Vice President, Information Security
$212.3k - $278.33kSWCA Environmental Consultants
About the opportunity SWCA Environmental Consultants is seeking a strategic, business-oriented, and highly experienced Vice President, Information Security to lead the organization's cybersecurity, governance, risk, compliance, business continuity, resilience, and information protection programs. Reporting to the Chief Digital Information Officer (CDIO), the Vice President, Information Security serves as SWCA's senior cybersecurity executive and trusted advisor on cyber risk, regulatory compliance, client data protection, operational resilience, and emerging technology risk. This executive will set enterprise security direction, strengthen cyber resilience, and enable responsible growth, innovation, AI adoption, and digital transformation across SWCA. The role will lead security operations, governance, regulatory readiness, data protection, third-party risk, business continuity, and federal compliance initiatives including CUI and CMMC readiness. The Vice President will partner with executive leadership, operations, business development, legal, HR, finance, and technology teams to ensure security protects SWCA while enabling business objectives. What You Will Bring to the Team:
At SWCA, we support our team members in developing their careers to make them leaders in their industry. Our Career Landscape initiative is a process and guide designed to help chart rewarding career paths for employees at SWCA. We encourage professional conference attendance, internal and external professional development and training programs, education reimbursement, and bonuses for publications meeting certain criteria. All regular status employees are eligible to participate in SWCA medical, dental, vision, employee assistance, wellness, life and disability plans, and are eligible to participate in the SWCA 401(k) Profit Sharing Plan and Trust.
If you need assistance accessing SWCA's website, completing the online application, or require accommodations at any point during the hiring process due to a disability, please contact us at View email address on click.appcast.io or call View phone number on click.appcast.io. We're committed to providing an inclusive and supportive experience for all candidates. This contact information is specifically for accommodation requests; other inquiries will not receive a response.
What you will accomplish Information Security Strategy & Executive Leadership
An employee in this US-based position can expect an annual salary of $212,300.00 to $278,330. Actual pay within this range may depend on experience, qualifications, geographic location, client requirements where applicable, and other factors permitted by law. Bonus targets are up to 50% of salary depending upon both company and individual performance. Candidates are also encouraged to consider SWCA's Total Rewards package, which includes a competitive benefits package ( forward-thinking workplace flexibility, outstanding corporate culture, award-winning career development, and more.
EOE - women, minorities, individuals with disabilities and veterans are encouraged to apply. At SWCA Environmental Consultants, we celebrate diversity and are committed to creating an inclusive work environment. We strongly encourage candidates from all backgrounds, including those with diverse experiences and veterans, to apply. We believe that a diverse and inclusive workforce enhances creativity, innovation, and overall organizational success.
SWCA continues to invest deeply in career development programs, delivering our award-winning Career Landscape support resources to accelerate the growth of our staff. We recognize the valuable skills and experiences our internal team members bring to SWCA's continued success. Qualified internal candidates are encouraged to apply and will be seriously considered for this position. We believe in promoting from within, where possible, providing our existing employees with compelling opportunities to advance their careers. #LI-KB1
- Executive presence with the ability to advise senior leaders, clients, and the Board.
- Business-minded, risk-based decision maker who balances protection, operational enablement, and growth.
- Deep expertise in cybersecurity, compliance, resilience, data protection, and emerging technology governance.
- Collaborative leader who builds trust across business, technology, legal, HR, finance, and operations teams.
- Passion for developing people, strengthening culture, and building high-performing teams.
At SWCA, we support our team members in developing their careers to make them leaders in their industry. Our Career Landscape initiative is a process and guide designed to help chart rewarding career paths for employees at SWCA. We encourage professional conference attendance, internal and external professional development and training programs, education reimbursement, and bonuses for publications meeting certain criteria. All regular status employees are eligible to participate in SWCA medical, dental, vision, employee assistance, wellness, life and disability plans, and are eligible to participate in the SWCA 401(k) Profit Sharing Plan and Trust.
If you need assistance accessing SWCA's website, completing the online application, or require accommodations at any point during the hiring process due to a disability, please contact us at View email address on click.appcast.io or call View phone number on click.appcast.io. We're committed to providing an inclusive and supportive experience for all candidates. This contact information is specifically for accommodation requests; other inquiries will not receive a response.
What you will accomplish Information Security Strategy & Executive Leadership
- Define and execute an enterprise cybersecurity strategy aligned with SWCA's business objectives, risk appetite, and growth plans.
- Serve as the senior executive advisor on cyber risk, regulatory obligations, emerging threats, and security investments.
- Establish executive-level reporting, KPIs, maturity roadmaps, and governance mechanisms that demonstrate program effectiveness.
