WME Group Logo

WME Group

Director of Cybersecurity

Posted 6 Days Ago
Be an Early Applicant
In-Office
Beverly Hills, CA
184K-245K Annually
Expert/Leader
In-Office
Beverly Hills, CA
184K-245K Annually
Expert/Leader
Leads the global cybersecurity program, strategy, risk posture, governance, and executive reporting. Builds and manages the internal security team, oversees vendors and SLAs, directs incident response and cyber resilience, and owns security budgets and headcount planning. The role requires enterprise risk management, regulatory knowledge, board-level communication, security architecture fluency, and experience implementing NIST CSF or ISO 27001 programs.
The summary above was generated by AI

POSITION SUMMARY

The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.

KEY RESPONSIBILITIES

  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
  • Deliver executive- and board-level cyber-risk reporting.
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
  • Build and lead the internal security team and bring core security functions in-house from managed providers.
  • Direct incident response and cyber resilience, including business continuity and disaster recovery.
  • Establish cybersecurity governance, policy, and security-awareness programs.
  • Own the cybersecurity budget and headcount plan.

FUNCTIONS OWNED

Security Leadership & Strategy · Governance, Policy & Awareness · Incident Response & Cyber Resilience  (supports GRC, Risk & Compliance and AI Governance & Emerging Tech)

REQUIRED QUALIFICATIONS

  • 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
  • Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) — governance, policy, control framework, and a multi-year maturity roadmap.
  • Track record building and leading an internal security function — hiring, developing, and retaining architects, engineers, and analysts — including insourcing functions from a managed provider (MSSP).
  • Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
  • Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint — SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
  • Proven vendor and contract management — negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
  • Incident-response leadership — has directed the organization’s response to a material security incident and owns cyber-resilience / BCP-DR direction.
  • Security-budget ownership — has built and defended a security operating budget and headcount business case.
  • Working architecture fluency across identity, cloud (Azure), data protection, and SASE — enough to direct architects and challenge technical designs.
  • Bachelor’s degree in a relevant field or equivalent experience; CISSP and/or CISM required.

PREFERRED QUALIFICATIONS

  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
  • Media, entertainment, talent-representation, or high-net-worth-individual environment — elevated BEC/impersonation and privacy exposure.
  • Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
  • Experience insourcing security functions from a managed provider on a phased plan.
  • Advanced credentials — CRISC, CCISO, or an MBA / MS in cybersecurity.

Per local requirements and in the interest of transparency, the rate shown below reflects the prevalent current hiring range for this position. Hiring pay rates are based on a number of factors, including location and may vary depending on job-related qualifications, knowledge, skills and experience. The company strives to provide locally competitive rewards packages, which include base rate along with, as applicable, short- and long-term incentives, growth and developmental opportunities, and robust benefits, such as health care, retirement, vacation and other paid time off, and additional offerings.

Hiring Rate Minimum:

$183,750 annually (minimum will not fall below the applicable state/local minimum salary thresholds)

Hiring Rate Maximum:

$245,000 annually

Similar Jobs

6 Days Ago
In-Office
184K-245K Annually
Expert/Leader
184K-245K Annually
Expert/Leader
Agency • Digital Media • News + Entertainment • Sports
Leads the global cybersecurity program, setting strategy, managing enterprise risk, and reporting cyber risk to executives and the board. Builds and leads the internal security team, manages vendors and SLAs, oversees incident response and cyber resilience, and establishes governance, policies, and awareness programs. Owns cybersecurity budgets and headcount planning while directing compliance, regulatory, architecture, and security maturity initiatives.
Top Skills: AzureSase
13 Days Ago
Hybrid
San Francisco, CA, USA
230K-245K Annually
Expert/Leader
230K-245K Annually
Expert/Leader
Other
Provides strategic leadership for the cybersecurity function, including security architecture, cloud and application security, identity management, Zero Trust, vulnerability management, incident response, privacy, and data protection. Leads the GRC program, risk assessments, audits, penetration testing, and compliance with PCI DSS, SOC 2, and ISO 27001. Oversees external cyber defense partners, advises executives, develops security strategy and policies, manages communications, and mentors cybersecurity and GRC teams.
Top Skills: Application SecurityAWSAzureData EncryptionGovernance Risk And Compliance (Grc)Identity And Access ManagementIso 27001Pci DssPenetration TestingSoc 2Vulnerability ManagementZero Trust
15 Days Ago
In-Office or Remote
United States
159K-230K Annually
Expert/Leader
159K-230K Annually
Expert/Leader
Cloud • Information Technology • Security • Software
Directs global cybersecurity go-to-market strategy for Threat Defense, Axur, and Kentik. Builds playbooks, dashboards, enablement programs, competitive strategies, and operating cadences across worldwide sales teams without direct authority. Partners with Product, Marketing, Sales Enablement, regional leaders, and channel alliances to improve pipeline, win rates, adoption, and executive engagement. Uses AI-enabled tools and field analytics to scale repeatable execution and represents the company with CISOs and security leaders.
Top Skills: Ai Mcp IntegrationsCisco UmbrellaCopilotDns Detection & ResponseDns SecurityGleanInfoblox IqPalo Alto NetworksProtective DnsSalesforceZscaler

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account