Sign up
Sign up
Sempra Infrastructure, a leading energy infrastructure company, is seeking an experienced and strategic Chief Information Security Officer (CISO) to join their mission-driven and innovative organization. The CISO will be responsible for creating and managing an enterprise-wide cybersecurity program which will play a crucial role in safeguarding Sempra Infrastructure's critical information assets and infrastructure as well as enabling secure digital transformation.
Reporting directly to the Vice President & Chief Information Officer (CIO), you will create strategy, policies and standards as they relate to application security, infrastructure security, compliance and security operations to ensure a robust security governance framework in alignment with business objectives and regulatory requirements. You will be responsible for leading the cybersecurity organization based in the US and Mexico, setting strategic priorities for cybersecurity initiatives, and ensuring the implementation of cybersecurity best practices across international operations. This role requires executive leadership experience, direct experience in leading a global security team in a highly regulated industry, and a strong background in global security regulations and compliance.
The ideal candidate will fill a visible, strategic, and high-impact leadership role within the organization. You will have excellent domain knowledge, and skills that leverage the capabilities of peers, business partners, and clients. You will instill the duty to protect our systems and the data of customers, employees, investors and partners. As such, this leader must engender control, trust, accountability, transparency, and urgency in the execution of his/her responsibilities. The ideal candidate will balance technical expertise with business acumen to drive a culture of security across our global operations.
Value Delivery, Strategy & Risk Management
Develop and implement a robust information security strategy and program that aligns with the organization’s objectives and regulatory requirements.
Assess and manage cybersecurity risks across the organization's digital infrastructure, networks, and sensitive data. Implement risk mitigation strategies and ensure regular risk assessments and audits.
Ensure the successful execution of cybersecurity program initiatives aimed at continuous improvements and increased cybersecurity maturity.
Oversee security operations, including incident response, threat intelligence, and vulnerability management at all locations. Lead the organization's response to cybersecurity incidents and breaches, ensuring quick recovery and minimal impact.
Oversee the selection and implementation of appropriate security technologies to protect the organization's systems and data.
Oversee the security aspects of the company's digital transformation initiatives, including cloud adoption, OT and IoT integration.
Brief the board of directors on the cybersecurity program and develop metrics to show measurable impact and progress of the cyber program and risk landscape.
Stay informed on emerging threats, technologies, and regulatory requirements in the energy sector.
GRC & Security Awareness
Establish and enforce security policies and procedures that comply with relevant legal, industry standards, regulations, and best practices (e.g., NERC CIP, ISO/IEC 27001).
Drive security awareness and training programs for employees at all levels to instill a sense of culture for cybersecurity.
Oversee the business continuity and resiliency plan in strong collaboration with the CIO and other business leaders.
Leadership & People Management
Lead and mentor the cybersecurity team, fostering a culture of security awareness and continuous improvement.
Develop, attract, and retain top talent for high performance and agility.
Create a work climate that enables project team members to develop professionally and that values diversity, promotes teamwork, and emphasizes quality, customer satisfaction, creativity, continuous improvement, and cost effectiveness.
Collaboration & Communication
Collaborate with executive leadership, including the CIO, and business unit leaders, to ensure security initiatives support overall company goals and to integrate cybersecurity into business processes and decision-making.
Work closely with IT, operations, and other departments to ensure a cohesive approach to cybersecurity.
Work closely with vendors and other external stakeholders to ensure that security standards are maintained and integrated into all projects and processes.
Serve as the liaison for collaboration and interacting with law enforcement agencies both local and federal.
Performs other duties as assigned (no more than 5% of duties).
Required Qualifications
Preferred Qualifications
Sempra Infrastructure, a leading energy infrastructure company, is seeking an experienced and strategic Chief Information Security Officer (CISO) to join their mission-driven and innovative organization. The CISO will be responsible for creating and managing an enterprise-wide cybersecurity program which will play a crucial role in safeguarding Sempra Infrastructure's critical information assets and infrastructure as well as enabling secure digital transformation.
Reporting directly to the Vice President & Chief Information Officer (CIO), you will create strategy, policies and standards as they relate to application security, infrastructure security, compliance and security operations to ensure a robust security governance framework in alignment with business objectives and regulatory requirements. You will be responsible for leading the cybersecurity organization based in the US and Mexico, setting strategic priorities for cybersecurity initiatives, and ensuring the implementation of cybersecurity best practices across international operations. This role requires executive leadership experience, direct experience in leading a global security team in a highly regulated industry, and a strong background in global security regulations and compliance.
The ideal candidate will fill a visible, strategic, and high-impact leadership role within the organization. You will have excellent domain knowledge, and skills that leverage the capabilities of peers, business partners, and clients. You will instill the duty to protect our systems and the data of customers, employees, investors and partners. As such, this leader must engender control, trust, accountability, transparency, and urgency in the execution of his/her responsibilities. The ideal candidate will balance technical expertise with business acumen to drive a culture of security across our global operations.