Vice President, Chief Information Security Officer (CISO)
$199.2k - $355.8kDriven Brands Inc.
Driven Brands is North America's largest automotive services company with a portfolio of iconic brands including Take 5 Oil Change®, Meineke Car Care Centers®, Maaco®, 1-800-Radiator & A/C®, Auto Glass Now®, and CARSTAR®. Our vision is to fuel the pursuit with the simplest, most convenient, and most reliable car care experience.
Headquartered in Charlotte, NC, Driven Brands is more than a workplace. We're a launchpad — for careers, for dreams, and for people driven to do great things.
Every day, we fuel the pursuit — for our customers chasing life's moments, for our franchisees building lasting legacies, and for each other as we grow, lead, and succeed together.
Performance matters. We take pride in it. We own it. We show up for one another and for our communities.
Because at Driven Brands, we're not just fixing cars. We're building futures, unlocking potential, and fueling what's possible — together.
JOB DESCRIPTION:
The Vice President, Chief Information Security Officer is responsible for leading the company’s enterprise cybersecurity strategy, governance, risk management, and security operations program.
The CISO serves as the senior cybersecurity advisor to executive leadership, the Board of Directors, and the Audit Committee. This role translates cybersecurity risks into clear business, financial, regulatory, and operational terms and recommends appropriate investments, remediation priorities, and risk-treatment decisions.
The CISO partners with Information Technology, Internal Audit, Legal, Privacy, Finance, Human Resources, Enterprise Risk Management, and business leadership to protect the company’s information assets, customers, employees, franchisees, and brand.
How you will Own It:
Cybersecurity Strategy and Governance
- Develop and execute a multi-year enterprise cybersecurity strategy aligned with business objectives, regulatory requirements, and risk appetite.
- Establish cybersecurity policies, standards, controls, and governance based on recognized frameworks such as NIST, CIS Controls, and ISO 27001.
- Define accountability for cybersecurity across corporate functions, brands, technology teams, franchise environments, and third-party providers.
- Evaluate emerging threats, technologies, regulations, and business risks.
Executive and Board Reporting
- Serve as the principal cybersecurity advisor to executive leadership, the Board, and the Audit Committee.
- Establish and maintain a standardized cybersecurity scorecard that tracks progress against defined goals, key risk indicators, control maturity, strategic initiatives, and remediation commitments quarter over quarter.
- Present scorecard results to executive leadership and the Board, highlighting progress, emerging risks, performance gaps, overdue actions, and matters requiring executive or Board attention.
- Report on cybersecurity posture, material risks, incidents, control maturity, strategic initiatives, and remediation progress.
- Advise leadership regarding cybersecurity investments, risk acceptance, and significant control exceptions.
Cyber Risk and Compliance
- Lead the identification, assessment, prioritization, treatment, and monitoring of enterprise cybersecurity risks.
- Maintain the cybersecurity risk register and integrate material cyber risks into the enterprise risk management process.
- Oversee security-related compliance obligations, including SOX, PCI DSS, privacy requirements, and contractual commitments.
- Partner with Internal Audit, external auditors, Finance, and Legal to support audit readiness and timely remediation of findings.
- Provide independent challenge regarding control deficiencies, exceptions, compensating controls, and accepted risks.
Security Operations and Incident Response
- Provide executive oversight of security monitoring, detection, threat intelligence, investigation, containment, and response.
- Oversee security technologies and services, including SIEM, SOAR, EDR/XDR, email security, cloud security, data protection, and managed security providers.
- Lead the response to significant cybersecurity incidents and coordinate with Technology, Legal, Privacy, Communications, Finance, Human Resources, insurers, forensic firms, and law enforcement.
- Maintain and test cybersecurity incident-response plans, escalation procedures, executive communications, and crisis-management processes.
- Drive corrective actions through post-incident reviews and root-cause analysis.
Identity, Vulnerability and Data Protection
- Establish security governance for identity lifecycle management, multifactor authentication, privileged access, access reviews, segregation of duties, and non-human identities.
- Oversee the enterprise vulnerability and exposure management program.
