- Company Name
- Checkout.com
- Job Title
- Director of Cyber Security
- Job Description
-
Job Title: Director of Cyber Security
Role Summary: Lead organization-wide cyber defense strategy, architecture, and operations to protect assets, customers, and revenue. Own detection engineering, incident response, threat-informed defense, and operational ownership transfer. Serve as technical authority in high-severity incidents and advise executive leadership on risk trade-offs.
Expectations:
- Deliver measurable security outcomes (time to containment, blast‑radius reduction, recovery effectiveness).
- Drive continuous improvement of controls and processes through post‑incident analysis.
- Evolve cyber security operating model to meet growing business and regulatory demands.
- Balance strategic vision with hands‑on execution under high‑stakes conditions.
Key Responsibilities:
- Own end‑to‑end cyber security strategy, architecture, and operating model.
- Define threat anticipation, detection, response, and recovery processes.
- Act as senior technical decision‑maker during major incidents, setting priorities and communicating risks.
- Own adversary‑focused defense: threat modeling, detection engineering, and threat hunting strategy.
- Design and enforce runbooks, escalation models, and incident response playbooks.
- Set, enforce, and evolve security standards; block or approve high‑risk architectural changes.
- Build and scale capabilities: detection engineering, threat hunting, incident response, cyber security engineering.
- Ensure post‑incident learnings translate into architectural, control, and process changes.
- Absorb operational ownership where it improves security outcomes.
- Partner with IT, Cloud, Engineering, Legal, Risk, and Executive teams to make balanced risk decisions.
Required Skills:
- Proven experience scaling cyber security functions in complex, high‑growth, regulated environments.
- Deep expertise in incident response, detection engineering, threat‑informed defense, and threat hunting.
- Experience in designing and evolving security operating models and team structures.
- Strong executive communication; authority to make high‑impact decisions under uncertainty.
- Ability to enforce security standards in fast‑moving engineering environments.
- Cloud‑first security architecture knowledge (public cloud platforms, multi‑cloud, SaaS).
- Track record modernizing legacy detection and response into adversary‑focused frameworks.
- Accountable for outcomes, not just activity.
Required Education & Certifications (minimum):
- Bachelor’s degree in Computer Science, Cyber Security, Information Systems, or related field (Master’s preferred).
- Relevant security certifications such as CISSP, CISM, or equivalent.
---