Role: Cybersecurity Lead
Location:聽HybridRole (Boston, MA, West Palm Beach, FL) / Remote with Travel
Duration:聽6 Month Contract To Hire.
聽
Position Summary
The Cybersecurity Lead is responsible for developing theorganization's cybersecurity strategy, ensuring the confidentiality, integrity,and availability of company and customer information. This role providestechnical leadership across product security, enterprise security, cloudsecurity, and compliance while partnering with engineering, IT, product management,and operations to embed security throughout the organization. The CybersecurityLead will play a critical role in protecting the company's physical securityand identity management solutions from emerging cyber threats.
聽
Key Responsibilities
路聽聽聽聽聽聽聽 Develop Client鈥檚cybersecurity strategy aligned with business objectives and industry bestpractices.
路聽聽聽聽聽聽聽 Lead role inprotecting the company and customers emerging cyber threats and to position thecompany at the forefront of security and compliance within the physicalsecurity industry
路聽聽聽聽聽聽聽 Establish and maintainsecure software development lifecycle (SSDLC) practices
路聽聽聽聽聽聽聽 Ensure thearchitectures for cloud, on-premises, and hybrid product deployments includeall necessary security design requirements
路聽聽聽聽聽聽聽 Collaborate with productmanagement PAM and Zero Trust Security initiatives
路聽聽聽聽聽聽聽 Support customersecurity assessments, security questionnaires, audits and RFP responses.
路聽聽聽聽聽聽聽 Establish securitymetrics, KPIs and executive reporting to communicate cyber risk and programeffectiveness
路聽聽聽聽聽聽聽 Build relationshipswith external security researchers, auditors and strategic technology partners
聽
Qualifications
Required
路聽聽聽聽聽聽聽 Bachelor's degree inCybersecurity, Computer Science, Engineering, Information Systems, or relatedfield.
路聽聽聽聽聽聽聽 8+ years ofcybersecurity experience with increasing technical and leadershipresponsibilities.
路聽聽聽聽聽聽聽 Experience securingenterprise and cloud environments (AWS, Azure, or Google Cloud).
路聽聽聽聽聽聽聽 Strong knowledge ofnetwork security, application security, identity management, encryption, PKI,and secure authentication technologies.
路聽聽聽聽聽聽聽 Experienceimplementing security controls aligned with NIST CSF, CIS Controls, or ISO27001.
路聽聽聽聽聽聽聽 Experience withvulnerability management, penetration testing, SIEM, EDR, and securitymonitoring tools.
路聽聽聽聽聽聽聽 Knowledge of DevSecOpspractices, CI/CD security, and infrastructure-as-code security.
路聽聽聽聽聽聽聽 Strong understandingof security incident response and digital forensics.
路聽聽聽聽聽聽聽 Excellentcommunication skills with the ability to explain technical risks to executiveleadership and customers.
聽
Preferred
路聽聽聽聽聽聽聽 Master's degree inCybersecurity, Computer Science, or Engineering.
路聽聽聽聽聽聽聽 Professionalcertifications such as CISSP, CISM, CCSP, GIAC, Security+, or Azure/AWSSecurity certifications.
路聽聽聽聽聽聽聽 Knowledge of embeddedsystems security, firmware security, and secure device lifecycle management.
路聽聽聽聽聽聽聽 Experience workingwithin regulated industries or government environments.
聽
Technical Skills
路聽聽聽聽聽聽聽 Zero TrustArchitecture
路聽聽聽聽聽聽聽 Cloud Security
路聽聽聽聽聽聽聽 Secure SoftwareDevelopment Lifecycle (SSDLC)
路聽聽聽聽聽聽聽 Security Information andEvent Management (SIEM)
路聽聽聽聽聽聽聽 Endpoint Detection& Response (EDR)
路聽聽聽聽聽聽聽 VulnerabilityManagement
路聽聽聽聽聽聽聽 Threat Modeling
路聽聽聽聽聽聽聽 Penetration Testing
路聽聽聽聽聽聽聽 Security RiskAssessments
路聽聽聽聽聽聽聽 Incident Response
路聽聽聽聽聽聽聽 PKI, TLS, Encryption,and Key Management
路聽聽聽聽聽聽聽 Microsoft Defender,Microsoft Sentinel, CrowdStrike, Splunk, or similar platforms
聽
Success Measures
路聽聽聽聽聽聽聽 Reduced organizationalcyber risk through proactive security initiatives
路聽聽聽聽聽聽聽 Timely remediation ofcritical vulnerabilities measured against defined SLAs.
路聽聽聽聽聽聽聽 Compliance process,with customer and regulatory security requirements built into product releasesrather than retrofitted.
路聽聽聽聽聽聽聽 Improved securityawareness and adoption of security best practices throughout the organization.
路聽聽聽聽聽聽聽 Successful attainmentand maintenance of relevant certifications (ISO 27001, SOC 2, and others asrequired by customers and markets).
路聽聽聽聽聽聽聽 Reduced turnaroundtime on customer security questionnaires, audits, and RFP responses.
路聽聽聽聽聽聽聽 Effective,well-coordinated response to security incidents across both product andenterprise IT environments, with minimal business impact.
路聽聽聽聽聽聽聽 Improved securityawareness and adoption of secure-by-design practices across engineering, IT,and the wider organization.
Learn more about this Employer on their Career Site
