Director of Cybersecurity

Posted 12 Hours Ago
Be an Early Applicant
Beverly Hills, CA, USA
In-Office
184K-245K Annually
Expert/Leader
Agency • Fashion • News + Entertainment • Sports
The Role
Leads the global cybersecurity program, strategy, risk posture, governance, and executive reporting. Builds and manages the internal security team, oversees vendors and SLAs, directs incident response and cyber resilience, and owns security budgets and headcount planning. The role requires enterprise risk management, regulatory knowledge, board-level communication, security architecture fluency, and experience implementing NIST CSF or ISO 27001 programs.
Summary Generated by Built In

POSITION SUMMARY

The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.

KEY RESPONSIBILITIES

  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
  • Deliver executive- and board-level cyber-risk reporting.
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
  • Build and lead the internal security team and bring core security functions in-house from managed providers.
  • Direct incident response and cyber resilience, including business continuity and disaster recovery.
  • Establish cybersecurity governance, policy, and security-awareness programs.
  • Own the cybersecurity budget and headcount plan.

FUNCTIONS OWNED

Security Leadership & Strategy · Governance, Policy & Awareness · Incident Response & Cyber Resilience  (supports GRC, Risk & Compliance and AI Governance & Emerging Tech)

REQUIRED QUALIFICATIONS

  • 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
  • Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) — governance, policy, control framework, and a multi-year maturity roadmap.
  • Track record building and leading an internal security function — hiring, developing, and retaining architects, engineers, and analysts — including insourcing functions from a managed provider (MSSP).
  • Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
  • Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint — SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
  • Proven vendor and contract management — negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
  • Incident-response leadership — has directed the organization’s response to a material security incident and owns cyber-resilience / BCP-DR direction.
  • Security-budget ownership — has built and defended a security operating budget and headcount business case.
  • Working architecture fluency across identity, cloud (Azure), data protection, and SASE — enough to direct architects and challenge technical designs.
  • Bachelor’s degree in a relevant field or equivalent experience; CISSP and/or CISM required.

PREFERRED QUALIFICATIONS

  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
  • Media, entertainment, talent-representation, or high-net-worth-individual environment — elevated BEC/impersonation and privacy exposure.
  • Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
  • Experience insourcing security functions from a managed provider on a phased plan.
  • Advanced credentials — CRISC, CCISO, or an MBA / MS in cybersecurity.

Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum:

$183,750 annually (minimum will not fall below the applicable state/local minimum salary thresholds)

Hiring Rate Maximum:

$245,000 annually

Skills Required

  • 12+ years of cybersecurity experience
  • 5+ years leading security teams at manager or director level
  • Experience owning an enterprise security program based on NIST CSF 2.0 or ISO 27001
  • Experience building and leading an internal security function, including hiring, developing, and retaining security professionals
  • Experience insourcing security functions from a managed security provider or MSSP
  • Experience providing executive- and board-level cyber-risk reporting
  • Enterprise risk management and multi-jurisdiction regulatory knowledge, including SOX ITGC, GDPR, CCPA/CPRA, and PIPL
  • Vendor and contract management experience, including negotiating and enforcing SLAs with MSSPs
  • Incident-response leadership and ownership of cyber resilience and business continuity/disaster recovery
  • Experience building and defending a security operating budget and headcount business case
  • Architecture fluency across identity, Azure cloud, data protection, and SASE
  • Bachelor's degree in a relevant field or equivalent experience
  • CISSP and/or CISM certification
  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration
  • Media, entertainment, talent-representation, or high-net-worth-individual environment experience
  • Experience establishing an independent cyber-risk reporting line or remediating external assessment or audit findings
  • Experience insourcing security functions from a managed provider using a phased plan
  • CRISC, CCISO, MBA, or MS in cybersecurity
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
10,000 Employees
Year Founded: 1961

What We Do

WME Group is a global network of businesses that represent the world's leading talent, intellectual property and brands. It comprises the talent agency WME, global marketing agency 160over90, brand licensing agency IMG Licensing, and nonscripted content business Pantheon Media Group, specializing in talent representation, brand strategy, and event management across sports, entertainment, and fashion globally.

Similar Jobs

WME Group, LLC (d.b.a. WME) Logo WME Group, LLC (d.b.a. WME)

Director of Cybersecurity

Agency • Digital Media • News + Entertainment • Sports
In-Office
Beverly Hills, CA, USA
3000 Employees
184K-245K Annually
Hybrid
San Francisco, CA, USA
816 Employees
230K-245K Annually

Infoblox Logo Infoblox

Director, Global Cybersecurity GTM Programs & Strategy

Cloud • Information Technology • Security • Software
In-Office or Remote
2 Locations
2100 Employees
159K-230K Annually

Johnson & Johnson Logo Johnson & Johnson

Director Software Quality Engineering & Cybersecurity

Healthtech • Biotech • Pharmaceutical • Manufacturing
In-Office
Santa Clara, CA, USA
143612 Employees
172K-298K Annually

Similar Companies Hiring

DraftKings Thumbnail
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Boston, MA
6400 Employees
Fora Thumbnail
Agency • On-Demand • Professional Services • Sales • Software • Travel • Hospitality
New York, NY
250 Employees
Hedra Thumbnail
Software • News + Entertainment • Marketing Tech • Generative AI • Enterprise Web • Digital Media • Consumer Web
San Francisco, CA
14 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account