Executive Director Infrastructure and Security

Apply Now

Company: Orveon

Location: Columbus, OH 43230

Description:

About Us

Orveon is a new kind of beauty company launched in December 2021 when we acquired our three iconic brands - bareMinerals, BUXOM, and Laura Mercier. With more than 1,000 employees and operating in 40+ countries, we're a truly global business. Our headquarters are in New York, with additional locations in major cities worldwide.

We love our brands and are embarking on a powerful shift: To change how the world thinks about beauty. We are a collective of premium and prestige beauty brands committed to stark honesty, co-creation, and making a sustainable cultural impact.

People here are passionate, entrepreneurial and most of all, bold. This is an inspirational group of talented, silo-busting, confident and humble people, working together to build something better. We are looking for the best talent to join us on that journey. We believe we can accomplish more when we #Face Forward Together!

About the Role:

The Executive Director of Infrastructure and Security is a strategic leader responsible for overseeing all aspects of IT infrastructure and cybersecurity through effective vendor management and governance. With infrastructure and security services fully outsourced, this role ensures that external partners deliver high-performance, secure, and scalable technology services aligned with business goals. The ideal candidate brings a strong background in vendor oversight, risk management, and IT service governance, with a focus on business continuity, compliance, and performance accountability.

Primary Responsibilities

Strategic Oversight

  • Develop and maintain an infrastructure and security strategy that aligns with business objectives and IT roadmaps.
  • Act as the primary liaison between the company and external infrastructure and security providers.
  • Ensure vendor services meet the evolving needs of the business in scalability, performance, and cost-effectiveness.


Vendor Management & Service Governance

  • Lead the selection, negotiation, and performance management of third-party providers delivering infrastructure and cybersecurity services.
  • Establish and monitor SLAs, KPIs, and escalation protocols to ensure service excellence.
  • Conduct regular vendor reviews, audits, and risk assessments.


Cybersecurity Governance

  • Own the company's cybersecurity posture and risk mitigation strategy, in collaboration with external security partners.
  • Oversee implementation and enforcement of security policies, incident response processes, and compliance with relevant frameworks .
  • Monitor the threat landscape and ensure timely response from vendors to emerging risks.


Business Continuity & Compliance

  • Ensure vendors maintain robust disaster recovery, data protection, and business continuity plans.
  • Support audits and regulatory reporting requirements by coordinating with vendors and internal stakeholders.
  • Collaborate with Legal and HR to ensure security and compliance across all departments.


Stakeholder Collaboration

  • Act as a trusted advisor to the CIO and business leadership on infrastructure and security matters.
  • Translate technical issues into business impact and provide guidance to other departments on risks and IT policies.
  • Participate in cross-functional planning for digital transformation initiatives.


Qualifications

  • Bachelor's degree in Computer Science, Information Systems, or a related field.

  • 10+ years of experience in IT leadership, with at least 5 years managing third-party infrastructure and/or security providers.
  • Strong understanding of enterprise IT environments, even if outsourced (cloud, networking, identity management, cybersecurity).
  • Proven experience with vendor management, contract negotiation, and SLA governance.
  • Familiarity with regulatory frameworks such as GDPR, CSRD, ISO 27001, or NIST.
  • Strong analytical, communication, and stakeholder management skills.


Preferred Certifications

  • CISSP, CISM, or equivalent
  • Azure/AWS Architect certifications


What Orveon offers you:

You are a creator of Orveon's success and your own. This is a rare opportunity to share your voice, accelerate your career, drive innovation and fostering growth. We're a human sized company so your work will have a big impact on the organization. We invest in the well-being of our Orveoners - both personally and professionally and provide tailored benefits to support all of you, such as:

  • "Hybrid First" Model - Flexibility to work remotely or in-office, balancing virtual and face-to-face interactions.
  • "Work From Anywhere" - Freedom to work three (3) weeks annually from the location of your choice.
  • Complimentary Products - Free and discounted products on new releases and fan-favorites.
  • Professional Development - Exposure to senior leadership, learning and development programs, and career advancement opportunities.
  • Community Engagement - Volunteer opportunities in the communities in which we live and work.


US-Only: (insert country specific benefits here)

  • Health & Wellbeing Perks - Comprehensive medical, dental, vision, and lifestyle benefits.
  • Time-Off - Generous PTO, 14 company-paid holidays, parental leave, and flexible Summer Fridays.
  • 401(k) - Retirement plan through a 401(k) with 100% match on the first 4% contribution.


Other things to know!

  • Pay Transparency (US Only) - One of our values is Stark Honesty and the following represents a good faith estimate of the compensation range for this position.


At Orveon Global, we carefully consider a wide range of non-discriminatory factors when determining salary. Actual salaries will vary depending on factors including but not limited to location, education, experience, and qualifications.

The pay range for this position is $157,500 $225,000. Supplemented with all the amazing benefits above for full-time employees!

  • Opportunities and Accommodations (Global) - Orveon is deeply committed to building a workplace and global community where inclusion is not only valued but prioritized. Find out more on our careers page.


BE AWARE OF FRAUD! (Global) Please be aware of potentially fraudulent job postings or suspicious recruiter activity by persons that are posing as Orveon Global Recruiters/HR. Please confirm that the person you are working with has an @orveonglobal.com email address. Additionally, Orveon Global does NOT request financial information or payments from candidates at any point during the hiring process. If you suspect fraudulent activity, please visit the Orveon Global Careers Site at https://www.orveonglobal.com/career to verify the posting and apply though our secure online portal.

Similar Jobs