Director, Cyber Security
Ziply Fiber · United States
Skills in this posting
Benefits
The posting
This is a remote position.
Position Title: Director, Cyber Security
Base Salary: $165,000 to $200,000 annually DOE
Bonus: Target annual bonus
Benefits: Medical, dental, vision, 401k, flexible spending account, paid sick leave and paid time off, parental leave, quarterly performance bonus, training, career growth and education reimbursement programs.
Ziply Fiber is a local internet service provider dedicated to elevating the connected lives of the communities we serve. We offer the fastest home internet in the nation, a refreshingly great customer experience, and affordable plans that put customers in charge.
As our state-of-the-art fiber network expands, so does our need for team members who can help us grow and realize our goals.
Our Company Values
Genuinely Caring: We treat customers and colleagues like neighbors, with empathy and full attention.
Empowering You: We help customers choose what is best for them, and we support employees in implementing new ideas and solutions.
Innovation and Improvement: We constantly seek ways to improve how we serve customers and each other.
Earning Your Trust: We build trust through clear, honest, human communication.
Job Summary
The Director, Cyber Security is a senior technology leader responsible for defining, advancing, and operationalizing an enterprise cybersecurity strategy and multi-year roadmap that protects the organization’s digital assets, systems, and sensitive information against an increasingly complex threat landscape.
This role provides both strategic direction and operational oversight of the cybersecurity function, ensuring alignment with business priorities, regulatory requirements, and risk tolerance. The Director partners closely with VP-level leadership and cross-functional stakeholders to embed cybersecurity into all aspects of the organization, enabling secure growth while maintaining a strong risk posture.
The successful candidate brings deep cybersecurity expertise, executive presence, and a demonstrated ability to lead organizations, influence senior stakeholders, and drive measurable improvements in security maturity across a dynamic, fast-paced environment.
Essential Duties and Responsibilities
The Essential Duties and Responsibilities listed below are a range of duties performed by the employee and not intended to reflect all duties performed.
People Leadership & Talent Management
·Build, lead, and scale a high-performing cybersecurity organization, including management of managers and senior individual contributors.
·Establish organizational priorities, operating models, and accountability frameworks to ensure consistent delivery of security outcomes.
·Create and sustain a culture of continuous learning, leadership development, and technical excellence across the cybersecurity function.
·Drive succession planning and long-term talent strategy, ensuring depth of leadership capability across the organization.
·Partner with executive leadership and HR to attract, develop, and retain top-tier cybersecurity leadership and technical talent.
Cybersecurity Strategy, Governance & Program Management
·Own and continuously evolve the enterprise cybersecurity strategy, ensuring alignment with corporate objectives, risk tolerance, and business growth initiatives.
·Establish and report on KPIs, metrics, and maturity models to measure program effectiveness, risk reduction, and return on investment.
·Serve as a key advisor to VP-level leadership, translating cybersecurity risks into clear, actionable business decisions.
·Oversee the development, implementation, and governance of enterprise cybersecurity policies, standards, and frameworks aligned to industry best practices.
·Own cybersecurity financial planning, including budgeting, forecasting, and investment prioritization.
·Drive continuous optimization of cybersecurity investments while maintaining strong protection and scalability.
Risk Management, Compliance & Third-Party Security
·Oversee enterprise-wide cyber risk management strategy, including risk identification, prioritization, and mitigation aligned to business objectives.
·Drive risk mitigation strategies embedded within business and technology processes.
·Ensure implementation and ongoing enforcement of security controls across infrastructure, cloud environments, and applications.
·Provide executive oversight of third-party risk management programs, including vendor security reviews and contractual requirements.
·Set compliance strategy across applicable regulatory frameworks (e.g., NIST, ISO, SOX, PCI DSS), ensuring audit readiness and operational adherence.
·Act as the escalation point for high-impact cybersecurity risks, partnering with senior leadership on mitigation decisions.
Incident Response, Business Continuity & Disaster Recovery
·Oversee enterprise incident response capabilities, ensuring readiness, governance, and continuous improvement.
·Provide senior leadership during major cybersecurity incidents, coordinating across business and technology stakeholders.
·Drive executive-level post-incident reviews, including root cause analysis and long-term remediation strategies.
·Partner with Technology leadership to integrate cybersecurity into enterprise business continuity and disaster recovery planning.
·Ensure ongoing testing, validation, and improvement of resilience capabilities through simulations and exercises.
Security Operations, Architecture & Technology Enablement
·Provide strategic oversight of security operations, including SOC capabilities, monitoring, detection, and response maturity.
·Define and drive the cybersecurity technology roadmap, including evaluation and adoption of emerging solutions.
·Ensure alignment of cybersecurity architecture with enterprise infrastructure, cloud platforms, and application strategies.
·Establish and enforce security architecture standards across all environments, including network, endpoint, cloud, and data systems.
·Ensure implementation of data protection strategies, including encryption, DLP, and secure data handling practices.
·Direct the engineering, deployment, and lifecycle management of the enterprise security technology stack, including SIEM platforms, IDS/IPS, EDR/XDR, firewalls, VPNs, and vulnerability scanning and penetration testing tooling.
·Oversee the secure architecture and hardening of core infrastructure services — including DNS, DHCP, and identity and access management platforms such as LDAP and Active Directory — and enforce system hardening baselines such as CIS Controls, DISA STIGs, and USGCB.
·Drive the maturation of 24/7 SOC capabilities and the enterprise adoption of zero-trust architecture and AI-driven threat detection and response automation.
·Ensure secure configuration and protection across cloud platforms (AWS, Azure, and Google Cloud), IoT devices, and mobile endpoints.
AI Governance & Emerging Technology Risk
·Sponsor and set the strategic direction for the enterprise AI governance program for the secure and responsible adoption of artificial intelligence and machine learning across the organization, providing executive oversight of the supporting policies, standards, and acceptable-use guidelines.
The PivotHop read
- What a security engineer actually earnsmedian, seniority, by country
- Alternative careers for a security engineerevery measured route out
- Penetration Tester → Security Engineer51% readiness
- All open security engineer rolesthe full board
Where these skills also reach
- 79 open penetration tester roles78% readiness from security engineer
- 358 open network engineer roles61% readiness from security engineer
- 700 open systems administrator roles52% readiness from security engineer
- 1961 open systems engineer roles51% readiness from security engineer
More security engineer roles
Staff Cyber Threat Intelligence Analyst at TRM LabsUK, USA · RemoteTodayApply
Product Security Engineer at YipitDataUSA · RemoteTodayApply
Cybersecurity Engineer (m/f/d) at IsaraerospaceParsdorf, BavariaTodayApply
Sr Cloud Security Engineer I at American Specialty Health, Inc.United States · Remote$146k–$170kTodayApply
Global Security Analyst at TranscomCroatia; Estonia; Lithuania; Portugal; Spain · RemoteTodayApply
Backfilled listing, refreshed with the nightly scrape; the employer has not claimed it yet. Are you the employer? Claim this listing and it can be featured to the candidates whose skills already reach it, first month free.