rehrig
rehrig~11h ago
New

Director or Cybersecurity

United StatesUnited States·Richardsonexecutive
OtherDirector
0 views0 saves0 applied

Quick Summary

Key Responsibilities

General Lives our Values — Consistently demonstrating behaviors aligned with our Rehrig Pacific Company values and models servant leadership.

Technical Tools
OtherDirector
  1. Risk Management & Threat Modeling
    1. Maintain the enterprise security risk register — identification, assessment, and tracking of mitigation — across infrastructure, applications, data, manufacturing operations, and third-party dependencies.
    2. Own the threat modeling practice for the company, ensuring new initiatives, new platforms, and significant architecture changes go through appropriate threat assessment before release.
    3. Continuously evolve the threat model to account for changes in adversary capabilities, the decreasing cost to exploit, and the AI-era threat landscape.
  2. Security Architecture & Engineering
    1. Own the security architecture for the enterprise — identity and access, network segmentation, data protection, application security, and the security layer for AI and agentic systems.
    2. Partner with the Director of Solutions Delivery on secure development practices, with particular attention to the guardrails and circuit breakers required for agentic systems.
    3. Maintain security standards, reference architectures, and design patterns that the rest of the organization can use without requiring direct involvement from the security team for routine decisions.
  3. Incident Response & Continuous Posture
    1. Lead enterprise incident response — detection through resolution and post-incident review — in tight partnership with the Senior Director of IT Operations on operational execution.
    2. Drive the shift from an annual security posture to a continuous one: continuous control validation, continuous risk assessment, and continuous improvement of the program’s response capability.
    3. Maintain the incident response plan, run regular tabletop exercises, and ensure both the security team and broader leadership are practiced and ready.
  4. Governance, Compliance, and Third-Party Risk
    1. Maintain alignment with the NIST Cybersecurity Framework and ensure compliance with applicable regulatory, contractual, and customer security requirements.
    2. Own third-party risk management — security review of vendors, contractual security commitments, and ongoing monitoring of critical third-party dependencies.
    3. Maintain the security policy framework and ensure policies are practical, current, and actually followed across the organization.
  5. Security Operations Partnership
    1. Partner with the Senior Director of IT Operations and the Security Operations team on the day-to-day operational execution of security controls — SIEM, vulnerability management, IAM, endpoint, and patch cadence.
    2. Own the definition of operational security objectives and the review of operational performance against them, while the execution of those controls lives within IT Operations.
  6. Awareness, Culture, and Program Evolution
    1. Lead the security awareness program for the broader workforce, with particular attention to the AI-era phishing, social engineering, and data-handling risks that traditional training misses.
    2. Continuously evolve the security program itself — tooling, staffing, practices — to keep pace with a threat environment that no longer waits for an annual review cycle.
  • Function Leadership — Provides clear direction and priorities for the security team. Owns the operating cadence for the security program (risk review, threat modeling, incident response readiness, control validation).
  • Cross-Functional Partnership — Maintains tight partnership with the Senior Director of IT Operations on operational execution, with the Director of Solutions Delivery on secure development and AI safety, and with the Director of Digital Innovation on security-by-design in new solutions.
  • Team Development — Develops the security team, with particular attention to skills required for the AI-era threat landscape. Builds the bench in a tight talent market.
  • Program Evolution — Treats the security program as a continuously evolving capability rather than a fixed standard. Drives measurable improvement in detection time, response time, and risk reduction.
  • Communication & Influence — Communicates security risk clearly to non-security audiences, including BU leadership and the broader Leadership Team. Builds the credibility required for security-by-design to be the default rather than a constraint.

Responsibilities

~1 min read
  • →Lives our Values — Consistently demonstrating behaviors aligned with our Rehrig Pacific Company values and models servant leadership.
  • →Ensures Accountability — Drives accountability and ensures the successful execution of function key accountabilities. Proactively establishes milestones, manages dependencies, and ensures completion.
  • →Balances Stakeholders / Plans & Aligns — Anticipates and balances the needs of multiple stakeholders across the business. Builds and maintains healthy cross-functional relationships.
  • →Develops Talent — Develops people to meet both their career goals and the organization’s goals. Networks with external resources and harvests top external talent to Grow the Family. Works with team members individually as needed while promoting a healthy team environment.
  • →A Culture of Innovation & Belonging — Contributes to the development of our Culture of Innovation & Belonging at Rehrig Pacific, through Personnel Development (Creativity + Commitment + Courage) and Organizational Development (Diversity, Belonging, Leadership).

Requirements

~1 min read
  • Bachelor’s Degree in Computer Science, Information Security, or a related field. A Master’s Degree would be a plus.
  • Professional certifications such as CISSP, CISM, CISA, or comparable strongly preferred; cloud security credentials (AWS Security Specialty or equivalent) preferred.
  • A minimum of 10 years of cybersecurity experience, with at least 4 years in a leadership role running a security program or major security function.
  • Hands-on, current familiarity with the AI-era threat landscape, including the security implications of LLMs, agentic systems, and AI-augmented adversaries.
  • Demonstrated experience evolving a security program from periodic to continuous posture, including the tooling, staffing, and practice changes that requires.
  • Working understanding of the NIST Cybersecurity Framework and applicable regulatory requirements for manufacturing or distribution operations.
  • Experience leading incident response, including the cross-functional coordination required during a material incident.
  • Strong organizational and leadership skills, with proven success in collaborative environments and outstanding communication and interpersonal abilities.
  • Ability to travel approximately 15–25% of the time.

Location & Eligibility

Where is the job
Richardson, United States
On-site at the office

Listing Details

First seen
September 25, 2026
Last seen
September 26, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
51%
Scored at
September 26, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

rehrigDirector or Cybersecurity