Chief Information Security Officer -HYBRID
📋 Role Overview & Responsibilities
Who We AreOncourse Home Solutions (OHS) is a people-centric organization that is owned by private equity firm, Apax Partners operating under the brands American Water Resources, Pivotal Home Solutions and American Home Solutions. We do what is right for our people so they can do their best when serving our 1.4+ million customers across the U.S. Our mission is to help homeowners navigate the unexpected, reduce costs, and make homeownership enjoyable for all. Our vision is to make our products and services accessible to all by becoming the most forward-thinking and community-driven home solutions organization of the 21st century. We are committed to fostering an environment that embraces diversity in all forms, where our employees, customers and partners feel valued, respected, and supported.We partner with cities, utilities, insurance providers, retailers, financial service companies and member associations to help them maintain and protect their customers’ most important asset—their home. Our passion for empowering customers to confidently run their households is what drives us. When our customers need help with home maintenance, repair, or coverage, OHS is there. This is what it means to be an ‘Oncourse Super’—Successful, United, Progressive, Empathetic, Reliable. Supers get it done. We sweat homeownership so our customers don’t have to. We view every day as an opportunity to step up, step out, and remind others that they’re in this together, to stay on course.We are proud equal opportunity employer, and our employment decisions are based on business needs, job requirements and individual qualifications without regard to race, color, religion, age, sex (including pregnancy), sexual orientation, gender identity, national origin, ancestry, marital status, parental status, mental or physical disability, military or veteran status, or any other basis protected by federal, state, or local law. OHS is committed to recruiting and retaining talented applicants and to providing all employees with a workplace free from discrimination and/or harassment.
Located at our office in Naperville, IL or Mt. Laurel, NJ, our office environment is a key driver of our company culture and employee experience. A regular in-office HYBRID model is required (generally in office Tues/Wed/Thurs. and remote M & F).
Position SummaryThis position as Chief Information Security Officer (CISO) plays a pivotal role in safeguarding the company's digital assets and information. The responsibilities include developing a comprehensive cybersecurity strategy aligned with business objectives, collaborating with various departments to integrate security practices, enforcing security policies, leading incident response efforts, ensuring regulatory compliance, managing security architecture, and overseeing third-party security vendors. The ideal candidate will need to be strategic, visionary, collaborative, and possess strong leadership skills in cybersecurity. Responsibilities• Strategic Leadership and Collaboration: Develop a comprehensive cybersecurity strategy aligned with business objectives and best practices.• Collaborate with various departments to integrate security practices into all aspects of business operations: Foster partnerships within and outside the organization to enhance our cybersecurity posture.• Conduct and oversee regular risk assessments, developing strategies to mitigate identified risks: Maintain a risk management framework for continuous monitoring and prioritization of risks.• Security Governance and Awareness: Define and enforce security policies and procedures.• Lead the development of security awareness and training programs, ensuring all employees are educated on the importance of cybersecurity.• Implement and manage robust 3rd party security assessments while meeting the data security needs from our partners.• Incident Response and Recovery: Direct the incident response team in effectively addressing and mitigating security breaches.• Ensure robust incident response and recovery plans are in place and regularly tested.• Regulatory Compliance:• Partner with Legal/Compliance team who is the owner of Data privacy and overall regulatory compliance.• Guarantee compliance with relevant cybersecurity regulations and standards for IT assets, including PCI and NIST certifications.• Keep abreast of regulatory changes to adapt strategies as needed.• Security Architecture and Collaboration: Work closely with the technology team to design and implement secure systems and networks. Direct responsibility for Data/Cloud/Application security across IT landscape. Regularly review security architecture to identify areas for improvement.• Vendor Management: Evaluate and oversee third-party security vendors and service providers. Ensure all external partners comply with the company’s security standards.Other Responsibilities: • Security Incident Reporting and Metrics: Outline expectations for tracking and reporting security incidents, as well as establishing metrics to measure the effectiveness of security measures and incident response activities.