160over90

Director of Cybersecurity

160over90$183K — $245K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 12+ years in cybersecurity, with 5+ years at a leadership level, ideally in a global media or entertainment context.
  • Expertise in NIST CSF 2.0 or ISO 27001 frameworks, including governance and multi-year roadmapping.
  • Proven track record in building and managing internal security teams and insourcing from MSSPs.
  • Strong experience presenting cyber-risk to executive-level stakeholders and translating risks to business impacts.
  • Knowledge of global enterprise risk management and regulatory compliance, including GDPR and SOX requirements.
  • Demonstrated vendor management skills with experience in negotiating SLAs with security providers.
  • Experience leading incident responses and establishing business continuity planning.

Responsibilities

  • Set and own cybersecurity strategy and risk posture aligned with NIST CSF 2.0.
  • Deliver cyber-risk reports to executives and board members.
  • Oversee security vendors and enforce service level agreements.
  • Build and lead an in-house security team, transitioning functions from managed service providers.
  • Direct incident response efforts and develop strategies for cyber resilience.
  • Establish governance policies and security-awareness training.
  • Manage the cybersecurity budget and develop headcount plans.

Benefits

  • Comprehensive health care coverage.
  • Retirement plan options.
  • Paid vacation and time off offerings.
  • Opportunities for professional growth and development.
  • Incentives based on performance.
Full Job Description

POSITION SUMMARY

The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.

KEY RESPONSIBILITIES

  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
  • Deliver executive- and board-level cyber-risk reporting.
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
  • Build and lead the internal security team and bring core security functions in-house from managed providers.
  • Direct incident response and cyber resilience, including business continuity and disaster recovery.
  • Establish cybersecurity governance, policy, and security-awareness programs.
  • Own the cybersecurity budget and headcount plan.

FUNCTIONS OWNED

Security Leadership & Strategy Governance, Policy & Awareness Incident Response & Cyber Resilience (supports GRC, Risk & Compliance and AI Governance & Emerging Tech)

REQUIRED QUALIFICATIONS

  • 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
  • Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) governance, policy, control framework, and a multi-year maturity roadmap.
  • Track record building and leading an internal security function hiring, developing, and retaining architects, engineers, and analysts including insourcing functions from a managed provider (MSSP).
  • Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
  • Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
  • Proven vendor and contract management negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
  • Incident-response leadership has directed the organizations response to a material security incident and owns cyber-resilience / BCP-DR direction.
  • Security-budget ownership has built and defended a security operating budget and headcount business case.
  • Working architecture fluency across identity, cloud (Azure), data protection, and SASE enough to direct architects and challenge technical designs.
  • Bachelors degree in a relevant field or equivalent experience; CISSP and/or CISM required.

PREFERRED QUALIFICATIONS

  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
  • Media, entertainment, talent-representation, or high-net-worth-individual environment elevated BEC/impersonation and privacy exposure.
  • Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
  • Experience insourcing security functions from a managed provider on a phased plan.
  • Advanced credentials CRISC, CCISO, or an MBA / MS in cybersecurity.

Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum:

$183,750 annually (minimum will not fall below the applicable state/local minimum salary thresholds)

Hiring Rate Maximum:

$245,000 annually

About 160over90

160over90 is a branding and marketing agency that provides consulting services to clients in various industries including higher education, sports, and entertainment. The company was founded in 2001 and is headquartered in Philadelphia, Pennsylvania. 160over90 offers a wide range of services including brand strategy, advertising, digital marketing, and creative design. The company has worked with many high-profile clients such as Nike, Ferrari, and the University of Notre Dame. 160over90 is committed to delivering innovative and effective solutions to its clients.
Learn more about 160over90
Size
500 employees
Industry

Similar Jobs

More Jobs at 160over90

More Information Technology Jobs

Find similar Director of Cybersecurity jobs: