Job SummaryThe Senior Director of Cybersecurity is responsible for the hands-on administration, monitoring, and continuous improvement of the organization's cybersecurity controls, platforms, and operations. This role leads vulnerability management, penetration testing, identity security, cloud security, endpoint protection, and incident response activities while providing cybersecurity recommendations and technical guidance to Information Technology leadership.
Roles Responsibilities - Lead the administration, monitoring, and continuous improvement of the organization's cybersecurity controls, platforms, and security operations, providing technical guidance and risk-based recommendations that strengthen the overall security posture.
- Maintain primary responsibility for the implementation, configuration, health, and optimization of cybersecurity technologies including CrowdStrike, Zscaler, Microsoft Defender, Microsoft Entra ID, Azure security services, SIEM, SOAR, endpoint protection, identity security, and threat detection platforms.
- Manage enterprise vulnerability management, AI-driven penetration testing, security assessments, remediation activities, and security validation efforts, working with Information Technology teams to identify, prioritize, and resolve security risks across servers, endpoints, mobile devices, cloud environments, and infrastructure systems.
- Perform hands-on security operations activities including threat monitoring, incident response, security investigations, cyber recovery planning, alert management, and coordination with internal stakeholders, managed security providers, auditors, consultants, and incident response partners as needed.
- Partner closely with infrastructure, applications, help desk, data, and business teams to implement security controls, support regulatory and compliance requirements, remediate vulnerabilities, secure cloud and enterprise systems, and provide cybersecurity guidance for technology initiatives and projects.
- Develop and maintain cybersecurity metrics, operational dashboards, risk reports, and remediation tracking that provide visibility into security posture, vulnerability trends, patch compliance, threat activity, and recommendations for cybersecurity improvements and future investment priorities.
Team Member Responsibilities- Exhibit alignment with the team's clear goals that are mission-focused, grounded in Catholic Charities history, and tied to action.
- Contribute to a joy-filled culture built upon respect and inclusion, team pride, and community spirit.
- Collaborate effectively to support excellent process, accountability, and constructive conflict.
- Demonstrate a commitment to growth through learning, forgiveness, and reflection.
Living Our Values- Courageous Compassion: Welcome and serve all with an open heart, empathic listening, and a commitment to radical hospitality.
- Solidarity: Embrace shared humanity by celebrating and giving voice to our differences and choosing the path of collaboration and inclusion.
- Faith-filled Hope and Joy: Uplift each other in times of darkness and celebrate together in times of light, leaning in with humility, humor, and hope.
- Meaningful and Measurable Impact: Meet human need with love, balance immediate action with lasting change, and act with accountability through dialogue, analyses, and reflection.
Minimum Education & Experience Requirements- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field.
- Minimum 10 years of progressive cybersecurity experience.
- Minimum 5 years of experience leading cybersecurity programs, security operations, or cybersecurity teams.
- Experience managing enterprise cybersecurity technologies and security operations.
Preferred Education & Experience- Master's degree in Cybersecurity, Information Technology, Business Administration, or related field.
- Experience working within nonprofit, healthcare, social services, or mission-driven organizations.
- Experience implementing cybersecurity frameworks such as NIST Cybersecurity Framework or CIS Controls.
- 12+ years of progressive cybersecurity experience.
Minimum Qualifications & Skills- Demonstrated experience leading cybersecurity initiatives and technical teams.
- Strong knowledge of cybersecurity operations, vulnerability management, penetration testing, identity security, cloud security, and incident response.
- Experience with Microsoft Azure, Microsoft 365 Security, Microsoft Entra ID, CrowdStrike, and Zscaler.
- Experience with SIEM, SOAR, EDR, vulnerability management, and security monitoring platforms.
- Strong analytical and problem-solving skills.
- Excellent written and verbal communication skills, with the ability to communicate technical concepts to both technical and non-technical audiences.
- Ability to prioritize cybersecurity risks and develop actionable remediation strategies.
Preferred Qualifications & Skills- Experience implementing Zero Trust security architectures.
- Experience managing cybersecurity audits and compliance assessments.
- Experience developing executive cybersecurity metrics and board-level reporting.
- Experience managing third-party cybersecurity risk programs.
- Experience with AI-driven security tools and automated penetration testing platforms.
Preferred Certifications & Licensures- CISM (Certified Information Security Manager)
- CCSP (Certified Cloud Security Professional)
- GIAC Security Certifications
- Microsoft Cybersecurity Architect Expert
- Microsoft Azure Security Engineer Associate
- CrowdStrike Certifications
- Zscaler Certifications
Physical Requirements- Kneel and move from sitting, bending, kneeling, or standing multiple times a day
- Climb up and down three (3) or more flights of stairs
- Lift, push, and pull up to 25 lbs
Additional Requirements