- Benchmark capabilities against leading frameworks and translate findings into practical, risk-based improvement plans.
- Lead enterprise security operations across threat detection, incident response, vulnerability management, endpoint protection, identity and access management, and security monitoring.
- Own cyber incident management, crisis response, ransomware preparedness, and recovery planning.
- Oversee security investigations, event analysis, and continuous improvement of SWCA's security posture.
- Ensure effective protection of cloud, SaaS, endpoint, collaboration, and core business platforms.
- Lead the enterprise Governance, Risk & Compliance program, including policies, standards, control frameworks, and risk acceptance processes.
- Oversee cyber risk assessments, enterprise risk registers, executive risk reviews, and security governance forums.
- Establish mature third-party and supply chain risk management capabilities.
- Coordinate client security assessments, audits, due diligence reviews, questionnaires, and contractual security requirements.
- Lead CUI, NIST 800-171, DFARS, CMMC, and federal cybersecurity readiness initiatives.
- Design and govern secure operating environments, enclave requirements, segmentation, data handling, and access controls for regulated data.
- Maintain System Security Plans, Plans of Action & Milestones, audit evidence, and compliance governance processes.
- Partner with federal clients, assessors, auditors, and regulatory stakeholders to demonstrate compliance and readiness.
- Develop the enterprise data protection strategy, including information classification, handling standards, and Data Loss Prevention governance.
- Protect sensitive client information, project data, environmental and geospatial data, and intellectual property.
- Partner with legal, compliance, HR, and business leaders to embed information governance and insider risk controls into business processes.
- Lead the cybersecurity review of client, partner, subcontractor, and vendor agreements to identify security, privacy, compliance, data protection, incident response, and regulatory obligations.
- Partner with Legal, Procurement, Contracts, and business leaders to assess and negotiate cybersecurity, information security, CUI, data management, privacy, AI, and compliance requirements.
- Establish processes to evaluate contractual risks associated with data retention, data sovereignty, cybersecurity obligations, audit rights, breach notification requirements, and third-party security expectations.
- Ensure contractual security and compliance requirements are translated into operational controls, policies, governance processes, and reporting obligations.
- Advise executive leadership on contractual cyber risk exposure and emerging compliance obligations associated with client and government agreements.
- Own enterprise business continuity, crisis management, cyber recovery, and operational resilience programs.
- Develop and maintain continuity plans, incident response plans, recovery objectives, and resilience frameworks.
- Lead business impact analyses, tabletop exercises, preparedness activities, and cross-functional disruption response planning.
- Partner with technology leaders to ensure disaster recovery capabilities meet business continuity requirements.
- Establish security and governance standards for AI-enabled business solutions, enterprise AI platforms, automation, and emerging technologies.
- Assess cybersecurity, privacy, regulatory, intellectual property, and client-obligation risks associated with generative AI and evolving digital platforms.
- Partner with business and technology leaders to enable responsible, secure adoption of AI capabilities.
- Establish enterprise security architecture standards, secure design principles, and security-by-design practices.
- Provide security oversight for major technology initiatives, architecture decisions, and high-risk business changes.
- Lead Zero Trust strategy development and partner with technology leaders to evaluate emerging technology risks.
- Partner with business development and operations teams to support opportunities requiring strong cybersecurity, compliance, and client-assurance capabilities.
- Participate in client security reviews, due diligence activities, and security capability discussions.
- Support federal, utility, critical infrastructure, and regulated client pursuits through credible security and compliance programs.
- Enable secure collaboration with clients, partners, subcontractors, and project teams.
- Build, lead, and develop a high-performing Information Security organization.
- Mentor security leaders and cybersecurity professionals; establish talent development and succession planning strategies.
- Promote security awareness, accountability, collaboration, and operational excellence across SWCA.
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related discipline.
- 15+ years of progressive cybersecurity and technology leadership experience, including 7+ years leading enterprise security organizations or programs.
- Experience as a CISO, VP Information Security, Director of Information Security, or equivalent senior security leadership role.
- Demonstrated success leading cybersecurity programs in geographically distributed organizations.
- Deep expertise across cybersecurity strategy, GRC, security operations, incident response, security architecture, identity and access management, third-party risk, and business continuity.
- Hands-on leadership experience with CUI governance, NIST 800-171 controls, CMMC readiness, SSPs, POA&Ms, and compliance governance programs.
- Strong executive communication, stakeholder influence, and Board-level presentation skills.
- Experience supporting organizations that manage CUI, perform federal contract work, or support utility, critical infrastructure, or regulated clients.
- Experience in AEC, environmental consulting, engineering services, professional services, federal contracting, or regulated industries.
