly on their terms.
And it doesn’t stop at private flights. Wheels Up also provides freight services, safety and security solutions, and managed services to individuals, businesses, government agencies, and more. Regardless of how, when or where you want to fly, our mission is simple; deliver a premium, personalized aviation experience for every customer.
Role Overview: What You’ll Be Doing
In this role, the Senior Director of Cyber Security is responsible for leading and executing the company’s end-to-end cyber defense strategy. This role owns all aspects of cybersecurity operations, including threat detection and response, incident forensics, security monitoring, third-party risk management, and employee security education. The role serves as the senior authority on cybersecurity risk and may function as a de facto or former Chief Information Security Officer (CISO) within a small to mid-sized organization.
We anticipate closing submissions for this role by 5/18/2026 at 4:00 PM Eastern Time. If the deadline is extended, we will update this job posting accordingly.
Responsibilities
Your Key Responsibilities (Essential Functions)
Cybersecurity Strategy & Governance
- Own and continuously evolve the enterprise cybersecurity strategy aligned with business objectives and risk tolerance.
- Establish and maintain cybersecurity policies, standards, procedures, and governance frameworks.
- Define the long-term security roadmap covering people, process, and technology investments.
- Serve as the primary executive advisor on cybersecurity risk to senior leadership and, where applicable, the Board.
Security Operations, Monitoring & Threat Management
- Oversee day-to-day cybersecurity operations and real-time monitoring of security events across all environments.
- Ensure effective operation of security technologies including SIEM, EDR, IAM, vulnerability management, and threat intelligence tools.
- Proactively identify, assess, and remediate vulnerabilities and emerging threats.
- Establish and track security KPIs and metrics to measure program effectiveness and maturity.
Incident Response & Digital Forensics
- Lead all cybersecurity incident response activities from detection through recovery and post-incident review.
- Direct digital forensics investigations related to data breaches, insider threats, or policy violations.
- Maintain, test, and improve incident response playbooks and escalation procedures.
- Coordinate response efforts with IT, Legal, Compliance, HR, external partners, and law enforcement as required.
Third-Party Risk & Vendor Management
- Own relationships with cybersecurity vendors, MSSPs, and external consultants.
- Evaluate, select, and manage security tools and service providers for effectiveness and scalability.
- Lead third-party risk assessments and vendor security reviews.
- Ensure ongoing monitoring of vendor performance and compliance with security requirements.
Employee Security Awareness & Education
- Design and oversee a comprehensive cybersecurity awareness and training program.
- Ensure completion of employee security training, annual certifications, and policy acknowledgements.
- Promote a strong security culture through onboarding, communications, and leadership engagement.
- Continuously adapt education programs to address evolving threats such as phishing and social engineering.
Risk Management, Compliance & Audit
- Conduct regular cybersecurity risk assessments and maturity evaluations.
- Ensure compliance with applicable regulatory, legal, and contractual requirements.
- Partner with internal and external auditors to support security audits and remediation.
- Maintain documentation and evidence for audits, certifications, and regulatory inquiries.
Leadership, Collaboration & Reporting
- Lead, mentor, and develop cybersecurity staff and managed service teams.
- Collaborate with I
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s