POSITION DATA
JOB TITLE: Director of Information Security
DEPARTMENT: Information Technology
REPORTS TO: Chief Information Officer
CLASIFICATION: Exempt
SALARY: $per year
DATE: January 2026
POSITION OVERVIEW
The Director of Information Security leads the organizations information security program ensuring the confidentiality integrity and availability of systems and data while enabling secure business operations and technology innovation.
ESSENTIAL FUNCTIONS
- Develop Information Security program & team maintain and enforce a comprehensive information security strategy aligned with business goals.
- Develop and execute the enterprise information security strategy and multi-year security roadmap
- Oversee risk and vulnerability assessments penetration tests and security audits; prioritize mitigation activities.
- Ensure compliance with relevant legal regulatory and contractual security requirements (PCI-DSS GDPR SOC2).
- Lead security operations incident response vulnerability management and threat detection activities
- Own identity and access management strategy controls and lifecycle processes
- Establish and oversee security governance risk management and compliance programs
- Manage third-party and vendor security risk including security requirements in procurement
- Partner with IT Data and Engineering teams to embed security into systems and workflows
- Define and report security KPIs risk metrics and security posture to executive leadership
- Lead and develop internal security staff and manage managed security service providers
SKILLS REQUIREMENT
- Strong analytical skills and attention to detail.
- Technical expertise across network security application security identity and access management cloud security and cryptography.
- Excellent communication skills; able to convey complex security topics to technical and non-technical audiences.
- Proven leadership skills including team building and vendor management.
- Ability to operate calmly under pressure and in crisis situations.
QUALIFICATIONS/SKILLS REQUIREMENT
- 5 years cybersecurity experience including hands-on and leadership responsibilities.
- Bachelors in Cybersecurity Computer Science Information Technology or a related discipline.
- Industry certifications such as CISSP CISM CRISC CEH or equivalent.
- Deep familiarity with security frameworks such as NIST CSF ISO 27001 COBIT and risk management methodologies.
- Demonstrated experience responding to incidents managing security operations centers and conducting forensics.
- Experience managing MSSPs or SOC providers securing cloud-based and SaaS environments
VOLUNTEER REQUIREMENT
- Participates in the Annual 5K Fundraiser and September 11th Commemoration as assigned.
- Assists with other special projects and events in support of all 9/11 Memorial and Museum as assigned.
The National September 11 Memorial & Museum (9/11 Memorial & Museum) is an equal opportunity employer. Applicants who meet the qualification requirements of the role will receive consideration without regard to their race color religion sex sexual orientation age national origin disability status as a protected veteran or any other characteristic protected by applicable law. The 9/11 Memorial & Museum endeavors to make reasonable accommodations for applicants with disabilities and other accommodation needs under applicable law. If you are an individual with a legally recognized accommodation need and require assistance during the application process please contact Ronni Cantor at with your specific accommodation request.
The 9/11 Memorial & Museum is committed to an organizational culture that supports and reinforces our institutional values including our commitment to inclusive representation. We are committed to reflecting the unique experiences of the nearly 3000 victims who were killed indiscriminately in the 1993 and 2001 terrorist attacks and the wider communities impacted in lower Manhattan at the Pentagon and near Shanksville PA.
Required Experience:
Director
POSITION DATAJOB TITLE: Director of Information SecurityDEPARTMENT: Information TechnologyREPORTS TO: Chief Information OfficerCLASIFICATION: ExemptSALARY: $per yearDATE: January 2026POSITION OVERVIEWThe Director of Information Security leads the organizations information security program ensuring t...
POSITION DATA
JOB TITLE: Director of Information Security
DEPARTMENT: Information Technology
REPORTS TO: Chief Information Officer
CLASIFICATION: Exempt
SALARY: $per year
DATE: January 2026
POSITION OVERVIEW
The Director of Information Security leads the organizations information security program ensuring the confidentiality integrity and availability of systems and data while enabling secure business operations and technology innovation.
ESSENTIAL FUNCTIONS
- Develop Information Security program & team maintain and enforce a comprehensive information security strategy aligned with business goals.
- Develop and execute the enterprise information security strategy and multi-year security roadmap
- Oversee risk and vulnerability assessments penetration tests and security audits; prioritize mitigation activities.
- Ensure compliance with relevant legal regulatory and contractual security requirements (PCI-DSS GDPR SOC2).
- Lead security operations incident response vulnerability management and threat detection activities
- Own identity and access management strategy controls and lifecycle processes
- Establish and oversee security governance risk management and compliance programs
- Manage third-party and vendor security risk including security requirements in procurement
- Partner with IT Data and Engineering teams to embed security into systems and workflows
- Define and report security KPIs risk metrics and security posture to executive leadership
- Lead and develop internal security staff and manage managed security service providers
SKILLS REQUIREMENT
- Strong analytical skills and attention to detail.
- Technical expertise across network security application security identity and access management cloud security and cryptography.
- Excellent communication skills; able to convey complex security topics to technical and non-technical audiences.
- Proven leadership skills including team building and vendor management.
- Ability to operate calmly under pressure and in crisis situations.
QUALIFICATIONS/SKILLS REQUIREMENT
- 5 years cybersecurity experience including hands-on and leadership responsibilities.
- Bachelors in Cybersecurity Computer Science Information Technology or a related discipline.
- Industry certifications such as CISSP CISM CRISC CEH or equivalent.
- Deep familiarity with security frameworks such as NIST CSF ISO 27001 COBIT and risk management methodologies.
- Demonstrated experience responding to incidents managing security operations centers and conducting forensics.
- Experience managing MSSPs or SOC providers securing cloud-based and SaaS environments
VOLUNTEER REQUIREMENT
- Participates in the Annual 5K Fundraiser and September 11th Commemoration as assigned.
- Assists with other special projects and events in support of all 9/11 Memorial and Museum as assigned.
The National September 11 Memorial & Museum (9/11 Memorial & Museum) is an equal opportunity employer. Applicants who meet the qualification requirements of the role will receive consideration without regard to their race color religion sex sexual orientation age national origin disability status as a protected veteran or any other characteristic protected by applicable law. The 9/11 Memorial & Museum endeavors to make reasonable accommodations for applicants with disabilities and other accommodation needs under applicable law. If you are an individual with a legally recognized accommodation need and require assistance during the application process please contact Ronni Cantor at with your specific accommodation request.
The 9/11 Memorial & Museum is committed to an organizational culture that supports and reinforces our institutional values including our commitment to inclusive representation. We are committed to reflecting the unique experiences of the nearly 3000 victims who were killed indiscriminately in the 1993 and 2001 terrorist attacks and the wider communities impacted in lower Manhattan at the Pentagon and near Shanksville PA.
Required Experience:
Director
View more
View less