- Master's degree preferred.
- Experience with GCC, GCC High, secure enclave environments, or enterprise GRC transformations.
- Familiarity with Autodesk, GIS, BIM, geospatial platforms, and engineering collaboration ecosystems.
- CISSP, CISM, CRISC, CCSP, CGRC, or equivalent senior security certification.
- CMMC Registered Practitioner, CMMC Certified Professional, or comparable federal compliance credential.
- Microsoft, Azure, AWS Security, ITIL, or related technology certifications.
An employee in this US-based position can expect an annual salary of $212,300.00 to $278,330. Actual pay within this range may depend on experience, qualifications, geographic location, client requirements where applicable, and other factors permitted by law. Bonus targets are up to 50% of salary depending upon both company and individual performance. Candidates are also encouraged to consider SWCA's Total Rewards package, which includes a competitive benefits package ( forward-thinking workplace flexibility, outstanding corporate culture, award-winning career development, and more.
EOE - women, minorities, individuals with disabilities and veterans are encouraged to apply. At SWCA Environmental Consultants, we celebrate diversity and are committed to creating an inclusive work environment. We strongly encourage candidates from all backgrounds, including those with diverse experiences and veterans, to apply. We believe that a diverse and inclusive workforce enhances creativity, innovation, and overall organizational success.
SWCA continues to invest deeply in career development programs, delivering our award-winning Career Landscape support resources to accelerate the growth of our staff. We recognize the valuable skills and experiences our internal team members bring to SWCA's continued success. Qualified internal candidates are encouraged to apply and will be seriously considered for this position. We believe in promoting from within, where possible, providing our existing employees with compelling opportunities to advance their careers. #LI-KB1
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Vice President, Information Security in United States vacancy
$240k - $290k
...forward-looking leader to serve as Senior Vice President and Chief Privacy Officer (CPO).... ...organization effectively manages privacy and information-related risks and meets or exceeds... ...Enterprise Risk Management, Information Security, Technology, Data Governance, Legal, Internal...SuggestedFull timeWork from home- We’re seeking a future team member for the role of Vice President, Information Security to join our information Security team. This role is located in Lake Mary, Florida or Pittsburg, PA.In this role, you’ll make an impact in the following ways: Lead the design, development...SuggestedWork experience placementWorldwideFlexible hours
- WHO WE ARELed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats... ...operational oversight and risk management.YOUR IMPACTAs a Vice President in the Risk Practices and Control Management Team within...SuggestedWork at office
- ...extraordinary journey today. Position Summary The Vice President of Information Technology leads the technology foundation that RPM Living... .... Responsibilities Own the enterprise information security program anchored to a recognized framework (NIST CSF 2.0...SuggestedWeekly payFull timeStart working todayLive inWork at officeNight shift
$250k - $350k
...where you and your unique viewpoint matter. Learn about the Danaher Business System which makes everything possible.The Vice President, Information Security - Manufacturing Plant Security, Product Security & Application Security is responsible for protecting Danaher’s...SuggestedFull timeRemote workWorldwide- Vice President, Business Information Security Office (BISO) & Cyber Security RiskAbout Our TeamThe Business Information Security Office (BISO) team partners closely with business, product, and technology leaders to deliver measurable security outcomes that directly support...Full timeWork at office
- We’re seeking a future team member for the role of Vice President, Cloud Security Engineer to join our Cloud Security team. This role is located in New York.In this role, you’ll make an impact in the following ways:Support implementation and continuous improvement of cloud...WorldwideFlexible hours
$251.9k - $314.9k
...LocationCINCINNATI GENERAL OFFICESJob DescriptionP&G is searching for a senior technical leader to join the company as the Vice President of Information Security - Identity, Data Protection & Governance. This role will lead the enterprise strategy for identity security, data...Full timeWork at office- ...Vice President, Deputy Chief Information Security Officer About the Company Pioneering cybersecurity solutions platform Industry Computer & Network Security Type Privately Held, VC-backed Founded 2012 Employees 1001-5000 Funding $26-$50 million...
