What are the responsibilities and job description for the VP - Information Security position at Tech Observer?
Title: VP or Director of Information Security/Cloud/Infrastructure
Location: Wilmington, DE - RELOCATION CONSIDERED/ENCOURAGED – FULL RELOCATION PACKAGE
Fulltime - Direct Hire
Job Description:
A large, global Fortune 500 organization is conducting a confidential search for a Vice President of Information Security. This is a senior leadership role that sits at the intersection of executive strategy and deep technical execution — serving as the organization's top technical security voice and right hand to the CISO.
This is an ideal role for a rising security leader who thrives in complex, large-scale environments, can bridge the gap between board-level conversations and hands-on engineering teams, and brings a forward-looking perspective on how AI and automation are reshaping the security landscape.
Role Overview
The VP of Information Security owns the full breadth of information security capabilities across a large, complex global enterprise. This is not a narrow technical role — it carries direct leadership accountability across security engineering, identity and access management, security metrics and analytics, cloud and network security, data protection, application security, and emerging AI-driven security programs.
This leader serves as the CISO's primary technical deputy, setting strategy and driving execution across every security technology domain. The role demands someone who can move fluidly between executive-level strategy conversations and deep technical problem-solving — and who brings the interpersonal skills to align diverse teams across a global organization.
Areas of Ownership
Security Engineering & Architecture
- Own the enterprise security technology portfolio — tooling selection, architecture, and lifecycle management
- Drive cloud security strategy and execution across multi-cloud environments (AWS, Azure, GCP)
- Lead network security architecture including zero trust, segmentation, firewall strategy, and SD-WAN
- Oversee endpoint, email, and data protection technologies at global scale
Identity & Access Management (IAM)
- Own the full IAM and PAM (Privileged Access Management) program across the enterprise
- Lead zero trust identity strategy — authentication, authorization, and least-privilege enforcement
- Drive SSO, MFA, and directory services modernization initiatives
- Govern access management policies across employees, contractors, and third parties globally
Metrics, Analytics & Reporting
- Build and own the security metrics and analytics program — dashboards, KPIs, and risk scorecards for executive and board audiences
- Develop data-driven frameworks that measure risk reduction, program effectiveness, and operational performance
- Partner with the CISO to translate security posture into business-relevant reporting
- Drive automation and tooling to support continuous monitoring and real-time visibility
AI & Emerging Technologies
- Champion the use of AI and machine learning across the security organization — threat detection, automated response, anomaly detection, and predictive risk modeling
- Stay ahead of how AI is reshaping both the threat landscape and the defender's toolkit
- Evaluate and operationalize emerging security technologies at enterprise scale
Leadership & Cross-Functional Partnership
- Lead and develop a large, distributed security engineering organization across multiple geographies
- Serve as a trusted partner to IT, infrastructure, legal, compliance, product, and business leadership
- Represent security technology priorities at the executive and board level
- Manage vendor relationships, technology investments, and tool consolidation efforts
Ideal Candidate Profile
We are open to a senior Director or VP-level candidate who has the technical depth, leadership maturity, and executive presence to step into a highly visible role. An exceptional 'up and comer' with the right fundamentals will be strongly considered over a seasoned executive who lacks the technical edge or cultural fit.
Technical Requirements:
- Deep hands-on expertise in cloud security (AWS, Azure, GCP) and cloud-native architecture
- Strong network security background — firewalls, segmentation, zero trust networking, SD-WAN
- Fluency in AI/ML as applied to security — not just awareness, but demonstrated ability to lead how AI is operationalized across a large security organization
- Enterprise-scale IAM and PAM experience, including zero trust identity programs
- Metrics and analytics program ownership — security scorecards, executive dashboards, risk KPIs
- Breadth across multiple security domains: endpoint, data protection, application security, threat intelligence
- Experience operating within a Fortune 500 or large-scale global enterprise strongly preferred
Leadership & Interpersonal Requirements:
- Exceptional communicator — able to translate complex technical concepts to non-technical executives and board members
- Highly collaborative; builds trust and strong relationships across business lines and functions
- Executive presence — polished, confident, and credible in high-stakes environments
- Inspires and develops teams; known for building inclusive, high-performing cultures
Low ego, high impact — someone who earns respect through results and relationships, not hierarchy