Executive Director, Info Security
Disney
Executive Director, InfoSec Governance, Risk, and Compliance At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world‑class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences. The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross‑company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence. Team Description: The Global Information Security (GIS) group provides services to protect the value and use of Disney’s information through collaboration, standardization, enforcement, and education across The Walt Disney Company. The main focus areas of this group are: reduce the risk of both accidental and malicious data disclosure; identify, monitor, and engage with a complete inventory of information; establish appropriate policies and procedures to be followed; and educate the user community to minimize risk. Disney’s InfoSec GRC team is seeking a transformational leader to drive the next evolution of Governance, Risk, and Compliance across the enterprise. Reporting to the VP of Information Security, this role will lead the shift from a traditional compliance‑driven approach to a modern, risk‑intelligence‑led model that enables better business decisions, strengthens security posture, and scales with Disney’s global technology and content ecosystem. This leader will partner closely with GIS and business leadership to embed risk awareness into daily operations, ensuring GRC is a strategic enabler of innovation—not a barrier. What You'll Do Drive the evolution of Disney’s InfoSec GRC program from a compliance‑centric model to a dynamic, risk‑intelligence‑led capability that informs enterprise investment and prioritization decisions. Define and elevate GRC standards by introducing innovative approaches to risk quantification, compliance automation, and integrated governance. Partner with GIS and segment technology leadership to position GRC as a strategic business enabler, translating complex risks into actionable, executive‑ready insights. Champion a culture where risk awareness is embedded into daily decision‑making, enabling intuitive and scalable risk‑informed behaviors across the enterprise. Risk Management Leadership Lead the design, implementation, and continuous improvement of Disney’s enterprise InfoSec Risk Management Framework. Establish and operationalize risk tolerance models, translating business objectives into clear prioritization, investment, and remediation decisions. Build and mature a centralized cybersecurity risk register integrating threat intelligence, vulnerabilities, and third‑party risk data. Drive risk‑based prioritization across InfoSec functions to ensure measurable risk reduction and alignment to enterprise objectives. Deliver clear, credible, and decision‑ready risk reporting to executive leadership and the Board, including financial risk quantification (e.g., FAIR). Governance Program Leadership Oversee the full lifecycle of InfoSec policies, standards, and guidelines, ensuring they are risk‑based, actionable, and aligned with business needs. Embed governance controls into the technology lifecycle (e.g., DevSecOps, cloud, infrastructure‑as‑code), reducing reliance on manual processes through automation. Establish a policy effectiveness framework focused on behavioral change and measurable risk reduction. Define and advance governance strategies for emerging technologies, including AI/ML, quantum security, and autonomous systems. Lead enterprise maturity assessments (e.g., NIST CSF) to identify gaps and inform strategic investment decisions. Compliance Program Leadership Provide oversight of global regulatory and contractual compliance programs (e.g., SOX, PCI, GDPR, ISO), ensuring consistency and scalability. Build and operationalize a “compliance‑as‑a‑service” model that enables self‑service, automates evidence collection, and minimizes burden on engineering teams. Monitor and anticipate changes in the regulatory landscape, proactively positioning Disney to meet evolving requirements. Organizational Leadership Lead, develop, and scale a high‑performing global GRC organization, fostering a culture of accountability, innovation, and continuous improvement. Drive organizational excellence through strong leadership, talent development, and a focus on delivering scalable, forward‑looking solutions. What You’ll Bring Must‑Have Qualifications 12+ years of progressive experience in cybersecurity, technology risk, or compliance, including 3+ years leading enterprise‑scale GRC functions. Structured problem‑solving, audit rigor, and enterprise advisory experience. Industry experience within large, complex organizations, with the ability to operate effectively in highly matrixed environments. A proven track record of transforming GRC programs into risk‑driven operating models that influence enterprise decision‑making. Deep expertise across risk management, governance, and compliance, including frameworks, policy lifecycle, automation, audit, and controls assurance. Strong working knowledge of industry frameworks and regulations, including NIST CSF, NIST 800‑53, ISO 27001, PCI DSS 4.0, SOX ITGC, and GDPR. Demonstrated executive presence and exceptional influence skills, with the ability to operate as a trusted advisor to senior leadership and translate complex technical risk into clear business insights. Experience applying financial risk quantification methodologies (e.g., FAIR) to support investment and prioritization decisions. A strong customer‑focused mindset, ensuring GRC solutions enable the business and enhance—not hinder—user and product experiences. Experience leading in highly matrixed, global environments, driving alignment across engineering, security, and business stakeholders. Leadership & Transformation Profile (Critical for Success) A mindset of a thought partner—not just an operator—bringing a strategic, forward‑looking perspective to GRC. A track record of asking hard questions, challenging legacy ways of working, and driving meaningful change across organizations. The ability to connect cost, customer experience, and operational efficiency into a cohesive, risk‑informed strategy. Demonstrated success leading large‑scale transformation initiatives, influencing without