- Define risk-based remediation, exception, escalation, and reporting requirements.
- Establish security controls for confidential, personal, financial, employee, customer, and franchisee information.
- Partner with Legal and Privacy leaders on data-protection and privacy obligations.
Security Architecture, AI Governance and Business Enablement
- Establish enterprise security architecture principles and secure-design standards.
- Provide cybersecurity oversight for cloud adoption, applications, digital products, major technology changes, artificial intelligence, and emerging technologies.
- Partner with Technology, Legal, Privacy, Risk, and business leadership to establish governance for the secure and responsible use of artificial intelligence.
- Define cybersecurity and data-protection requirements for the evaluation, acquisition, development, deployment, and use of artificial intelligence technologies.
- Assess and monitor AI-related risks, including sensitive-data exposure, unauthorized use, third-party model risk, access control, regulatory compliance, and model manipulation.
- Ensure AI initiatives are subject to appropriate security assessment, approval, monitoring, and periodic review.
- Ensure security requirements are incorporated into architecture, procurement, development, implementation, and change processes.
- Partner with infrastructure, application, cloud, data, and architecture teams without assuming responsibility for their day-to-day operations.
Third-Party Risk and Transactions
- Lead the third-party cybersecurity risk management program, including due diligence, assessments, contracting requirements, monitoring, and reassessment.
- Evaluate risks associated with critical vendors, cloud providers, payment environments, franchise platforms, and outsourced services.
- Lead cybersecurity due diligence and risk planning for mergers, acquisitions, integrations, divestitures, and transition-service arrangements.
- Ensure material third-party and transaction-related risks are communicated to executive leadership.
Resilience, Awareness and Leadership
- Establish cyber-resilience requirements and ensure cyberattack scenarios are included in business continuity and disaster-recovery planning.
- Maintain oversight of ransomware readiness, backup protection, recovery access, and cyber-recovery testing without owning infrastructure recovery operations.
- Lead enterprise cybersecurity awareness, phishing simulation, and role-based training programs.
- Build and develop a high-performing cybersecurity organization.
- Manage the cybersecurity budget, vendors, managed security providers, and strategic partners.
What you’ll Bring:
- Bachelor’s degree in cybersecurity, information systems, computer science, engineering, business, risk management, or a related field; advanced degree preferred.
- Fifteen or more years of progressive cybersecurity, technology-risk, or related experience.
- Significant experience leading an enterprise cybersecurity program in a complex, distributed, regulated, or publicly traded organization.
- Demonstrated experience advising executive leadership, Boards, and Audit Committees.
- Strong knowledge of cybersecurity frameworks, security operations, incident response, identity and access management, vulnerability management, cloud security, data protection, third-party risk, AI security governance , and regulatory compliance.
- Experience supporting SOX IT general controls, audits, remediation programs, and business transactions.
- Experience managing cybersecurity teams, budgets, vendors, and managed security providers.
- Experience in retail, automotive services, franchise, hospitality, restaurant, or other multi-location consumer-facing industries preferred.
- Experience supporting organizations with multiple brands, decentralized operations, and complex third-party partner ecosystems preferred.
- CISSP or CISM certification required or strongly preferred. CRISC, CISA, CCSP, GIAC, or equivalent credentials are beneficial.
Measures of Success
- Measurable reduction in material cybersecurity risk.
- Consistent quarter-over-quarter reporting demonstrating progress against defined cybersecurity goals, risk-reduction priorities, control improvements, and remediation commitments.
- Improved cybersecurity-program maturity and control effectiveness.
- Timely remediation of vulnerabilities, audit findings, and security deficiencies.
- Effective detection, containment, communication, and recovery during cybersecurity incidents.
- Clear and actionable cybersecurity reporting to executive leadership and the Board.
- Effective governance and security controls for enterprise artificial intelligence adoption.
- Effective oversight of identity, third-party, data-protection, and regulatory risks.
- Cybersecurity investments aligned with business priorities and risk reduction.
Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.
