Description
We are seeking a visionary Head of Information Security to lead our network security strategy, architecture, and operations. This pivotal role involves spearheading the development and execution of robust security frameworks to protect our organization during both mega sports events and standard business periods. You will lead initiatives to secure sensitive data and manage risks across on-premises, hybrid, and cloud environments. The ideal candidate will direct the design of a secure network infrastructure, including core, distribution, and data center layers, while ensuring protection from evolving cyber threats. This position requires a strategic leader to own security controls, define governance policies based on NIST and ISO 27001, and manage a team of skilled engineers. You will also oversee firewall management, incident response, and the evaluation of emerging technologies like SASE and zero-trust to continually enhance our security posture.
Requirements
1. A minimum of 15 years of experience in network and security roles, with at least 5-7 years in a leadership position.
2. Proven expertise in designing, implementing, and enforcing secure network architectures (e.g., network segmentation, zero-trust).
3. In-depth, hands-on experience with a range of security technologies including NGFW, IPS, DDoS protection, ZTNA, WAF, and Secure Web Gateway/Proxy solutions.
4. Domain expertise with multi-vendor security platforms, specifically Cisco NGFW, Palo Alto Firewalls, Fortinet Firewalls, and F5 WAF & Load Balancers.
5. Demonstrated experience defining security strategies and controls aligned with industry frameworks such as NIST, ISO 27001, and NCSA.
6. Strong background in leading network security operations, including firewall management, rule base reviews, and change control processes.
7. Experience leading incident response for network-based threats in close collaboration with Security Operations Center (SOC) teams.
8. Experience in preparing and evaluating RFPs, managing IT security budgets, and handling vendor contracts.
Desirable
1. Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field.
2. Professional certifications such as CISSP, Palo Alto PCNSE, or Fortinet NSE.
3. Cloud security certifications (e.g., CCSP, Azure/Google Cloud security).
4. Experience evaluating and recommending emerging security technologies like SASE and micro-segmentation.
5. Experience managing Managed Security Service Provider (MSSP) relationships and contracts.