empty

Senior Director, Cybersecurity Risk Management

Job Description

Posted on: 
January 20, 2025

Summary and company overview

Job Summary

The Senior Director will lead a team of risk management professionals, collaborate with other senior leaders, and report directly to the executive team. The Senior Director of Risk Management will drive the governance and oversight of cyber-related risks within the broader enterprise risk management (ERM) framework. This role will focus on establishing a robust governance structure that integrates cyber risk into the overall risk management strategy, ensuring executive-level visibility and decision-making on critical cyber risks. The successful candidate will provide strategic direction, enable cross-functional collaboration, and enhance risk governance frameworks to ensure that cyber risks are effectively managed within the context of broader business risks.

Company Overview

Through groundbreaking technology and a commitment to stellar experiences for drivers and dealers alike, Cox Automotive employees are transforming the way the world buys, owns, sells – or simply uses – cars. Cox Automotive employees get to work on iconic consumer brands like Autotrader and Kelley Blue Book and industry-leading dealer-facing companies like vAuto and Manheim, all while enjoying the people-centered atmosphere that is central to our life at Cox. Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page. Cox is an Equal Employment Opportunity employer – All qualified applicants/employees will receive consideration for employment without regard to that individual’s age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Cox provides reasonable accommodations when requested by a qualified applicant or employee with disability, unless such accommodations would cause an undue hardship.

Responsibilities

  • Develop a security risk management framework to identify, assess, prioritize, and mitigate potential security risks by developing and implementing a structured process to continuously monitor and manage threats to CAI's assets, ensuring compliance with relevant regulations and aligning with the organization's risk tolerance.
  • Security Risk Governance Strategy: Develop and oversee the governance structure for integrating cyber risk into the enterprise risk management framework.
  • Risk Reporting and Transparency: Establish key metrics and reporting mechanisms to regularly update Senior Leadership on the organization's cyber risk posture.
  • Risk Committee Engagement: Act as a key advisor to the Risk Oversight bodies, providing insights into cyber risks and their impact on business strategy and operations.
  • Enterprise Risk Integration: Collaborate with risk management, legal, finance, and other functional teams to ensure that cyber risks are consistently evaluated and integrated.
  • Risk Appetite and Tolerance: Work with senior leadership to define and communicate the organization’s cyber risk appetite and tolerance levels.

Job Requirements

Minimum Qualifications:

  • Bachelor's Degree and 12 years of experience in Information Technology Security, Operations, Risk Management, or Audit.
  • At least 7 years of experience in Cybersecurity, Technology, Risk Management, or External Audit.
  • At least 7 years of People Management experience in a leadership role.
  • Executive Communication Skills.
  • Excellent problem-solving, analytical, and critical thinking skills.

Preferred Qualifications:

  • Continuous Improvement and Adaptability.
  • Leadership and Influence: Demonstrated ability to engage, influence, and collaborate with senior executives.
  • Cyber and Enterprise Risk Management Expertise: Deep understanding of cyber and ERM principles and frameworks (e.g., NIST, ISO, COSO, COBIT).
  • Cyber Risk Knowledge: Strong expertise in identifying, assessing, and mitigating cyber risks within complex organizations.

Additional commentary

To be employed in this role, you’ll need to clear a pre-employment drug test. Cox Automotive does not currently administer a pre-employment drug test for marijuana for this position. However, we are a drug-free workplace, so the possession, use or being under the influence of drugs illegal under federal or state law during work hours, on company property and/or in company vehicles is prohibited.

The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company’s needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.

Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship.

Summary and company overview

Job Summary

The Senior Director will lead a team of risk management professionals, collaborate with other senior leaders, and report directly to the executive team. The Senior Director of Risk Management will drive the governance and oversight of cyber-related risks within the broader enterprise risk management (ERM) framework. This role will focus on establishing a robust governance structure that integrates cyber risk into the overall risk management strategy, ensuring executive-level visibility and decision-making on critical cyber risks. The successful candidate will provide strategic direction, enable cross-functional collaboration, and enhance risk governance frameworks to ensure that cyber risks are effectively managed within the context of broader business risks.

Company Overview

Through groundbreaking technology and a commitment to stellar experiences for drivers and dealers alike, Cox Automotive employees are transforming the way the world buys, owns, sells – or simply uses – cars. Cox Automotive employees get to work on iconic consumer brands like Autotrader and Kelley Blue Book and industry-leading dealer-facing companies like vAuto and Manheim, all while enjoying the people-centered atmosphere that is central to our life at Cox. Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page. Cox is an Equal Employment Opportunity employer – All qualified applicants/employees will receive consideration for employment without regard to that individual’s age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Cox provides reasonable accommodations when requested by a qualified applicant or employee with disability, unless such accommodations would cause an undue hardship.

Apply now