Director of Information Security & Compliance Job at DBM Global Inc, Phoenix, AZ

QVBKYXFzbWZLQmFIVHpqRmRIK2Zqc0RrWkE9PQ==
  • DBM Global Inc
  • Phoenix, AZ

Job Description

As the Director Information Security & Compliance at DBMG, you'll be responsible for establishing and maintaining the information security program to ensure that information assets and associated technology, applications, systems, infrastructure and processes are adequately protected. This position is responsible for identifying, evaluating and reporting on legal and regulatory, IT, and cybersecurity risk to information assets, while supporting and advancing business objectives. This position is responsible for maintaining IT General Controls for maintaining Sarbanes Oxley (SOX) compliance.

Core Responsibilities:
• Provide regular reporting on the status of the information security program, cybersecurity risk posture, and emerging threat landscape to enterprise risk teams and senior business leaders as part of a strategic enterprise risk management program.
• Develop, maintain, and continuously improve the enterprise cybersecurity strategy, including policies, standards, and procedures aligned with industry frameworks (e.g., NIST, ISO, CIS).
• Lead the organization's cybersecurity risk management program, including the identification, assessment, prioritization, and remediation of security risks across systems, applications, infrastructure, and third-party environments.
• Oversee security monitoring, vulnerability management, and threat detection activities, ensuring timely identification and remediation of vulnerabilities and potential security incidents.
• Establish and maintain incident response and cyber event management processes, including preparation, detection, containment, eradication, and recovery from cybersecurity incidents.
• Maintain and mature the organization's security architecture and security control framework, ensuring security is integrated into infrastructure, cloud platforms, applications, and DevOps processes.
• Work with vendors and third parties to ensure that information security and cybersecurity requirements are embedded in contracts, services, and vendor risk assessments.
• Create and manage a targeted security awareness and cybersecurity training program for employees, contractors, and approved system users, and establish metrics to measure the effectiveness of security education.
• Maintain an Enterprise Risk Register that drives the cybersecurity investment strategy, risk mitigation initiatives, and long-term security roadmap.
• Provide clear risk-mitigating directives for IT projects and initiatives, ensuring secure design principles and mandatory security controls are implemented across technology solutions.
• Collaborate with Infrastructure, DevOps, and application teams to ensure secure system configuration, patch management, identity and access controls, and data protection practices are implemented and maintained.
• Work with internal and external audit firms to ensure compliance with Sarbanes Oxley (SOX) and other regulatory or contractual obligations. Ensure IT General Controls (ITGCs) are effective, documented, and operate successfully. #LI-KF1

Cybersecurity Operations & Resilience:
  • Oversee business continuity and disaster recovery cybersecurity considerations.
  • Lead tabletop exercises and incident simulations to validate response readiness.
  • Coordinate with legal, risk, and communications teams during significant cyber events.
ADDITIONAL DUTIES & RESPONSIBILITIES:
(This job description is not an exclusive or exhaustive list of all job responsibilities and functions that an employee in this position may be asked to perform. The above statements describe the general nature and level of work being performed. Duties and responsibilities can be changed, expanded, reduced, or delegated by management to meet the business needs of the company)
Work Experience
  • 5-10 Years' experience
Education/Training
  • BS in Computer Science or related field, or equivalent experience
  • CISSP certification is required for this role; if you do not currently have this certification, you'll have 12 months to obtain it.
Software & Technology
  • MS Windows 7 and/or MS Windows 10, MS Word, MS Excel, MS PowerPoint, and MS Outlook.
  • Experience with Evotec and/or oversight Systems is highly preferre

Work Environment

Position requires as many hours as needed to fulfill the daily and weekly obligations required to carry out the functions. Working long days, including evenings and weekends can be required for this position. This position is generally indoors in a climate-controlled office environment. Reasonable accommodations may be made upon request for those who have disabilities that qualify under the Americans with Disabilities Act.


DBM International is an Equal Opportunity Employer with an Affirmative Action Plan. (Apply Directly, No Agencies) #LI-KF1

Job Tags

For contractors, Work experience placement, Work at office, Afternoon shift

Similar Jobs

McLaren Medical Group

Physician Emergency Medicine - Competitive Salary Job at McLaren Medical Group

 ...Qualified candidates will be BC/BE in Emergency Medicine with life support certification from the American Heart Association or American Red Cross. Family Medicine Board Certified trained providers will be considered with greater than 2 years of EM experience. McLaren... 

Family Partnerships of Central Florida

Calling All Men: Be the Role Model They Need Job at Family Partnerships of Central Florida

 ...Young men in foster careespecially teens and young adultsare in urgent need of positive male role models . If you're a man aged 25 or older and live in Orange, Seminole, Osceola, or Brevard counties, you can make a lasting difference in a young life through our Family... 

Surfaceexperts

Entry-Level Field Sales Rep — Train, Earn & Grow Job at Surfaceexperts

A national surface repair company seeks individuals for an in-field sales role in Bethesda, Maryland. You will manage your schedule, conduct on-site visits, and log insights in software. This position values attributes over experience - no prior sales experience is required... 

BASIS Ed

Special Education Teacher - 26/27 Job at BASIS Ed

 ...Description BASIS DC is seeking qualified candidates for a Special Education Teacher for the 2026/2027 school year! Visit -dc/to learn...  ...ADA; Preparing and reporting accurate and timely data for internal and external regulatory purposes; Supporting general... 

Hyundai Transys Georgia Seating System, LLC

Material Planning Specialist Job at Hyundai Transys Georgia Seating System, LLC

 ...Responsibilities: Essential duties and responsibilities include but are not limited to those listed below: Establishment of KD/LP material plan. Maintain appropriate material inventory. Seat production plan analysis and check material coverage. Process monthly...