1

Director Ciso Jobs (NOW HIRING)

The Optum Serve CISO is responsible for collaborating with senior leadership across multiple ... Director level or above) * 3 years of experience reviewing security contracts * Current active ...

The Optum Serve CISO is responsible for collaborating with senior leadership across multiple ... Director level or above) * 3+ years of experience reviewing security contracts * Current active ...

Cyber Program Manager - CISO

Towson, MD · On-site

$111.10K - $111.60K/yr

Develop and deliver customized executive summaries, dashboards, and recommendations tailored to the needs of different executive audiences (e.g., Board of Directors, CISO,CIO,ITleaders). * Synthesize ...

New

JR101263 Director of Information Security / Chief Information Security Officer (CISO) (Open) Department: BSU Business Operations, PM Position Type: Regular Open Date: 09-30-2025 Close Date: $150,000 ...

The Director of Account-Based Marketing will take ownership of Hypori's ABM program end-to-end ... CISO / Deputy CISO / CSO * VP / Head of Security Engineering & Architecture * VP / Head of Endpoint ...

next page

Showing results 1-20

Director Ciso information

What are the key skills and qualifications needed to thrive as a Director CISO, and why are they important?

To thrive as a Director CISO, you need deep expertise in information security, risk management, and regulatory compliance, often supported by a bachelor’s or master’s degree in cybersecurity or related fields and certifications like CISSP or CISM. Familiarity with security frameworks (e.g., NIST, ISO 27001), security incident response tools, and governance, risk, and compliance (GRC) platforms is typically required. Exceptional leadership, strategic thinking, and communication skills set top performers apart when guiding teams and influencing executive decisions. These capabilities are critical for protecting organizational assets, ensuring regulatory compliance, and aligning security initiatives with business objectives.

What are some common challenges faced by a Director CISO when implementing organization-wide security initiatives?

A Director CISO often encounters challenges such as balancing security requirements with business objectives, securing buy-in from leadership and employees, and managing the complexities of regulatory compliance across multiple jurisdictions. Coordinating efforts across diverse teams and ensuring consistent security practices throughout the organization can also be demanding. Additionally, staying ahead of rapidly evolving cyber threats while optimizing limited resources makes the role both challenging and critical.

What is a Director CISO?

A Director CISO, or Director Chief Information Security Officer, is a senior executive responsible for overseeing an organization's information security strategy and programs. This role involves protecting company data, managing cybersecurity risks, ensuring compliance with regulations, and leading security teams. The Director CISO collaborates with other executives to integrate security into business operations and communicates risks and strategies to stakeholders. They also develop and enforce policies to safeguard digital assets and respond to cybersecurity incidents.
More about Director Ciso jobs
What cities are hiring for Director Ciso jobs? Cities with the most Director Ciso job openings:
What are the most commonly searched types of Ciso jobs? The most popular types of Ciso jobs are:
What states have the most Director Ciso jobs? States with the most job openings for Director Ciso jobs include:

Sr. Director, Dep CISO GRC & Security, Orthopedics

Johnson & Johnson MedTech

West Palm Beach, FL • On-site

Full-time

Posted 27 days ago


Job description

Job Summary:
Johnson & Johnson MedTech is a leader in healthcare innovation, dedicated to improving patient care. The Sr. Director, Deputy CISO will provide strategic leadership for Governance, Risk & Compliance and Product Security, ensuring alignment with business priorities and regulatory requirements while enhancing cybersecurity posture.
Responsibilities:
• Provide strategic leadership and operational oversight for enterprise GRC and Product Security programs, ensuring alignment with business priorities and regulatory requirements.
• Partner with the CISO to define and execute the cybersecurity strategy, serving as a delegate and decision authority as needed.
• Lead enterprise risk management activities, including cyber risk identification, assessment, mitigation, and reporting to executive leadership.
• Own the enterprise cyber security policy lifecycle—from creation and implementation to continuous review—ensuring clarity, compliance, and alignment with organizational goals.
• Oversee cybersecurity compliance with global regulations, standards, and frameworks relevant to medical devices and digital health solutions.
• Establish and maintain product security governance across the product lifecycle, from design and development through post‑market support.
• Drive secure‑by‑design principles and threat modeling in partnership with R&D, Engineering, Quality, and Regulatory teams.
• Lead and develop high‑performing cybersecurity leaders and teams, fostering a culture of accountability, collaboration, and continuous improvement.
• Provide executive‑level reporting on cybersecurity risk, compliance status, and program effectiveness to senior leadership and governance bodies.
Qualifications:
Required:
• Bachelor’s degree in Information Security, Computer Science, Engineering, or a related field.
• 12–14 years of progressive experience in cybersecurity, information security, or technology risk management, including senior leadership roles.
• Demonstrated experience leading GRC and Product Security programs in a regulated environment (medical device, healthcare, or life sciences strongly preferred).
• Deep knowledge of cybersecurity risk management, compliance frameworks, and regulatory expectations.
• Experience building, mentoring, and leading senior‑level cybersecurity teams.
• Strong strategic, analytical, and communication skills, with the ability to translate technical risk into business impact.
• Language: English (fluent)
• Travel: Up to 20%, domestic and international
Preferred:
• Master’s degree (MS, MBA, or equivalent) in Cybersecurity, Information Systems, or Business.
• Experience supporting product security for connected, software‑enabled, or digital medical devices.
• Familiarity with global regulatory bodies and standards impacting product cybersecurity.
• Experience operating in complex, global organizations undergoing transformation or separation.
• Background in incident response governance, vulnerability disclosure, and post‑market surveillance.
• Demonstrated success driving cybersecurity maturity and cultural change at scale.
• Proven ability to influence executive stakeholders and partner effectively across IT, R&D, Quality, Legal, and Regulatory functions.
• Certifications (preferred): CISSP, CISM, CRISC, or equivalent
Company:
At Johnson & Johnson MedTech, we are working to solve the world’s most pressing healthcare challenges through innovations at the intersection of biology and technology. Founded in 1886, the company is headquartered in New Brunswick, New Jersey, US, , with a team of 10001+ employees. The company is currently Late Stage.