What are the responsibilities and job description for the Associate Director, Information Security position at Gravity IT Resources?
-NO Vendor Submissions for this role-
Associate Director of Information Security, DLP
Job Type: Direct Hire
Job Location: Waltham, MA | Hybrid
Our client is seeking a hands-on Associate Director of Information Security to lead key enterprise security initiatives with a strong focus on Data Loss Prevention (DLP), Data Security Posture Management (DSPM), and Third-Party Risk Management (TPRM).
This is a senior technical leadership role combining strategy, program ownership, and hands-on security expertise. The Associate Director will lead a small security team and partner closely with IT, Architecture, Legal, Compliance, and other business stakeholders.
What You’ll Do
- Lead, mentor, and develop a team of security professionals.
- Own the strategy, implementation, and ongoing improvement of enterprise DLP and DSPM programs across on-prem, cloud, and SaaS environments.
- Oversee the Third-Party Risk Management (TPRM) program and vendor security assessments.
- Develop and maintain security policies, standards, and best practices.
- Partner with IT, Legal, Compliance, and Architecture teams to identify and mitigate security risks.
- Lead security incident response, investigations, and root-cause analysis.
- Conduct security architecture reviews for applications, platforms, and infrastructure.
- Monitor emerging threats, data protection technologies, and regulatory requirements.
What You Bring
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- 8 years of Information Security experience, including 3 years in a leadership/management capacity.
- Strong experience leading DLP programs, with hands-on experience using solutions such as Microsoft Purview or Proofpoint.
- Hands-on experience with DSPM platforms in hybrid environments.
- Broad knowledge of network, cloud, and application security.
- Experience with vulnerability management, SIEM, and security monitoring.
- Experience building or managing a TPRM/vendor security program.
- Knowledge of GDPR, CCPA, NIST CSF, ISO 27001, and data governance frameworks.
- CISSP, CISM, or equivalent certification preferred.
Ideal Candidate
We’re looking for a security leader who is equally comfortable developing strategy, leading a team, and diving into technical details. Strong communication, problem-solving, organization, initiative, and the ability to influence stakeholders across an organization are critical.
Compensation & Work Arrangement
- Base Salary: $180,000–$200,000
- Annual performance bonus
- Competitive benefits package
- Hybrid schedule — Waltham, MA
Salary : $180,000 - $200,000