安全赋能总监
Director, Security Enablement
#### 公司简介
Experian 是一家全球性的数据和技术公司,为世界各地的个人和企业创造机会。我们涉足多个市场,包括金融服务、医疗保健、汽车、农业、保险等。Experian 投资于人才和先进的新技术,以释放数据的潜力。我们在 32 个国家拥有 25,200 名优秀员工。
#### 职位描述
安全赋能总监负责推动安全运营节奏、安全指标、高管报告、风险协调以及支持金融服务业和数据(FSD)业务单元的安全跨职能项目。您将成为全球安全办公室的关键联络人,并将安全数据和风险信息转化为明确的优先事项和决策。
这是一个业务单元执行角色,而非一线工程岗位。您将向高级总监汇报。
**您将有机会:**
- 主导每周和每月的安全运营评审、评分卡、仪表盘和高管报告。
- 制定并维护安全 KPI 和 KRI,包括数据质量、责任归属、阈值、趋势和报告频率。
- 在 Archer 中协调安全风险、问题和偏差,确保明确的责任归属、修复计划、目标日期、逾期情况和升级流程。
- 通过整合云安全发现结果到治理指标和领导层报告中,跟踪 AWS 安全态势和迁移相关风险。
- 作为安全、工程、应用安全、法律、全球安全办公室和业务领导之间的主要联络人,就标准、风险可见性和升级进行沟通。
- 协调安全沟通和项目执行,包括安全意识、政策和领导层更新。
- 管理安全供应商的 PoV(概念验证)跟踪和安全 FinOps 报告,包括评估状态、工具支出、许可证使用率、续订和预算差异。
- 将安全活动、趋势和风险转化为清晰的决策支持,用于优先级排序、投资、修复和升级。
- 关注新兴的人工智能和安全趋势,包括相关的人工智能工具、用例、风险和安全考虑。
#### 资格要求
**您的背景:**
- 10 年以上网络安全、安全项目管理、安全治理、技术风险或相关领域的经验。
- 5 年以上团队管理经验。
- 网络安全、信息系统或相关专业的学士学位。
查看英文原文
#### Company Description
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more. Experian invests in people and new advanced technologies to unlock the power of data. We have an amazing team of 25,200 people in 32 countries.
#### Job Description
The Director, Security Enablement leads the operating cadence, security metrics, executive reporting, risk coordination, and cross-functional programs that support Security across the Financial Services and Data (FSD) business unit. You will be a key liaison to the Global Security Office and turn security data and risk information into clear priorities and decisions.
This is a business-unit execution role rather than a hands-on engineering position. You will report to the Senior Director.
**You'll have the opportunity to:**
- Lead weekly and monthly security operating reviews, scorecards, dashboards, and executive reporting.
- Define and maintain security KPIs and KRIs, including data quality, ownership, thresholds, trends, and reporting cadence.
- Coordinate security risks, issues, and deviations in Archer, ensuring clear ownership, remediation plans, target dates, aging, and escalation.
- Track AWS security posture and migration-related risk by consolidating cloud security findings into governance metrics and leadership reporting.
- Be a primary liaison across Security, Engineering, Application Security, Legal, the Global Security Office, and business leaders on standards, risk visibility, and escalations.
- Coordinate security communications and program execution, including awareness, policy, and leadership updates.
- Manage security vendor Proof of Value (PoV) tracking and Security FinOps reporting, including evaluation status, tooling spend, license utilization, renewals, and budget variance.
- Translate security activity, trends, and risk into clear decision support for prioritization, investment, remediation, and escalation.
- Stay current on emerging AI and security trends, including relevant AI tools, use cases, risks, and security considerations.
#### Qualifications
**Your background:**
- 10+ years of experience in cybersecurity, security program management, security governance, technology risk, or a related field.
- 5+ years of people leadership experience.
- Bachelor's degree in Cybersecurity, Information Systems, Business, or a related field, or equivalent practical experience.
- Experience with enterprise GRC/IRM platforms such as RSA Archer for risk, issue, deviation, workflow, or reporting processes.
- Experience running recurring security operating reviews, action tracking, executive reporting, and KPI/KRI dashboards.
- Working knowledge of AWS security fundamentals, such as IAM, Security Hub, Config, WAF, or equivalent, to report on cloud risk.
- Experience working within 1LOD/2LOD risk models and coordinating programs across multiple business units in a matrixed environment.
- Experience presenting to senior leadership.
- Experience with security vendor evaluations, CSPM/CNAPP, AppSec, DSPM, Security FinOps, or certifications such as CISM, CRISC, CISSP, or AWS Certified Security - Specialty preferred.
#### Additional Information
Our uniqueness is that we celebrate yours. Experian's people first, inclusive and purpose driven culture is multi award-winning; World's Best Workplaces™ 2025 (Fortune Global Top 25), Great Place To Work™ in 26 countries to name a few. Check out Experian Life on social or explore our Careers Site to understand why.
Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education. You will be also eligible for a variable pay opportunity.
Experian is proud to be an Equal Opportunity Employer for all groups protected under applicable federal, state and local law, including protected veterans and individuals with disabilities. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
**Benefits/Perks:**
- Great compensation package and bonus plan.
- Core benefits including medical, dental, vision, and matching 401K.
- Flexible work environment, ability to work remote, hybrid or in-office.
- Flexible time off including volunteer time off, vacation, sick and 12-paid holidays.
- Explore all our exciting benefits here: [https://myexperianbenefits.com/.](https://myexperianbenefits.com/)
**Recruitment Fraud Awareness**- Experian's recruitment process is conducted only through authorised channels. Recruitment communications will only be sent from an **@ [experian.com](http://experian.com)** email address.
**Experian will never ask candidates to make any payment** as part of an application, interview, assessment, onboarding, or recruitment process. To apply for roles or verify opportunities, please visit **[experian.com/careers](http://experian.com/careers)**
#LI-Remote
This is a remote position.