What are the responsibilities and job description for the VP - Cybersecurity Incident Response Team Lead position at Employvision Inc.?
The Cybersecurity Incident Response Team Lead is a leadership role responsible for overseeing and enhancing the organization's Security Operations strategy. This position will manage the Incident Response and Threat Intelligence programs to safeguard critical assets and data. The ideal candidate will have a combination of technical expertise, operational efficiency, and a strategic mindset to mitigate risks and ensure compliance with regulatory requirements. This role requires strong leadership, technical skills, and communication abilities to drive cross-functional collaboration and instill a culture of security across the organization.
Key Responsibilities
Strategic Leadership
- Develop and implement a comprehensive security operations strategy aligned with the organization’s risk appetite and business objectives.
- Provide thought leadership on emerging cyber risks and recommend proactive mitigation measures.
- Act as a trusted advisor to executive leadership, management committees, and the board on cyber risk issues.
- Define, maintain, and report operational metrics to assess the effectiveness of the Security Operations program.
Incident Response & Crisis Management
- Lead and manage the Cyber Security Incident Response Team (CSIRT) to ensure timely monitoring, detection, and response to threats.
- Develop and execute the Incident Response Plan and playbooks for handling security breaches.
- Coordinate responses to cybersecurity incidents, ensuring minimal business disruption and quick recovery.
- Establish and maintain a threat intelligence program to proactively identify and address emerging threats.
Process & Technology Optimization
- Evaluate, implement, and optimize security processes and technologies to enhance detection and response capabilities.
- Collaborate with IT and engineering teams to integrate security best practices into systems and processes.
- Stay updated on emerging cybersecurity technologies and recommend solutions to address evolving threats.
Regulatory Compliance & Audit Readiness
- Ensure compliance with cyber risk management regulations, including FFIEC, NIST, ISO 27001, and other applicable laws.
- Represent the organization during regulatory examinations, audits, and executive presentations on cyber risk topics.
- Maintain thorough documentation to demonstrate adherence to security policies, procedures, and regulatory standards.
Team Leadership & Development
- Build and mentor a high-performing security operations team.
- Provide training and development opportunities to ensure the team remains updated with industry best practices.
- Foster a culture of accountability, collaboration, and continuous improvement.
Core Competencies
- Ability to work at both a strategic and tactical level, focusing on the broader picture while driving execution.
- Strong incident management skills with the ability to analyze, prioritize, and handle security incidents effectively.
- Ability to manage multiple initiatives simultaneously with minimal supervision.
- Knowledge of the latest information security risks and mitigation strategies.
- Strong technology, investigation, and cybersecurity skills.
- Excellent communication and documentation abilities to ensure security operations activities are well recorded and reported.
- Knowledge of business, regulatory, and compliance requirements in the financial services industry.
Qualifications & Skills
Essential:
- Bachelor’s degree in Cybersecurity, Information Technology, Business Administration, or a related field.
- Minimum 10 years of experience in information security or a related field.
- At least 3 years of experience in a senior leadership role within the financial services or banking industry.
- Strong understanding of security technologies such as SIEM, SOAR, EDR, NDR.
- Expertise in cybersecurity frameworks such as NIST Cybersecurity Framework.
- Proficiency in drafting and enforcing policies, procedures, and incident response playbooks.
Desirable:
- Advanced degree (MBA, MS) in a related field.
- Relevant industry certifications, such as:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- GIAC (Global Information Assurance Certification)