Director of Cybersecurity
WME- Location
- CA-Beverly Hills - 9601 Wilshire
- Workplace
- —
- Employment
- —
- Salary
- USD 183,750–245,000/yr
Posted 8d ago
POSITION SUMMARY
The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.
KEY RESPONSIBILITIES
- Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
- Deliver executive- and board-level cyber-risk reporting.
- Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
- Build and lead the internal security team and bring core security functions in-house from managed providers.
- Direct incident response and cyber resilience, including business continuity and disaster recovery.
- Establish cybersecurity governance, policy, and security-awareness programs.
- Own the cybersecurity budget and headcount plan.
FUNCTIONS OWNED
Security Leadership & Strategy
- Governance, Policy & Awareness
- Incident Response & Cyber Resilience (supports GRC, Risk & Compliance and AI Governance & Emerging Tech)
REQUIRED QUALIFICATIONS
- 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
- Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) — governance, policy, control framework, and a multi-year maturity roadmap.
- Track record building and leading an internal security function — hiring, developing, and retaining architects, engineers, and analysts — including insourcing functions from a managed provider (MSSP).
- Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
- Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint — SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
- Proven vendor and contract management — negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
- Incident-response leadership — has directed the organization’s response to a material security incident and owns cyber-resilience / BCP-DR direction.
- Security-budget ownership — has built and defended a security operating budget and headcount business case.
- Working architecture fluency across identity, cloud (Azure), data protection, and SASE — enough to direct architects and challenge technical designs.
- Bachelor’s degree in a relevant field or equivalent experience; CISSP and/or CISM required.
PREFERRED QUALIFICATIONS
- Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
- Media, entertainment, talent-representation, or high-net-worth-individual environment — elevated BEC/impersonation and privacy exposure.
- Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
- Experience insourcing security functions from a managed provider on a phased plan.
- Advanced credentials — CRISC, CCISO, or an MBA / MS in cybersecurity.
Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.
Hiring Rate Minimum
$183,750 annually (minimum will not fall below the applicable state/local minimum salary thresholds)
Hiring Rate Maximum
$245,000 annually
Skills
- NIST
- ISO 27001
- GDPR
- Azure
- CISSP
More jobs at WME
All 11Technology Governance & AI Intake Lead
WME · CA-Beverly Hills - 9601 Wilshire · USD 142,500–190,000/yr · 8d ago
Information Manager
WME · CA-Beverly Hills - 9601 Wilshire · USD 131,250–175,000/yr · 8d ago
Staff Software Engineer
WME · CA · USD 176,250–235,000/yr · 16d ago
SAP Development Manager
WME · CA-Beverly Hills - 9601 Wilshire · TN-Nashville - 1201 Demonbreun · NY-New York - 11 Madison · USD 187,000–188,000/yr · 22d ago
Manager, Network Infrastructure
WME · CA-Beverly Hills - 9601 Wilshire · NY-New York - 11 Madison · USD 138,750–185,000/yr · 1mo ago
Similar roles
EE Integration and Cyber Security Engineer
Our · Beijing, Beijing, China · today
Product Security Engineer
LaunchDarkly · US West · USD 136,500–187,660/yr · today
Information Systems Security Manager, Space
Anduril Industries · Costa Mesa, California, United States · USD 146,000–194,000/yr · today
Senior Principal Cyber Information Systems Security Engineer
Saic · San Diego, CA, United States · Charleston, SC, United States · Norfolk, VA, United States · today
Senior Security Engineer, Detection & Response
Flexport · San Francisco, California, United States · USD 206,181–252,000/yr · today
Senior Security Engineer, Detection & Response
Flexport · United States · USD 206,181–252,000/yr · today