#LI-DM1
#LI-Remote
#DBCORP
Position Location:
North CarolinaCompensation Range:
$199,200.00 - $355,800.00Compensation Frequency:
AnnualBase pay offered may vary depending on actual location, job-related knowledge, skills, and experience. Supplemental pay types may include commissions or bonus incentives, depending on the role. Driven Brands offers a variety of health and wellness benefits including paid time off and holiday pay. Details regarding our benefits can be found here:
Get early access to 50% of your earned wages at any time through our myFlexPay program.
- We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting our intellectual property...SuggestedFull timeContract work
- ...WHAT YOU WILL DO: Reporting to the SVP & Chief Information Officer, James Olender, the CISO must be able to: Mitigate Third-Party & Supply Chain... ...Board and the Audit and Compliance Committee, ensuring security investments are aligned with ADI's Long Term revenue...Suggested
- ...Chief Information Security Officer (CISO) About the Company Accomplished provider of cloud-based apps & services Industry Wholesale Type Privately Held Founded 2009 Employees 1001-5000 Categories Distribution and Wholesalers Wholesale...SuggestedFor contractors
- ...Chief Information Security Officer (CISO), Information Security & Compliance About the Company Innovative artificial intelligence (AI) & marketing analytics platform Industry Information Technology and Services Type Public Company Founded 2014...Suggested
- ...Vice President, Executive Search & Business Development About the Company Nationally recognized executive search firm Industry Staffing and Recruiting Type Privately Held Founded 1979 Employees 1-10 Categories Consulting & Professional...Suggested
- ...a major airport, and will report directly to the Executive Vice President, Head of North America. Main Accountabilities:· Leadership &... ...general inquiry form on our website. Please include your contact information and specific details about your required accommodation to...Remote work
- ...content creators, this role will be responsible for sourcing their own new businessCollaborate with the Data and Analytics team to inform new capabilities needed based on market feedback as well as to roll-out new features as they become available.Report on revenue trends...Full timeLocal areaFlexible hours
- Overview Champion Windows - Vice President of SalesLocation: Location: Cincinnati, OH; Atlanta, GA; or Charlotte, NC - Hybrid / Field-Based. This position must be based in one of these three markets and requires frequent travel across Champion’s national footprint.The...Immediate start
$192k - $288k
...significant impact on the organization (empower/accountability) inclusive of C level leadership.Effectively utilizes key industry information and market knowledge both internal and external to gain competitive advantage in their local markets and make good business...Local areaVisa sponsorshipWork visaRelocation package$200k
...performance, pipeline quality, and execution against strategic prioritiesIdentify regional market trends and competitive dynamics to inform sales strategy and positioningAllocate resources effectively across territories to maximize pipeline generation and revenue...Remote work$96k - $181k
...Cleveland OhioJob SummaryThe Senior Vice President, Portfolio Management is an... ...agreements, guarantees, security pledges, and collateral... ...capability and other essential information to secure the bank's... ...required).Competent with Microsoft Office and the ability to learn and...Full timeWork experience placementBank staffWork at officeImmediate startFlexible hoursNight shift3 days per week$250k
...person to achieve personal success and add value to our teams and communities.We are currently looking for an Investment Banking Vice President on our Healthcare Services and HCIT team in New York, NY, San Francisco, CA, Chicago, IL, Charlotte, NC or Boston, MA. Learn...Full time- ...is seeking a dynamic and results-driven Vice President of Sales & New Business to spearhead... ...will focus on identifying, pursuing, and securing new business opportunities while managing... ...trends and competitive landscape to inform pricing strategies and business development...Permanent employmentFull timeContract work
- ...RegularLanguage Fluency: English (Required)Work Shift:1st shift (United States of America)Please review the following job description:Vice President to help originate asset-based transactions. Will partner with Senior Originators, Underwriting and Portfolio Management across...Full timePart timeShift workDay shift
- ...services in more than 110 countries and regions.Summary: The Vice President of Quality manages all quality assurance, quality control,... ...method validations and QC execution to assure that appropriate information is collected, specifications developed, and methods...Contract work
- A growing, family-owned mechanical construction company with operations across the Southeastern U.S. is seeking a Vice President of Operations to join its leadership team. This is a strategic, high-impact role reporting directly to the Executive Vice President, with a...
