Vernovis · 2 weeks ago
Director of Information Security
Vernovis is a Total Talent Solutions company specializing in Technology and Cybersecurity. They are seeking a Director of Information Security to build and mature a modern security program, focusing on threat prevention, detection, and response across various environments while leading the organization through ISO 27001 compliance.
Responsibilities
Lead the design, implementation, and continuous improvement of our client’s information security program, with a focus on threat prevention, detection, and response across cloud, endpoint, identity, and on-prem environments
Serve as the technical security leader for the organization, partnering closely with IT teams to embed security into Microsoft 365, Azure, Entra ID, Intune, Defender, and related technologies
Develop and execute a practical Zero Trust security roadmap, leveraging identity, device trust, endpoint protection, and continuous monitoring to measurably improve security posture
Oversee incident response preparedness and execution, including incident detection, response coordination, post-incident analysis, and continuous improvement of response capabilities
Lead and mature the ISO 27001 program, translating security standards into operational controls and ensuring alignment between technical security practices and certification requirements
Conduct ongoing risk assessments, threat modeling, and vulnerability analysis to proactively identify and mitigate security risks
Evaluate, recommend, and guide the use of security tools and architectures, ensuring solutions are effective, well-integrated, and aligned to business needs
Lead, mentor, and develop security personnel, building a high-performing security function with strong technical and analytical capabilities
Collaborate with IT leadership and business stakeholders to ensure security initiatives support operational resilience, client requirements, and business objectives
Qualification
Required
Demonstrative career progression in information security advancing into leadership with a deep technical background and the ability to lead security initiatives
Strong understanding of identity and access management (IAM), cloud security, endpoint protection, incident response, and modern security architecture, including Zero Trust principles
Experience securing Microsoft-based environments, including familiarity with Entra ID (Azure AD), Conditional Access, Intune, Defender, and Microsoft 365 security capabilities
Proven ability to lead incident response efforts, including real-world security events, tabletop exercises, and post-incident improvement initiatives
Demonstrated experience leading ISO 27001 certification and ongoing compliance through practical, technical implementation rather than policy-only approaches
Strong leadership, collaboration, and communication skills, with the ability to influence IT and business leaders and translate security risk into actionable outcomes
Ability to assess and understand security products and technologies, including strengths, limitations, and integration considerations
Strong analytical and problem-solving skills, with the ability to prioritize and manage multiple security initiatives in a fast-paced environment
Company
Vernovis
Vernovis is a boutique consulting firm that helps small and mid-sized businesses.
Funding
Current Stage
Growth StageRecent News
2022-08-05
Company data provided by crunchbase