- Company Name
- Quadient
- Job Title
- VP, Chief Information Security Officer
- Job Description
-
Job Title: VP, Chief Information Security Officer
Role Summary:
Senior executive responsible for shaping and executing the enterprise-wide information security strategy, with a primary focus on AI security, cyber risk management, application security, and regulatory compliance. Leads the security posture across cloud, on‑premise, and hybrid environments, ensuring secure innovation through integration of security into product development, data science, and AI initiatives.
Expectations:
- Develop and implement a comprehensive security program that protects data, systems, AI models, applications, and infrastructure while driving innovation.
- Serve as the executive sponsor for cybersecurity, application security, infrastructure security, and compliance initiatives.
- Demonstrate proven leadership in building and scaling security operations, DevSecOps, and compliance frameworks in a complex, global organization.
Key Responsibilities:
- Define and execute the enterprise information security, AI security, and compliance strategy aligned with business goals and risk appetite.
- Design and enforce policies for AI model security, data governance, and AI risk management, including prevention of model poisoning, prompt injection, data leakage, and adversarial attacks.
- Oversee threat detection, incident response, and vulnerability management for cloud and on‑premise systems.
- Lead application security program: secure coding standards, automated scanning, penetration testing, and secure CI/CD integration.
- Maintain compliance with SOX IT General Controls, GDPR, CCPA, HIPAA, PCI‑DSS, NIST AI RMF, EU AI Act, and other relevant regulations.
- Collaborate with finance, audit, and internal controls teams to ensure IT control effectiveness and audit readiness.
- Drive security awareness, training, and secure AI usage guidelines across the enterprise.
- Define and monitor KRIs and KPIs to gauge program maturity and effectiveness.
- Partner with VP of DevOps & Platforms, VP of Program Management, VP of Digital Intelligence & AI, and VP of Infrastructure & Service Management to embed security in all solutions.
Required Skills:
- Extensive experience (10+ years) in cybersecurity, with 5+ years in senior leadership.
- Proven ability to build and lead enterprise security programs for cloud, on‑premise, and hybrid environments.
- Deep expertise in application security, DevSecOps, software security lifecycle, and secure coding practices.
- Strong knowledge of AI/ML security risks, model governance, bias detection, and secure APIs.
- Proficiency in network security, identity & access management, and physical security.
- Familiarity with SOX IT General Controls, compliance testing, and audit processes.
- Excellent communication and stakeholder influence skills, capable of engaging senior executives and board members.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (Master’s preferred).
- Relevant certifications: CISSP, CISM, CISA, ISO 27001 Lead Implementer, NIST Cybersecurity Framework, or equivalent.