Head of Information Security

Glocomms
CA, United States
Full-time

Calabasas, CA or San Diego, CA (Hybrid-Flexible)

Glocomms is partnered with a dynamic and rapidly growing e-commerce company committed to providing its customers with exceptional service and innovative products.

The client is seeking a highly skilled and experienced Head of Information Security to lead efforts in safeguarding its digital assets, ensuring compliance, and maintaining the highest standards of security.

The technology stack is predominantly based on Microsoft technologies and primarily utilizes AWS for cloud infrastructure.

Position Overview :

The Head of Information Security will be responsible for overseeing all aspects of information security, including incident response, bug bounty programs, vulnerability remediation, and compliance.

This leadership role requires a strategic thinker with a hands-on approach, capable of managing and developing a high-performing security team.

The successful candidate will have a proven track record in information security within the e-commerce sector or a similar fast-paced environment, with strong experience in a Microsoft tech stack and AWS cloud infrastructure.

Key Responsibilities :

Leadership and Strategy :

  • Develop and implement the overall information security strategy aligned with business objectives.
  • Lead and manage a team of three information security professionals, fostering a culture of security awareness and continuous improvement.
  • Provide strategic guidance to executive leadership on security initiatives and risk management.

Incident Response :

  • Oversee the incident response program, ensuring swift and effective handling of security incidents.
  • Coordinate incident response efforts, including investigation, containment, eradication, recovery, and post-incident analysis.
  • Develop and maintain incident response plans, playbooks, and runbooks.

Bug Bounty and Vulnerability Remediation :

  • Establish and manage a bug bounty program to incentivize external security researchers.
  • Oversee vulnerability management processes, including regular scanning, assessment, and remediation of security vulnerabilities.
  • Collaborate with development and operations teams to ensure timely and effective remediation of identified vulnerabilities.

Compliance and Governance :

  • Ensure compliance with relevant regulations, standards, and frameworks (e.g., PCI-DSS, GDPR, CCPA).
  • Develop and maintain security policies, procedures, and documentation.
  • Conduct regular security audits and assessments to ensure compliance and identify areas for improvement.

Risk Management :

  • Identify, assess, and manage information security risks across the organization.
  • Implement and maintain security controls to mitigate identified risks.
  • Develop and deliver security awareness training programs for employees.

Technology and Innovation :

  • Stay current with emerging security trends, threats, and technologies.
  • Evaluate and implement new security tools and technologies to enhance the security posture.
  • Collaborate with IT and engineering teams to integrate security into the software development lifecycle (SSDLC).

Qualifications :

  • Bachelor’s degree in Computer Science, Information Security, or a related field. Master’s degree preferred.
  • 10+ years of experience in information security, with at least 5 years in a leadership role.
  • Proven experience in incident response, vulnerability management, and compliance within an e-commerce or similar environment.
  • Strong knowledge of security standards, regulations, and best practices (e.g., PCI-DSS, GDPR, CCPA).
  • Extensive experience with a Microsoft tech stack, including Windows Server, Active Directory, and related technologies.
  • Strong experience with AWS or Azure cloud infrastructure.
  • Excellent leadership, communication, and interpersonal skills.
  • Relevant certifications (e.g., CISSP, CISM, CEH) are highly desirable.
  • All employees are required to be vaccinated against Covid-19 - reasonable accommodation requests will be considered.

Benefits :

  • Competitive salary and performance-based bonuses
  • Comprehensive health, dental, and vision insurance
  • 401(k) with company match
  • Generous paid time off and holiday schedule
  • Employee discounts for company products

This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday).

8 days ago
Related jobs
Promoted
Glocomms
San Diego, California

The Head of Information Security will be responsible for overseeing all aspects of information security, including incident response, bug bounty programs, vulnerability remediation, and compliance. The client is seeking a highly skilled and experienced Head of Information Security to lead efforts in...

Promoted
Hanmi Financial Corporation
Los Angeles, California

The Information Security program involves several team members, who are responsible for ongoing risk assessment, evaluation of appropriate security controls, development and monitoring of policies and standards, security awareness and training programs, project and product development consultation, ...

Promoted
University of California - Los Angeles (UCLA)
Los Angeles, California

The UCLA Information Security Office enables UCLA's goals by providing leadership assuring the confidentiality, integrity, and availability of its information resources. The Information Security Office enables efficient incident response planning and notification procedures. In addition, the office ...

Promoted
VirtualVocations
Sunnyvale, California

A company is looking for a Head of Security. ...

Promoted
BioMarin Pharmaceutical Inc.
San Rafael, California

The Head of Cyber Security serves as the owner for all cybersecurity activities related to the availability, integrity, and confidentiality of BioMarin's systems and information. The successful candidate will have held a similar role as Head of Cyber Security at a comparable-sized or larger Global o...

Promoted
VirtualVocations
Fullerton, California

A company is looking for a Director of Information Security. ...

Promoted
San Manuel Band of Mission Indians
Highland, California

Under the direction of the Manager, Information Security Operations, the Security Analyst is responsible for ensuring that information assets are adequately protected by actively maintaining and improving the enterprise Information Security program. Minimum of Six (6) years of information security, ...

00100 LEIDOS, INC.
San Diego, California

The Leidos Innovation Center (LInC)is seeking a highly experienced and accomplished Senior Research Scientist specializing in Quantum Information Sciences to serve as the Head of Quantum Information Sciences. Research experience and experimental background in one or more of the following areas: quan...

University of California
Berkeley, California

ISO is led by the Chief Information Security Officer and consists of seven areas: Information Security Policy, Information Security Operations, Information Security Development, Identity and Access Management, Information Security Assessments, Outreach and Engagement, and Service Management. The Uni...

Blue Shield of California
San Diego, California

The Information Security team is responsible for providing cyber security services to Blue Shield of California that enable secure product development and operations. The Director of Information Security will report to the Sr. Collaborate with software development teams to integrate security best pr...