- Company Name
- Genius Sports
- Job Title
- VP of Cyber Security
- Job Description
-
Job title: VP of Cyber Security
Role Summary: Lead the design, execution, and continuous improvement of a multi‑year global cyber security strategy. Drive transformation of security operations, architecture, and culture to embed robust, automated, and user‑centric controls across people, processes, and technology.
Expectations:
- Deliver a 3‑year security roadmap that elevates maturity in people, processes, and technology.
- Achieve measurable improvements in detection quality, response efficiency, and risk posture.
- Build and mentor a high‑performance security team that partners with engineering, legal, and compliance.
- Ensure alignment with ISO 27001, SOC 2, NIST CSF, and other relevant frameworks.
Key Responsibilities:
- Optimize Security Operations Center (SOC) and security operations capabilities across internal teams and managed partners.
- Enhance SIEM, EDR, email, identity, and cloud detection by reducing noise and improving signal fidelity.
- Design, test, and operationalize incident response playbooks, escalation models, and automation workflows.
- Architect a zero‑trust identity framework, implement adaptive MFA, passwordless access, and secure endpoint strategies.
- Secure collaboration suites (Google Workspace/Microsoft 365), SaaS, and DevOps environments through least‑privilege access and governance.
- Lead security engineering focused on tooling effectiveness, telemetry, and automation; rationalize tool stack and embed security guardrails in CI/CD.
- Maintain evidence collection, reporting, and assurance processes; automate compliance documentation.
- Strengthen third‑party and supplier security through risk‑based assessment and continuous monitoring.
- Foster a security‑enabled culture: communicate risks in clear, actionable terms, and build trust across product, engineering, legal, and privacy functions.
Required Skills:
- Proven leadership in multi‑year cyber security modernization in fast‑moving, global environments.
- Deep expertise in zero‑trust architectures, cloud‑native security, identity & access management, endpoint protection, and DevSecOps.
- Strong knowledge of NIST CSF, ISO 27001, SOC 2, and risk‑based governance.
- Experience with SIEM, EDR, IAM (e.g., Entra/WorkOS), and secure configuration baselines (Intune, Jamf, MDM).
- Advanced incident response design and automation capabilities.
- Excellent communication, stakeholder management, crisis leadership, and people development skills.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (Master’s preferred).
- Professional certifications such as CISSP, CISM, CCSP, or equivalent are a plus.