Lee Enterprises - Davenport, IA

posted 4 months ago

Full-time - Senior
Davenport, IA
251-500 employees
Publishing Industries

About the position

The Chief Information Security and Cybersecurity Transformation Officer (CISO & CTO) at Lee Enterprises is a pivotal role responsible for the development and implementation of a comprehensive information security strategy that safeguards the organization's information assets, technologies, and systems. This strategic position requires a deep understanding of cybersecurity principles and practices, as well as the ability to manage security policies, conduct risk assessments, and oversee incident response activities. The CISO & CTO will also ensure compliance with relevant regulations and standards, such as GDPR, HIPAA, and ISO 27001, while leading a cybersecurity transformation program aimed at enhancing the organization's overall cybersecurity posture. In this role, the CISO & CTO will collaborate closely with executive leadership, IT teams, and other stakeholders to integrate and elevate security measures across the organization. This includes establishing and enforcing information security policies, conducting regular risk and vulnerability assessments, and leading the development of security awareness training programs for employees. The CISO & CTO will also oversee the management of security incidents, coordinate response efforts, and monitor security trends to anticipate potential threats. Regular reporting to executive leadership and the board of directors on the state of the organization's security posture will be a key responsibility. The CISO & CTO will identify and prioritize cybersecurity initiatives that align with the organization's strategic goals, lead the implementation of advanced cybersecurity technologies and processes, and foster a culture of continuous improvement in cybersecurity practices. This role is essential for ensuring that Lee Enterprises remains resilient against evolving cyber threats and maintains a strong security posture in a rapidly changing digital landscape.

Responsibilities

  • Develop, implement, and maintain a comprehensive information security strategy and program.
  • Establish and enforce information security policies, standards, and procedures.
  • Conduct regular risk assessments and vulnerability assessments to identify and mitigate potential security threats.
  • Lead the development and implementation of security awareness training programs for employees.
  • Oversee the management of security incidents and coordinate response efforts.
  • Ensure compliance with relevant regulations, standards, and best practices (e.g., GDPR, HIPAA, ISO 27001).
  • Collaborate with IT and other departments to integrate security measures into system development and operational processes.
  • Manage relationships with external security vendors and partners.
  • Monitor and analyze security trends and intelligence to anticipate potential threats.
  • Prepare and present regular reports to executive leadership and the board of directors on the state of the organization's security posture.
  • Develop and implement a cybersecurity transformation program aimed at improving the organization's overall cybersecurity posture.
  • Identify and prioritize cybersecurity initiatives that align with the organization's strategic goals.
  • Lead the implementation of advanced cybersecurity technologies and processes.
  • Foster a culture of continuous improvement in cybersecurity practices.
  • Other duties as assigned.

Requirements

  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field; a master's degree is preferred.
  • Professional certifications such as CISSP, CISM, CISA, or equivalent.
  • Minimum of 10 years of experience in information security, with at least 5 years in a leadership role.
  • Proven track record of developing and implementing successful information security programs.
  • Strong understanding of regulatory requirements and industry standards.
  • Excellent communication and interpersonal skills, with the ability to effectively convey complex security concepts to non-technical stakeholders.
  • Strong analytical and problem-solving skills.
  • Ability to manage multiple projects and priorities in a fast-paced environment.
  • Experience in leading cybersecurity transformation initiatives.

Nice-to-haves

  • Experience with advanced cybersecurity technologies and processes.
  • Familiarity with security frameworks and compliance standards.

Benefits

  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Short and long-term disability insurance
  • Company provided life insurance
  • Supplemental life insurance
  • 401K retirement plan with company match
  • Generous paid time off including paid parental leave for new parents
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service