authority, and driving adoption across complex organizations. Technical Expertise Advanced expertise in audit methodologies, controls testing, and assurance processes, including ITGCs and automated control environments. Hands‑on experience with leading GRC platforms (e.g., Archer, ServiceNow GRC, SailPoint). A strong understanding of cloud security and compliance across AWS, Azure, and GCP environments. Familiarity with DevSecOps practices and integrating security and governance into software development and infrastructure pipelines. Nice‑to‑Have Qualifications Experience within media, entertainment, or similarly complex, consumer‑facing industries. Experience from a Big 4 consulting firm. Experience advancing emerging risk domains such as AI/ML governance, third‑party risk, or next‑generation compliance capabilities. Education A bachelor’s degree in computer science, information security, or a related field—or equivalent practical experience. Advanced degrees or relevant certifications (e.g., CISSP, CISM, CRISC). The Walt Disney Company and its Affiliated Companies are Equal Employment Opportunity employers and welcome all job seekers including individuals with disabilities and veterans with disabilities. If you have a disability and believe you need a reasonable accommodation in order to search for a job opening or apply for a position, visit the Disney candidate disability accommodations FAQs. We will only respond to those requests that are related to the accessibility of the online application system due to a disability. #J-18808-Ljbffr
$175k
...of physician-scientists and researchers. Albert Einstein College of Medicine seeks a strategic and forward-thinking Executive Director of Security to lead and modernize security operations for a premier private academic medical college dedicated to medical education...SuggestedContract workWork experience placement$350k - $400k
...outside of a company office. The Managing Director of Capital Markets collaborates with... ...the enterprise to identify and convert securities opportunities. Activities include... ...clients to include FCCS in their securities executions, and providing market commentary via...SuggestedWork at office- ...Harvard Protection Services in New York is seeking a Security Director to manage security and life safety services for clients. This role includes leading teams of security personnel, ensuring compliance with regulations, and overseeing security technology systems. The...Suggested
- ...Executive Director of Ultimate Rewards Operations & Enablement Working closely with teams across Consumer & Community Banking, we maintain... ..., partnering closely with Data & Analytics, Risk, Global Security, Product, and Servicing to detect abuse patterns, mitigate program...SuggestedWork visa
- ...Executive Director, Info Security At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world...SuggestedShift work
$250k
...seeking a highly motivated and experienced Technology Managing Director to lead our Securities Finance Technology division. This senior leadership role... ...Technology Leadership & Strategy: Define and execute a comprehensive technology roadmap for the Agency Lending...Full timeFlexible hours- ...seeking someone to join our team as a Institutional Securities Group Financial Crimes Advisory Program Execution Officer in Global Financial Crimes to be... ...regulatory and franchise risk. This is an Executive Director level position within the GFC Institutional Securities...Full timeTemporary work
$171.54k - $276.8k
...REF9485204) Investigate and understand customer business goals, architecture, scale, and service level objectives for Public Cloud security use cases, as well as identify the challenges that our Cloud NGFW must overcome to meet these goals. Telecommuting may be...Remote work$300k - $360k
...to buy now and pay later without any hidden fees or compounding interest. The Chief Information Security Officer (CISO) will serve as a key member of the Bank's Executive Management Team and will be responsible for establishing and leading Bank's information security...Work at officeRemote work$87.92k - $118.69k
...Position Summary The Director, Information Security, provides strategic, institutional leadership for National University's information security... ...and Third‐Party Risk Management. They partner closely with executive leadership, IT, academic leadership, legal, privacy, and...Local areaRemote work$140k - $160k
...implementation, and continuous monitoring of the information security program and technical compliance for all clinical and administrative... ...i.e., Entra, Intune, Workspace ONE, AWS). Advanced experience executing vendor risk assessments, managing incident response, and...Work experience placementRemote work$190.2k - $206.5k
...equity, affordability, and effectiveness. Job Summary As the Director of IT & Security, you are the primary architect of the company’s... ...and collaborative work environment. Oversee the planning, execution, and completion of projects and initiatives within the team...Remote work$155k - $195k
...Director, IT Security Posting Number 2026-15577 Location : Location US-NY-New York Hybrid Remote Work Classification Hybrid: 60% to 80% Onsite Department CIO Directs School/Division NYU IT (WS1170) Compensation Grade...Full timeWork experience placementWork at officeLocal areaRemote workFlexible hours- ...Executive Director, Partnership Commercialization for Global Merchant Services Merchant Services is the global payment processing business... ...annual transaction volume and provides payment, fraud and data security for companies of all sizes, handling more than 130...Worldwide
- ...Product Management Executive Director Build and manage product experiences that turn cardholders into loyal advocates. In Chase's CoBrand... ...Services is a leading provider of payment, fraud and data security for companies, capable of authorizing transactions across global...Temporary workWork visa
- The Walt Disney Company is seeking an Executive Director of Info Security, overseeing the InfoSec Governance, Risk & Compliance team. This role drives the evolution of security practices and policies, while ensuring compliance with various standards. Candidates should have...
