IHG

Director Information Security

IHG$150K — $180K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Systems, Engineering, or Business - or equivalent experience.
  • Security certifications (CISSP, CISM, CISA, CRISC) strongly preferred.
  • 10+ years of progressive information security/cybersecurity experience.
  • 5+ years leading and structuring teams.
  • Expertise in information security engineering and cyber risk management.
  • Outstanding communication skills for translating technical risks.
  • Proven ability to influence executives and manage stakeholder escalations.

Responsibilities

  • Own the information security strategy and cybersecurity roadmap for a global enterprise.
  • Lead the enterprise information risk management program to protect IT assets.
  • Act as the subject matter expert on protective security and threat management.
  • Set and enforce security engineering standards across various domains.
  • Direct complex cybersecurity programs and projects end to end.
  • Partner with global technology and business leaders to integrate security practices.
  • Build and develop a high-performing security team and manage vendor risk.

Benefits

  • Hybrid work model with a flexible in-office requirement.
  • Opportunity to lead and shape cybersecurity initiatives in a global context.
  • Access to professional development and advanced security certifications.
  • Collaborative work environment with key business and technology leaders.
  • Suitably positioned role that influences security strategy at the executive level.
Full Job Description
Job Description

IHG Hotels & Resorts is hiring a Director of Information Security to lead cybersecurity strategy, security engineering, and enterprise information risk management for one of the world's leading hospitality companies. In this role, the senior security leadership will own threat detection, incident response, and security risk governance - turning complex cyber risk into clear, future-state security strategies and roadmaps that protect our guests, owners, and the trusted IHG brand.

As the Lead, you will set the standards for enterprise security controls and compliance, security policy management, and AI governance programs. You'll establish direction for regulatory compliance (PCI DSS, IT SOX, SOC 1, SOC 2, SWIFT), owns the security policy lifecycle, and establishes responsible AI guardrails. Drives executive accountability for control health with VPs and SVPs, represents the function in strategic governance forums (Financial Controls SteerCo, AI Responsible Use SteerCo, AI Working Group), and runs a blended onshore/offshore team through a manager-led model.

Your Day to Day
  • Own the information security strategy and cybersecurity roadmap for a global enterprise - covering threat detection, triage, analysis, containment, incident recovery, and executive reporting.
  • Lead the enterprise information risk management program, ensuring IT assets are protected and that security risks are identified, assessed, and reported against compliance and regulatory requirements (PCI DSS, SOX, GDPR-aligned environments).
  • Act as the executive subject matter expert on protective security, security intelligence, and crisis and threat management.
  • Set and enforce security engineering standards across SIEM/intrusion detection, firewalls, vulnerability management, penetration testing, secure email, IAM (identity and access management), and network security.
  • Direct complex cybersecurity programs and projects end to end - on scope, on schedule, and on budget.
  • Partner with Global Technology and business leaders to embed security practices enterprise-wide and deliver board- and executive-level security reporting.
  • Build and develop a high-performing security team of 7+ and lead third-party/vendor risk management, from selection and negotiation through long-term partnership.


What We Need from You
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or Business - or equivalent experience. Security certifications (CISSP, CISM, CISA, CRISC) strongly preferred.
  • 10+ years of progressive information security / cybersecurity experience, including 5+ years leading and structuring teams.
  • Expertise in information security engineering, cyber risk management, and security risk management, with hands-on protective security implementation.
  • Knowledge of crisis management, business continuity, and regional political, economic, crime, and security risk.
  • Proven executive influence - able to persuade across all levels and manage escalations with senior stakeholders.
  • Outstanding communication skills, translating complex technical risk into clear business language for executives and partners.
  • Track record managing large-scale security programs from concept through implementation in a fast-changing, high-growth environment.


Travel - limited 10%

Location - Our hybrid work structure is an expectation of three (3) days a week in the ATLANTA office. This expectation may be adjusted with the changing needs of the business.

#LI-ZY1

About IHG

InterContinental Hotels Group (IHG) is a British multinational hospitality company that operates a portfolio of hotel brands, including InterContinental, Crowne Plaza, Holiday Inn, and Kimpton Hotels & Restaurants. The company was founded in 2003 as a result of the merger between British hotel company Six Continents and the hotel and restaurant business of the American conglomerate Bass. IHG is headquartered in Denham, England, and has operations in more than 100 countries. The company's brands cater to a range of travelers, from budget-conscious to luxury-seeking.
Learn more about IHG
Size
40,000 employees
Industry

Similar Jobs

More Jobs at IHG

More Information Technology Jobs

Find similar Director Information Security jobs: