About the role
Job Description:
Role purpose
The purpose of this role is to lead information security for the CxM Practice Area, building on dentsu’s enterprise security maturity journey and embedding security capability directly into the Practice Area’s product and service operations.
Key priorities include continuing to strengthen the security culture and capabilities within CxM; embedding security and risk considerations into relevant design and decision-making processes; and providing security assurance and validation for key applications and services.
This role is responsible for understanding, assessing, and managing information security risk across the Practice Area. The role reports to the SVP Security (Global Practices) and works closely with colleagues across Security Architecture, Security Engineering, DevOps, and Cyber Operations to help secure client products and solutions.
Responsibilities
Lead information security for client solutions and Practice Area technology, partnering with key stakeholders to deliver secure products and services to clients, including on‑premises and cloud infrastructure components.
Embed security controls, patterns, and tooling into product and solution teams across all stages of the secure development lifecycle (SDLC), with a strong focus on shift-left practices.
Oversee security assurance for products and solutions, evaluating the implementation and effectiveness of security controls.
Identify, assess, and manage security weaknesses, vulnerabilities, and risks from multiple sources (e.g. security testing, threat intelligence and audits), ensuring appropriate response and management of these issues (e.g. treatment plans, remediation actions, and risk acceptance where applicable).
Lead Practice Area delivery of relevant global security and transformation initiatives, ensuring successful execution and alignment with Practice Area priorities and client requirements.
Provide Practice Area incident support to Cyber Operations, acting as a security subject matter expert (SME) for the business division and supporting investigations.
Support client security requests, including (but not limited to) RFIs, audits and security questionnaires.
Candidate profile
Essential
Relevant security certifications or equivalent experience, e.g. CISSP, CISM (or similar).
Experience in product/application security, including common security issues e.g. OWASP top 10.
Experience across various security frameworks (e.g. ISO 27001, NIST CSF, SOC2).
Demonstrated expertise in security risk assessment for technical products and solutions, including the ability to support design, development, and implementation of appropriate security controls.
Good understanding of modern technologies, architectures, and engineering practices, including cloud-native patterns, APIs, CI/CD, and DevOps ways of working.
Broad knowledge across core security domains and principles, such as secure design.
Strong SDLC knowledge with practical experience embedding security early (“shift left”) through patterns, controls, tooling, and consultancy.
Excellent stakeholder management and interpersonal skills, able to influence and communicate effectively with both technical and non-technical audiences.
Excellent written and verbal communication skills, including producing clear security guidance, risk briefs, and assurance outcomes.
Experience operating in a matrixed organisation, aligning and delivering across multiple teams, priorities, and stakeholders.
Comfortable managing uncertainty, ambiguity, and change, making sound decisions and recommendations with incomplete information.
Desirable
PCI / PCI DSS experience (advantageous).
At dentsu, we believe great work happens when we’re connected. Our hybrid way of working combines remote flexibility with regular in-person collaboration to spark ideas and strengthen our teams. Many of our employees who live within commuting distance (90 minutes) from one of our Headquarter or Hub Offices (New York, Chicago, Detroit, Los Angeles) are required to work in the office 2-3 days per week including one Team Day. The minimum number of days may vary by office and role. Dentsu may designate other HQ or Hub offices at any time. Those who do not live near an office may be designated as a remote employee, depending on the role and business needs. Regardless of your work location, we expect you to be flexible to meet the needs of our Company and clients, which may include attendance in an office from time to time.
The annual salary range for this position is $113,000 - $182,562. Placement within the salary range is based on a variety of factors, including relevant experience, knowledge, skills, and other factors permitted by law.
Benefits available with this position include:
- Medical, vision, and dental insurance,
- Life insurance,
- Short-term and long-term disability insurance,
- 401k,
- Flexible paid time off,
- At least 15 paid holidays per year,
- Paid sick and safe leave, and
- Paid parental leave.
Dentsu also complies with applicable state and local laws regarding employee leave benefits, including, but not limited to providing time off pursuant to the Colorado Healthy Families and Workplaces Act, in accordance with its plans and policies. For further details regarding Dentsu benefits, please visit www.dentsubenefitsplus.com.
#LI-hybrid #LI-JH2
Location:
USA - Remote - MarylandBrand:
Global TechnologyTime Type:
Full timeContract Type:
PermanentDentsu is committed to providing equal employment opportunities to all applicants and employees. We do this without regard to race, color, national origin, sex , sexual orientation, gender identity, age, pregnancy, childbirth or related medical conditions, ancestry, physical or mental disability, marital status, political affiliation, religious practices and observances, citizenship status, genetic information, veteran status, or any other basis protected under applicable federal, state, or local law.
Dentsu is committed to providing reasonable accommodation to, among others, individuals with disabilities and disabled veterans. If you need an accommodation because of a disability to search and apply for a career opportunity with us, please send an e-mail to ApplicantAccommodations@dentsu.com by clicking on the link to let us know the nature of your accommodation request and your contact information. We are here to support you.
Aplyr's read
Dentsu is a powerhouse in advertising, known for its data-driven strategies and digital transformation. It's ideal for those passionate about innovative marketing solutions.
What's promising
- •Dentsu emphasizes digital transformation, positioning itself at the forefront of modern advertising.
- •The company offers diverse roles, providing opportunities for career growth across various marketing disciplines.
- •Dentsu's focus on data-driven strategies attracts clients seeking measurable marketing outcomes.
What to watch
- •The advertising industry is highly competitive, posing challenges for maintaining market share.
- •Rapid technological changes require constant adaptation, which can be demanding for employees.
- •Limited public information about employee satisfaction and work-life balance at Dentsu.
Why Dentsu
- •Dentsu integrates traditional and digital marketing, offering comprehensive solutions.
- •Its global presence allows for cross-cultural marketing strategies and insights.
- •Dentsu's commitment to innovation is reflected in roles like AI Motion Designer.
Aplyr’s read is generated by AI from public sources. Was it useful?
About Dentsu
Dentsu USA is a leading marketing and advertising agency that provides integrated solutions to clients across various sectors, focusing on digital transformation and data-driven strategies.
Similar roles
Network Testing Delivery Lead
Northern Trust
IT Support Lead (Media & Production Technology)
Warner Bros Discovery
Service Request & Problem Management Process Owner
Rolls-Royce
Lead Systems Operations Engineer
Wells Fargo
Territory Account Manager – Networking
HPE
Senior Manager - Information Security, Tools, and Engineering
Verisign