$200k
...Los Angeles, with additional offices in San Francisco, New York,... ...a talented and experienced Vice President for our Business & Financial... ...Preparing comprehensive pitchbooks, information memoranda, management... ...to Section 3(a)(39) of the Securities and Exchange Act of 1934 or...Full timeWork at officeLocal areaRemote work$189.6k - $338k
...CRAFTSMAN, BLACK+DECKER, and other strong brands.The RoleThe Vice President, Indirect Procurement is responsible for effective and... ...of Stanley Black & Decker.Reporting to the Chief Procurement Officer, this position will be based in Charlotte, North Carolina...Full timeContract workLocal area$176.75k - $282k
...businesses, functions and executive officers. The AENB COO Office also... ...Governance functions.The Vice President, Enterprise Affiliate... ...complex technical and regulatory information into clear, actionable insights... ...our brand promise of trust, security, and service.As part of Team...Work at office$80k - $140k
...offers exciting career opportunities for individuals who want to join the worldwide leader in cloud banking.As nCino's Regional Vice President (RVP) focused on Community and Regional financial institutions, you will be responsible for net-new sales and for driving...Full timeLocal areaRemote workWorldwide$275k
...Fargo is seeking an Investment Banking Vice President within our Mergers & Acquisitions... ...talentJob Expectations:Registration for Securities Industry Essentials (SIE) exam must be... ...employees will be expected to provide information to the Wells Fargo Personal Account Dealing...Full timeWork experience placement- ...are seeking land acquisitions professionals who are self-motivated and eager to dive in to the LGI Homes system and culture.The Vice President of Land Acquisitions is responsible for the acquisition of residential lots and land in our Raleigh and Wilmington markets....Full time
- ...are the pillars of our continued success. Overview The Vice President of IS Delivery Supply Chain serves as the executive architect... ...Executive-level negotiation skills with demonstrated success securing favorable commercial terms, resolving supplier disputes, and...Contract workFor contractorsFor subcontractorLocal area
- Newport, an Ascensus company, helps employers offer their associates a more secure financial future through retirement plans, insurance and consulting services. Newport offers comprehensive plan solutions and consulting expertise to plan sponsors and the advisors who serve...Full timeRemote work
- What You’ll Do:The Vice President of Sales collaborates closely with the Division President, Director of Marketing, Vice President of Operations, and other senior management to drive revenue in the Charlotte division. This position requires a competitive and ambitious...Local areaRemote work
- ...Solutions /Full Time /RemoteAs the Vice President of Commercial Strategies and Initiatives... ...Services. Reporting directly to the Chief Commercial Officer, you will serve as a key architect... ..., legally protected genetic information, marital status, veteran status, or...Full timeWork at officeRemote workWork from homeFlexible hoursShift work
- ...Capital Markets & Advisory (“CCMA”) is currently seeking a Vice President, Corporate Finance candidate focused on the Industrials verticals... ..., ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status,...Local area
- ...Overview This position works under minimal supervision to secure new brokerage assignments and generate new revenue channels. This... ...real estate transaction Manage a portfolio of rental properties Office and administrative work as needed Qualifications Active...Full timeTemporary workWork at officeImmediate start
- ...provide immigration sponsorship for this position.The RoleThe Vice President of Strategic Sourcing is responsible for setting and driving... ...that Fidelity’s business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940,...Full timeContract work
- DescriptionPosition Overview: The Vice President, Strategic Finance, Planning & Analytics... ...the Company. Reporting directly to the Chief Financial Officer, this role is responsible for leading... ...decision-support models that support informed decision-making.Drive the...Temporary workWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vice President, Chief Information Security Officer (CISO). Be the first to apply!
- vice president of recruiting North Carolina
- vice president business development North Carolina
- vp talent acquisition North Carolina
- vice president product development North Carolina
- vice-president human resources North Carolina
- vice president of ecommerce North Carolina
- vice president information technology North Carolina
- investment banking vice president North Carolina
- vice president event North Carolina
- senior vice president of operations North Carolina

