Job Summary:
Costco IT is responsible for the technical future of Costco Wholesale, the third largest retailer in the world. The Director of the Office of the CISO will manage and lead a team focused on executing cybersecurity strategies that align with business goals, ensuring operational effectiveness and guiding the organization in navigating the evolving cybersecurity landscape.
Responsibilities:
• INTEGRITY: When achieving benchmarks and goals, use methods/strategies that are consistent with the Code of Ethics and the Standard of Ethics for Directors. Always leads by example. Appropriately handles employee concerns and follows through to resolution.
• MEMBER SERVICE: Provides and ensures staff provides an exceptional member experience.
• ADMINISTRATION: Ensures proper department coverage (writing schedule and break aids if needed). Understands department budget, able to research and explain budget variances.
• MANAGING PERFORMANCE: Coaches and mentors’ employees to provide support and guidance. Has regular open and honest conversations with employees to discuss work performance and career development. Identifies learning opportunities to strengthen employee knowledge, skill, and ability.
• COMMUNICATION: Regularly shares information with employees via meetings and one-on-one conversations. Successfully navigates difficult conversations with employees, members, and suppliers. Listens, expresses empathy, and adapts to get points across. Addresses issues immediately to ensure a timely resolution and to avoid escalating the situation. Consistently demonstrates business knowledge during interactions with senior management.
• SELF-MANAGEMENT: Demonstrates sound judgement, taking a partner when necessary. Ability to maintain self-control in the face of hostility or provocation or in intense, hectic situations.
• INCLUSION: Encourages different approaches and ideas to work and to accomplish goals. Seeks employee input. Takes the time to get to know or reach out to candidates who show potential that may not come forward on their own.
• COMPLIANCE AND SAFETY: Takes measures to ensure employee and member information is kept confidential and adheres to IS security policy.
• Operationalizes the cybersecurity strategy by translating high‑level objectives into delivery plans that guide execution across the global security organization.
• Drives the execution of security maturity programs (eg: NIST assessments and capability evaluations) ensuring insights are translated into prioritized actions.
• Develops and maintains enterprise cybersecurity roadmaps informed by maturity assessments, program insights, and business priorities resulting in clarity, alignment, and transparency for senior leadership.
• Partners closely with Finance to drive budgeting, investment planning, and resource optimization, identifying both risks and opportunities that strengthen Costco’s security posture and support business growth.
• Leads the evolution of outcome driven metrics, KPIs, and data‑visualization capabilities to enable informed, data‑driven decision‑making and provide clear visibility into program performance, risk, and progress.
• Drives disciplined governance and structured execution while championing agile planning and delivery practices at scale, ensuring consistent operating rhythms, clear accountability, and cross‑functional alignment.
• Elevates AI fluency across the organization, guiding teams on responsible AI adoption, identifying opportunities for AI‑enabled operational advantage, and helping navigate associated risks.
Qualifications:
Required:
• 10+ years of experience in cybersecurity, technology strategy, management consulting, or related fields.
• 5+ years supporting senior executives within a global and highly regulated organization.
• 5+ years of experience leading teams, setting clear priorities, and driving alignment across multiple groups while navigating ambiguity and providing clarity in fast‑moving, evolving environments.
• Experience developing and executing strategic roadmaps, with the ability to decompose initiatives into actionable, agile‑enabled epics, features, and work items that drive measurable delivery.
• Experience leading or supporting security maturity programs, including NIST, ISO 27001, CIS Controls, or similar frameworks.
• Strategic proficiency in applying AI to cybersecurity, identifying high‑impact use cases and guiding responsible adoption across many teams.
• Proficiency with data‑visualization tools and foundational statistical modeling techniques.
• Exceptional verbal and written communication skills, with the ability to deliver clear, compelling presentations, speak confidently to all levels of the organization, and influence stakeholders’ actions.
• HIPPA Training and Supervisors Orientation (within 30 days of hire); Leadership Development 101 (within one year); Costco Pay Policies (within 90 days of promotion).
Preferred:
• Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), and/or other relevant Security or AI focused certifications or equivalent experience.
• Experience in retail, marketing, supply chain, e-commerce industries.
• Proficient in Google Workspace applications, including Sheets, Docs, Slides, and Gmail.
Company:
Costco IT is responsible for the technical future of Costco Wholesale, the third largest retailer in the world with wholesale operations in twelve countries. Founded in , the company is headquartered in Issaquah, WA, US, , with a team of 1001-5000 employees. The company is currently Late Stage.