Chief Information Security Officer

Posted 5 Days Ago
Be an Early Applicant
Durham, NC, USA
In-Office
Expert/Leader
Semiconductor • Manufacturing
The Role
Lead global information security strategy for a semiconductor company: build security programs, manage risk and incidents, protect IP and customer data, oversee security teams, ensure compliance with NIST/ISO/CMMC, liaise with stakeholders, and drive security awareness and audits.
Summary Generated by Built In

We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting our intellectual property, customer data, and digital assets from cyber threats. The CISO needs to build a strong “security-first” culture across the organization to ensure that security is at the centre of all products and services.

 

This position requires a strong understanding of the semiconductor industry, strategic capabilities that can align our cybersecurity strategy and practices with our business model, objectives, and the risk universe we operate within globally.

 

The role requires a blend of innovative thinking to lead our company staying ahead of the ever-evolving threat landscape, along with strategic planning, technical expertise, and leadership –  to ensure our information security posture is robust and resilient against evolving cyber risks. The ideal candidate will have a proven track record in developing and implementing comprehensive security programs in High Tech or Semiconductor manufacturing environments.

 

Key Responsibilities:

  • Develop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program at a global scale –  to ensure the integrity, confidentiality, and availability of information owned, controlled, or processed by the organization, including secrets, patents, and proprietary designs
  • Lead the enterprise's information security organization, including hiring, training, and mentoring a team of security professionals.
  • Identify, evaluate, and report on information security risks timely, and in a manner that meets Executive Management and the Board’s expectations, meets the compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise.
  • Design and implement protective measures for securing proprietary designs, patents, and other sensitive corporate information, considering the unique risks present in the semiconductor industry, given innovation and IP contributes materially to our company’s competitive advantage.
  • Work directly with the business units to facilitate risk assessment and risk management processes, and work with stakeholders throughout the enterprise on identifying acceptable levels of residual risk.
  • Ensure cybersecurity policies are in alignment with Enterprise business policies, IT policies and the global Enterprise Risk Management framework for Wolfspeed.
  • Develop and manage information security budgets and adopt cost-effective expense strategies and practices – to reduce and mitigate identified risks.
  • Establish and oversee the implementation of a cybersecurity incident management program that includes incident detection, response, mitigation, and recovery processes.
  • Effectively align cybersecurity practices with overall crisis management and incident response strategies, test plans and tabletop exercises – to ensure business continuity for Wolfspeed in the event of a worst-case disaster scenario, whether or not triggered by a security incident.
  • Liaise with external agencies, such as law enforcement and other advisory bodies as necessary, to ensure that the organization maintains a strong security posture against external threats.
  • Conduct regular security audits, risk assessments, support annual financial and IT audit objectives, and ensure compliance with industry standards and regulatory requirements specific to the semiconductor industry.
  • Champion cybersecurity awareness and training programs globally, across all levels of the organization.

 

Ideal Qualifications:

  • Bachelor's or Master's degree in Information Security, Computer Science, or related field.
  • Professional security management certification, such as a CISSP, CISM, or similar.
  • 15+ years of experience in a combination of risk management, information security, and IT jobs, with at least 10 years in a senior leadership role.
  • Experience with NIST (800-171) and ISO (27001) frameworks 
  • Experience with CMMC (Cybersecurity Maturity Model Certification) for USGOV 
  • Deep understanding of the evolving cybersecurity threats facing the semiconductor industry and experience in crafting strategies to mitigate these risks.
  • Knowledge of relevant legal and regulatory requirements, including export controls
  • Experience with contract and vendor negotiations and management including managed services.
  • Strong leadership skills and the ability to work effectively with business managers, IT engineering and IT operations staff, Wolfspeed’s vendors and suppliers.
  • Excellent verbal and written communication skills, including the ability to explain technical concepts and technologies to business leaders, and business concepts to the IT workforce.

This role may require additional duties and/or assignments as designated by management.

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.

We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Skills Required

  • Bachelor's or Master's degree in Information Security, Computer Science, or related field
  • Professional security management certification (CISSP, CISM, or similar)
  • 15+ years of experience in risk management, information security, and IT, with at least 10 years in senior leadership
  • Experience with NIST (800-171) and ISO (27001) frameworks
  • Experience with CMMC (Cybersecurity Maturity Model Certification) for USGOV
  • Proven track record developing and implementing security programs in High Tech or Semiconductor manufacturing environments
  • Knowledge of relevant legal and regulatory requirements, including export controls
  • Experience with contract and vendor negotiations and management including managed services
  • Strong leadership skills and ability to work effectively with business managers, IT engineering, operations staff, vendors and suppliers
  • Excellent verbal and written communication skills; ability to explain technical concepts to business leaders and business concepts to IT

Cree Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Cree and has not been reviewed or approved by Cree.

  • Fair & Transparent Compensation Pay is often described as fair or decent in technician and operator roles. Compensation in some project management and security supervision roles is characterized as good.
  • Healthcare Strength Benefits include medical, dental, and vision coverage with HSA, FSA, and HRA options, plus EAP support. Wellness resources are highlighted alongside core health plans.
  • Parental & Family Support The package includes six weeks of paid parental leave and adoption assistance. Leave applies to new birth, adoption, and foster placement.

Cree Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Racine, WI
2,773 Employees
Year Founded: 1987

What We Do

Cree | Wolfspeed is the global leader in silicon carbide technology and production, leading the worldwide transition from silicon to silicon carbide. Our product portfolio provides disruptive technology solutions that support a more efficient, sustainable future including electric vehicles, fast charging, 5G, power supplies, renewable energy and storage, as well as aerospace and defense. Our people are dedicated to driving a significant shift in the technology sector and creating a global semiconductor powerhouse. For additional product and Company information, visit www.cree.com.

Similar Jobs

In-Office
Jacksonville, NC, USA
5800 Employees

Circle Logo Circle

Manager, Risk Management - AI Transformation

Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
In-Office or Remote
25 Locations
1050 Employees
158K-205K Annually

Cox Enterprises Logo Cox Enterprises

Customer Care Specialist II

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Hybrid
Cherryville, NC, USA
30000 Employees
18-27 Hourly

Cox Enterprises Logo Cox Enterprises

Customer Care Specialist II

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
30000 Employees
18-27 Hourly

Similar Companies Hiring

Fortune Brands Innovations Thumbnail
Manufacturing
Deerfield, IL
10000 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account