$150k - $200k
...providing a wide range of investment banking, securities, investment management and wealth... ...directly with institutional investors as execution consultants , helping clients optimize... ...25,000-$300,000 per year for Executive Director . However, base pay if hired will be determined...Temporary workWorldwide$250k
...difference. If you are interested in exploring the possibilities We Want to Talk to You! The Difference You Make The Vice President/Executive Director in the Corporate Investment Bank (CIB) is responsible for control and execution of investor orders in LatAm and US Equity...Hourly payContract workLocal areaShift work- ...Merchant Services is a leading provider of payment, fraud, and data security for companies of all sizes and is engaging in a multi-year... ...Bank, J.P. Morgan Payments enables organizations of all sizes to execute transactions efficiently and securely, transforming the...
- ...Executive Director, Freedom & Slate Marketing Shape the future of the Freedom portfolio by leading transformative campaigns and partnerships... ...Services is a leading provider of payment, fraud and data security for companies, capable of authorizing transactions across...
- ...Executive Director of General Management for Alternative Lending Join Chase's Connected Commerce Lending Innovation team and shape the... ...Merchant Services is a leading provider of payment, fraud and data security for companies, capable of authorizing transactions across...Work visa
- ...Executive Director Of Agentic Ai Strategy We are seeking a dynamic and talented professional to join our Open Banking Strategic Business... ...committed to empowering customers to share their financial data securely, safely, and transparently within the Open Banking ecosystem...Work at officeWork visa
- ...Director, Security Engineering (Remote - US) We are looking for a Director, Security Engineering in the United States to lead and shape the security strategy for a large-scale, cloud-based platform serving hundreds of thousands of websites. You will manage a high-performing...Full timeRemote workFlexible hoursShift work
- ...Director, Infrastructure & Information Security About Core Education Core Education is a dynamic organization dedicated to transforming the business model... ...communication — comfortable authoring SOWs, technical designs, executive briefs, and post‐incident reviews, and presenting to...Contract workFor contractorsRemote work
$330k - $390k
...target drug discovery collaboration with Bausch + Lomb to develop innovative precision medicines for AMD. Role: Sr. Medical Director (or Executive Medical Director or VP of Clinical Development) Reports to: CMO Department: Clinical Team: Interventional Study Level: TBD...Full timeRemote work- ...Executive Director Of Identity Data Products Join us in shaping the future of identity data and security. Help us deliver seamless, trusted experiences for our customers and employees. Be part of a team driving innovation and growth at the heart of one of the world'...Local areaImmediate startRelocationWork visaRelocation package
$170k - $210k
...which makes everything possible.The Director, Enterprise Data Security, cybersecurity leadership role builds... ....Experience developing and executing departmental plans/priorities and allocating... ...out our benefits at Danaher Benefits Info ( .At Danaher, we believe in...Remote workWork from homeFlexible hoursNight shift- ...Executive Director Product Lead Are you passionate about building innovative platforms that transform customer experiences and drive business... ..., Operations, and Compliance teams to deliver high-quality, secure, and compliant features. Define and track key performance...Temporary workWork visa
- ...Director, Information Security Architect, New York, NY We have an opening for a Director, Information Security Architect, to join the organization... ...IT Recruiters, Austin TX IT Recruiters, Baltimore Executive Staffing, Boston IT Recruiters, Charlotte IT Recruiters,...Temporary workFlexible hours
$184k - $240k
...administration-related workflows in one scalable, secure platform. Together with our clients,... ...Summary: Reporting to the CISO, the Director of Cloud Security leads Judi Health's cloud security strategy and engineering execution across our AWS environment. This role is...Local areaRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Executive Director, Info Security. Be the first to apply!
- executive associate New York, NY
- chief communications officer New York, NY
- managing director sales New York, NY
- college president New York, NY
- chief intellectual property counsel New York, NY
- executive search consultant New York, NY
- credit union executive New York, NY
- chief dental officer New York, NY
- executive program manager New York, NY
- chief growth officer New York, NY