$250k - $291k
...Vice President, Information Security Remote Spring Health is a global mental health company on a mission to eliminate every barrier to mental health. We're building a world where getting support is simple, personal, and built around the person, so care can continue...Remote workWorldwide$226k - $339.7k
...seeking a strategic and highly technical Vice President to lead our global Cyber Exposure... ...defense capabilities, shape long-term security architecture strategy, and lead large-scale... ...This role reports directly to the Chief Information Security Officer (CISO) and partners closely...Full timeWork at office$120k - $210k
Morgan Stanley is seeking a Vice President, Cyber, Technology and Information Security (CTIS) Risk Oversight Lead in the CTIS team within Non-Financial Risk.The successful candidate will be responsible for leading a team focused on independent oversight and monitoring...Temporary workWork experience placement$150k - $250k
WHO WE ARELed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats... ...to manage risk portfolios.As the Vendor Risk Program Vice President, you will be part of or oversee a team that is responsible...- ...more details.Role Overview:MUFG is seeking a highly motivated Security Engineer to design, develop, and deploy autonomous agents that... ...EngineerMicrosoft Certified: Azure AI Engineer AssociateCertified Information Systems Security Professional (CISSP)“Visa sponsorship/support...Full timeWork experience placementWork at officeLocal areaRemote work1 day per week
- ...stewardship models aligned with HIPAA, CLIA, CAP, FDA, GxP, and GDPR.Provides strategic oversight to ensure compliance with privacy, information security, and consent management requirements for genetic and clinical data.Oversee protection and access controls for PHI and...Full timeTemporary workCasual workInternshipWork at officeMonday to FridayFlexible hoursDay shift3 days per week
$150k - $210k
...manage technology risk through modern, cloud-aligned and AI-informed security practices. CDRR executes first line of defence technology risk... ...information, please visit: .Employment Type:Full timeJob Level:Vice PresidentPosted Date:Apr 21, 2026ATS Job Description Test:...Temporary work- ...mass communications, critical event management, crisis-security consulting, personal protection solutions and global... ...organizations and individuals against risk. More information is available at Vice President, Finance - Private Strategic Group About Crisis2...Contract workWork at officeWorldwide3 days per week
- ...TN, E-3, etc.). Applicants requiring visa sponsorship to start employment with Eversource will not be considered.Vice President, Chief Information Security OfficerJob DescriptionThe Vice President, Chief Information Security Officer (CISO) is the enterprise executive accountable...Full timeH1b
$200k - $250k
...simplifying interactions with residents, while disseminating critical information, Granicus brings governments closer to the people they serve—... ...be able to find another role that could be a perfect fit! Security and Privacy Requirements Responsible for Granicus...Local areaRemote workHome office- WHO WE ARELed by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure...
$260.5k - $325.6k
...constellation delivers an unprecedented dataset of empirical information via a revolutionary cloud-based platform to... ...Slovenia, and The Netherlands.About the Role: As the Vice President and Chief Information Security Officer (CISO), you will serve as a key executive and...Full timeContract workTemporary workWork experience placementWork at officeLocal areaRemote workHome officeShift work3 days per week- ...Vice President, Information Security About the Company Emerging environmental consulting firm Industry Management Consulting Type Privately Held Founded 1981 Employees 1001-5000 Categories Environment Consulting Health & Wellness...
- ...Vice President of Sales About the Company Rapid-growing provider of case management software... ...$200+ million Categories Information Technology & Services Technology... ...law firms analytics information security personal injury mass torts immigration...Contract work
- ...Vice President of Information Technology About the Company Innovative provider of cloud-based HCM solutions for business management Industry... ...a senior leadership role with a focus on the strategy, security, and execution of global corporate IT and information...Work at office
- ...Vice President, Information Security, Manufacturing Plant Security, Product Security & Application Security About the Company Dynamic manufacturer & marketer of medical devices Industry Medical Devices Type Public Company Founded 1969 Employees...
- ...Vice President of GTM Operations About the Company Top provider of an enterprise process... ...Software SaaS Software Information Technology & Services Technology... ...third party risk management information security risk policy and procedure management...
- ...Vice President of Information Technology The Vice President of Information Technology serves as First State Bank and Trust's internal owner... ...and to carry personal accountability for the reliability, security, and performance of the Bank's technology, including work...Bank staffRelocation
- ...Vice President, Information Security Audit Risk Assessments & Governance About the Company A global financial-services organization. Industry Financial Services Type Privately Held About the Role The Company is in search of an ISO Vice President...
- ...Vice President, IT Risk Governance About the Company A leading banking institution strengthening its technology risk governance... ...in IT risk management, technology risk, IT audit, information security governance, or a related discipline, with a preference for...
- ...Vice President, Information Security & Risk About the Company Impact-led organization providing mental health & substance use recovery services Industry Pharmaceuticals Type Non Profit Founded 1959 Employees 1001-5000 Categories Medicine...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vice President, Information Security. Be the first to apply!
Related searches
- vice president program management United States
- senior vice president human resources United States
- vice president sales United States
- vice president innovation United States
- vice president logistics United States
- vp product management United States
- vice president global communications United States
- vice president strategic initiatives United States
- vice president information technology United States
- vice president of revenue cycle United States

