Company
Cox Automotive - USAJob Family Group
Job Profile
Management Level
Flexible Work Option
Travel %
Work Shift
Compensation
Compensation includes a base salary of $192,800.00 - $321,400.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate’s knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.Job Description
The Senior Director of Security Compliance will develop and oversee the organization's global security compliance strategy, aligning compliance initiatives with business objectives and risk tolerance while ensuring adherence to international, regional, and industry-specific compliance frameworks (e.g., GDPR, ISO 27001, NIST, SOC 2, PCI DSS). This role involves developing, implementing, and managing compliance policies and procedures while fostering a culture of compliance across the organization. This leader will modernize and enhance our formal control framework and establish processes to recertify control ownership and operating effectiveness over time. The Senior Director will work closely with senior management throughout both the business and the product technology team as well as our many boundary partner teams including Legal, Internal Controls, Risk Management, and Internal Audit to minimize risk and enhance operational integrity. Oversee internal and external security audits, ensuring remediation plans for identified issues are executed effectively as well as monitor emerging regulations and compliance trends to maintain up-to-date practices. Act as the primary liaison with regulatory bodies, auditors, and other stakeholders on security risk-related matters. This role will additionally establish a culture of continuous improvement for security compliance practices, benchmark the organization’s compliance performance against industry peers, and foster innovation in security compliance to address emerging threats.
Key Responsibilities
- Engages with Cox business leaders to ensure understanding and support of security compliance strategy, priorities and initiatives
- Coordinates effective roadmap development and governance for global initiatives related to security awareness, policy development, client and vendor compliance and overall process improvement
- Establish, maintain and communicate CAI security policies. Partner with cross-divisional counter parts to ensure alignment, where appropriate, across all Cox divisions.
- Develop and implement a robust internal control framework aligned with industry best practices (e.g., COSO framework). Design control activities to address identified risks and ensure effective monitoring of key processes.
- Serve as the liaison with External Auditors, Internal Audit, on all significant Compliance issues involving supported function/business/product and oversee implementation of related remediation.
- Manage all contractual security requirements requested by external parties and ensure that compliance obligations are understood, and requirements are documented. Prepare and present compliance reports to the engineering leaders and executive team
- Provide oversight and guidance over the assessment of broad complex issues, structures potential solutions and drive effective resolution with other senior stakeholders.
- Advise the businesses on an ongoing basis on new function/business/product initiatives, new products, business acquisitions, and client-related matters with respect to applicability of policies, resolution of potential red flags or other client/transaction-related compliance escalations.
- Manage a variety of compliance requirements including external attestations, regulatory requirements, interacting with clients, legal, stakeholders, and outside counsel as appropriate.
- Lead security requirements in obtaining and maintaining breach insurance coordinating with a variety of internal teams as well as our insurance brokers both domestically and internationally.
Minimum Qualifications
- Bachelor’s degree in business, law, or a related field. At least 12 years of experience in compliance, risk management, or related areas, with a minimum of 7 years in a senior leadership role; The right candidate could also have a different combination such as a Master's degree in business, law or related field and 10 years of experience or a PhD and 7 years experience. Master’s degree preferred.
- Ensures that the team's purpose and importance are defined, clarified and understood. Guides the team in setting specific and measurable short- and long-term goals. Builds others' sense of task ownership and self-confidence by helping them generate ideas, make decisions, obtain resources, and overcome barriers.
- Proactively builds, nurtures and maintains business-focused, long-term working relationships with partners inside and outside of the organization. Demonstrates flexibility when forming and adjusting partnerships to achieve broader goals. Shows willingness to work across boundaries to achieve outcomes addressing business, customer and partner goals and expectations. Demonstrated strong executive presence and communication skills.
- Direct oversight of managing external attestations such as SOC1/SOC2 Reports, as well as managing compliance with GLBA, PCI DSS, GDPR
- Direct experience managing and redlining contractual security requirements and interacting with legal.
- Direct experience with managing international compliance requirements in Europe
- Effective negotiation skills, a proactive and 'no surprises' approach in communicating issues and strength in sustaining independent views. Strong presentation and relationship management skills are essential
- Articulate and effective communicator, both orally and in writing, with an energetic, charismatic and approachable style. Candidates must have effective persuasion skills, the ability to work effectively at the highest levels of the organization, and will display highly effective networking and influencing skills
Preferred Qualifications
- Ability to make strategic decisions, supervise complex programs, manage and educate highly skilled professionals, and influence other departments relating to security risk and control.
- Solid, pragmatic business acumen with a proven record of creatively solving problems and offering solutions.
- Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
- Ability to manage multiple complex projects while meeting all deadlines and manage leaders of teams to achieve optimal results.
- Develop strong and productive working environment with key stakeholders and collaborate closely with other Cox entities’ security teams to implement security best practices.
- Relevant industry certification: CISSP, CEH, OSCP, Azure, AWS, CISM, CISA, etc.
Drug Testing
Benefits
About Us
Other Jobs from Cox Automotive
Senior Enterprise Applications Engineer (DevOps)
Senior Solutions Architect (AI/ML) (RapidScale)
Senior Software Test Engineer - Workday HCM
Data Scientist-II
Senior Project / Program Manager (EPMO - Tools Experience and Enablement)
Similar Jobs
Cloud Solution Engineer 4
Software Developer 3
Software Developer 3
Software Developer 3
Software Developer 3
Software Developer 3
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say