Chief Information Security Officer
Apply NowCompany: Quala
Location: Houston, TX 77084
Description:
Discover a career at Depot Connect International (DCI), a global leader in the Tank/ISO Tank Container Services and Tank Trailer Parts industry. We're more than just a service provider; we're a unified team combining the expertise of industry leaders Quala, Boasso Global, and PSC. Headquartered in Tampa, Florida, with over 160 locations worldwide, our team of over 3,500 employees excels in offering a multitude of mission-critical services.
DCI is searching for a Chief Information Security Officer to oversee the company's information security. The CISO safeguards information by ensuring that security risks are identified, assessed and accurately reported, as well as, promoting a strong security culture within the organization. This position with report into the CIO.
Hybrid role will be located in Houston, TX or Tampa, FL
Position Responsibilities:
Qualifications:
DCI Benefits:
DCI is searching for a Chief Information Security Officer to oversee the company's information security. The CISO safeguards information by ensuring that security risks are identified, assessed and accurately reported, as well as, promoting a strong security culture within the organization. This position with report into the CIO.
Hybrid role will be located in Houston, TX or Tampa, FL
Position Responsibilities:
- As a member of the IT Leadership Team, develop and implement a comprehensive information security strategy aligned with the co-op business goals.
- Collaborate with IT and business leaders to integrate security measures into all aspects of the organization, from planning to execution, aligned with company strategies and priorities.
- Direct the development, recommendations and championing of IT policy, strategy, standards and procedures for information and system security, disaster recovery and business continuity. Oversee the IT Disaster Recovery and Business Continuity program, ensuring plans are in place and tested per policy.
- Lead architecture and engineering, vulnerability management, security operations, compliance, and risk management.
- Direct the Identity and Access Management organization, including day-to-day operations, governance, and strategies.
- Accountable for identifying and assessing IT security-related issues currently and potentially impacting IT and business performance.
- Oversee IT security architecture including but not limited to roadmaps, assessments, principles, standards and security development lifecycle. Align with Enterprise Architecture on architecture principles and standards.
- Set, monitor, and enforce security elements within application, infrastructure and data architectures. Communicate and collaborate with all other IT disciplines regarding integration and effectiveness of information security measures.
- Oversee the Security Operations Center and ensure effective intrusion detection, incident response and threat management aligned with best practices.
- Oversee vulnerability management including scanning, testing, remediation, and reporting.
- Accountable for consistent compliance with all applicable regulations, standards and controls (e.g., audit, PCI, data, vulnerability, disaster recovery, encryption, testing, privacy, etc.), collaborating with DCI's Enterprise Risk Management.
- Conduct regular security assessments and audits to identify risks; develop and implement mitigating actions.
- Lead and champion efforts to educate the organization on security threats and how they can be best prevented. Provide guidance and direction for the physical protection of information systems assets to other functional units.
- Report to leadership on information security effectiveness and make recommendations to improve or optimize where required.
- Actively participate in Technology strategic planning, applying current knowledge and future vision of technology and systems that will enable DCI's growth and performance objectives. Stay abreast of latest security trends, technologies and threats, and proactively implement best practices.
- Leveraging a strong financial acumen, develop budgets and forecasts, including staffing needs, tools and equipment, services, maintenance, and future projects. Effectively manage resources, spend and investments within set guardrails.
- Ensure the team, including both internal and 3rd parties, is properly skilled and staffed to handle the demand. Make recommendations to management regarding team composition and structure.
- Guide the team in the analysis of business requests and needs to ensure effective utilization of staff, funding and other resources.
- Perform vendor management and, in partnership with DCI's procurement function. Play a lead role on vendor selection, performance management, and contracting for products, services and support.
- Provide accurate, timely and relevant information about the status of information security projects, personnel and activities.
Qualifications:
- Bachelor's degree in Information Security, Computer Science, or a related field; advanced degree strongly preferred.
- Information security leadership experience: minimum of 15 years, with at least 5 years in a senior leadership role.
- Industry experience: proven experience developing and implementing security strategies in a retail environment.
- Security standards: strong knowledge of security frameworks, standards, and regulations (e.g., PCI, NIST, EUCC, ENISA). Relevant certifications (e.g., CISSP, CISM, CISA) are highly desirable.
- Communication & Influence: excellent communication and interpersonal skills, extensive experience collaborating and influencing at all levels, including C-suite, to get things done.
- High Performing Security Engineering and Operations Engineering Leadership: experience attracting, developing and challenging world class security engineering and operations talents across geographies with a passion for excellence.
- Information Security and Privacy: deep information security and privacy experience for digital forward customer centric organizations.
- Risk Assessment and Management: elevated risk assessment and management experience in large scale digital organizations collaborating with enterprise asset protection.
- Change Management: experienced change agent to drive innovation and transformational change within organizations. Successfully managed large-scale IT transformations and enterprise-wide programs, winning hearts and minds.
- Technology Strategy and Execution: experience developing, planning and implementing the company's technology strategy, with special focus on execution and ensuring timely delivery, with a strong point of view on best practices.
- Industry Trends & Best Practices: possesses a thoughtful point of view on industry trends impacting commerce, customer and employee experience. Has an informed perspective on best-in-class experiences and technologies.
DCI Benefits:
- Medical, dental, and vision insurance
- 401(k) with generous company match
- Paid time off
- 10 Paid Holidays
- Tuition Reimbursement
- Parental Leave