Deputy Chief Information Security Officer (Los Angeles)
The TCW Group
Position SummaryOverviewThe Deputy Chief Information Security Officer is the senior operational security leader within Engineering Solutions, reporting to the CISO, Head of Security Driven Infrastructure. The role is responsible for driving security strategy, frameworks, and tooling into sustained, repeatable BAU operations across cloud, on-premises, and hybrid environments. The Information Security Lead leads the security team, drives cross-functional execution, and serves as Incident Commander during security events. This is a hands-on leadership role requiring deep practitioner expertise, strong executive presence, and the ability to maintain a collaborative culture while driving accountability and follow-through.PurposeThe Deputy Chief Information Security Officer ensures TCW’s security program translates into measurable operational outcomes. This role is responsible for maturing security capabilities, improving process discipline, and driving strategic initiatives through strong execution, project and program management, documentation, automation, and meaningful metrics. The ideal candidate combines technical depth, leadership presence, and a collaborative, no-ego style with the discipline to drive ownership and follow-through.Essential DutiesSecurity Program Leadership & Operational ExecutionLead the information security team as a player-coach, maintaining a collaborative, high-accountability cultureDrive security strategies, frameworks, and tooling into repeatable BAU operations with clear ownership, metrics, and follow-throughLead cross-functional initiatives with engineering, infrastructure, legal, compliance, and business stakeholdersServe as Incident Commander during security events and lead escalations, post-incident review, and operational improvementDevelop and present KPIs, metrics, risk updates, and program status to leadershipCloud, Infrastructure & Identity SecurityLead and evolve TCW’s cloud and hybrid security architecture across Azure, identity platforms, and enterprise infrastructureOversee CSPM, CNAPP, hardening baselines, configuration security, and Infrastructure-as-Code security controlsDrive Zero Trust and identity security across human and non-human identities, including Conditional Access, federation, and least privilegeEnsure security controls evolve with cloud migration and broader infrastructure modernizationThreat Detection, Incident Response & Vulnerability ManagementLead threat detection, incident response, and threat operations, including hands-on investigation when neededOwn the vulnerability management lifecycle, including prioritization, remediation accountability, exceptions, and reportingBuild and mature playbooks, SOPs, automation, and continuous monitoring capabilitiesImprove analyst efficiency and response quality through automation, telemetry, and operational toolingApplication, Data & AI SecurityLead and mature application security, secure development, and software supply chain risk management practicesLead data protection, DLP, insider risk, and data governance controls in partnership with legal and complianceEstablish and enforce security governance for AI and Generative AI adoption across the firmGovern the secure use of AI-assisted development and productivity tools through practical controls and clear risk guidanceGovernance, Risk & PartnershipManage security risk and support compliance with regulatory expectations applicable to financial servicesPartner with cross-functional teams to assess risk, onboard solutions, and ensure security controls are in place before production deploymentMaintain strong relationships with vendors, industry peers, and the broader security communityDevelop documentation, standards, playbooks, and governance artifacts that support durability and institutional knowledgeRequired QualificationsCollaborative, no-ego leadership style with the ability to maintain culture while driving accountability and executionStrong executive presence and communication skills across technical, business, client, regulatory, and legal audiencesStrong cross-functional leadership and project/program management disciplineStrategic and data-driven problem-solving, with the ability to prioritize effectively in a fast-paced environmentOperational mindset with a bias toward execution, documentation, and measurable outcomesProfessional Skills QualificationsExperience in financial services or asset managementRelevant industry certifications such as CISSP, CCSP, CISM, AZ-500, or SC-200Familiarity with Infrastructure-as-Code and DevSecOps practicesExperience supporting enterprise cloud migration and secure adoption of AI-assisted toolsEstimated Compensation:Base Salary: For CA based position, the base salary range is $225k - $270k. This is an anticipated range only. Other Compensation: Eligible to be considered for an annual discretionary bonus Benefits: Eligible for TCW’s comprehensive benefits package. See more information here. This role requires candidates to work from a TCW office a minimum of four days a week. Flexibility for remote work is offered on one day, depending on business needs.#LI-TG1Job SummaryJob ID: 2026-2261Category: Information TechnologyDepartment: Engineering SolutionsType: Regular Full-Time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Deputy Chief Information Security Officer (Los Angeles). Be the first to apply!
- ciso Los Angeles, CA
- entry level information security analyst Los Angeles, CA
- sr information security engineer Los Angeles, CA
- information security analyst Los Angeles, CA
- senior information security analyst Los Angeles, CA
- information security lead Los Angeles, CA
- information technology security engineer Los Angeles, CA
- information security compliance analyst Los Angeles, CA
- data center security officer Los Angeles, CA
- director information security Los Angeles, CA