• Security Awareness and Training Program: Specify how the effectiveness of security awareness and training programs will be evaluated and improved over time to ensure they remain relevant and impactful.• Threat Intelligence and Vulnerability Management: Detail strategies for gathering and analyzing threat intelligence to proactively identify and mitigate potential security threats, as well as managing vulnerabilities across systems and networks.• CIO Reporting and ITLT Communication: Regularly communicate with IT leadership and providing regular updates to the CIO on cybersecurity risks, incidents, and overall security posture, including preparing and presenting relevant reports and updates. We're Excited if This is You Experience and Qualifications of the Role- Extensive cybersecurity experience with a focus on leadership and strategic planning.- Recognized industry certifications such as CISSP, CISM, CISA.- Profound knowledge of cybersecurity frameworks and regulations.- Proven track record in developing cybersecurity policies and procedures.- Exceptional communication skills, capable of conveying complex security issues to diverse audiences.- Minimum 15 years of progressive experience in Information Security or related field.- At least five years of experience leading security functions and/or programs for $500M+ revenue company- Minimum seven years of experience in modern technology environments, including Cloud technologies, Continuous Integration, Continuous Delivery, API-driven applications, and SaaS ecosystems.- Demonstrated success in building security functions from the ground up for Billion-dollar SaaS and/or technology-driven initiatives, at least twice.- Hands-on experience integrating Security reporting with Enterprise Risk Management (ERM).- Direct involvement in leading cyber crisis breach responses. Computer Skills Needed to Perform this Job Proficiency in Microsoft tools Certificates, Licenses, RegistrationsRecognized industry certifications such as CISSP, CISM, CISA Education Bachelor’s or Master’s degree in Cybersecurity, Information Technology, or related field required. CompetenciesAction Oriented - Enjoys working hard; is action oriented and full of energy for the things that he/she sees as challenging; not fearful of acting with a minimum of planning; seizes more opportunities than others.Dealing with Ambiguity - Can effectively cope with change; can shift gears comfortably; can decide and act without having the total picture; isn't upset when things are up in the air; doesn't have to finish things before moving on; can comfortably handle risk and uncertainty.Timely Decision Making - Makes decisions in a timely manner, sometimes with incomplete information and under tight deadlines and pressure; able to make a quick decision.Managing Through Systems- Can design practices, processes, and procedures which allow managing from a distance; is comfortable letting things manage themselves without intervening; can make things work through others without being there; can impact people and results remotely.Peer Relationships - Can quickly find common ground and solve problems for the good of all; can represent his/her own interests and yet be fair to other groups; can solve problems with peers with a minimum of noise; is seen as a team player and is cooperative; easily gains trust and support of peers; encourages collaboration; can be candid with peers.Building Effective Teams - Blends people into teams when needed; creates strong morale and spirit in his/her team; shares wins and successes; fosters open dialogue; lets people finish and be responsible for their work; defines success in terms of the whole team; creates a feeling of belonging in the team.Confronting Direct Reports - Deals with problem direct reports firmly and in a timely manner; doesn't allow problems to fester; regularly reviews performance and holds timely discussions; can make negative decisions when all other efforts fail; deals effectively with troublemakers.
Frequently Asked Questions
How do I apply for the Chief Information Security Officer -HYBRID position at Oncourse Home Solutions? ▼
Click the “Apply for this Position” button on this page to submit your application directly to Oncourse Home Solutions without recruitment intermediary fees.
Is this position eligible for remote work or visa sponsorship? ▼
This position is located in Naperville, IL with potential relocation and sponsorship assistance depending on candidate qualifications.
Are there any candidate fees on Hirely? ▼
No. Hirely is completely free for candidates. We never charge registration fees or placement fees.
Legitimate employers will never ask you to transfer funds, purchase equipment from unauthorized vendors, or pay application/visa fees. Hirely rigorously monitors listings, but always verify communication is from official corporate email domains.
Learn how to protect yourself against employment fraud →