Cybersecurity, Partner
Job Summary
ABOUT THE ROLE
The Cybersecurity Partner is Hut 8s senior security leader and enterprise owner for cybersecurity strategy architecture governance and risk. This role defines the security vision and operating model across corporate IT mining operations data centers cloud and AI/compute environments and translates that vision into a practical roadmap for a rapidly scaling publicly traded company.
This is a builder-leader role for an experienced security executive who can operate credibly with the board executive leadership technology teams and operational stakeholders. The Partner will establish the security program from the ground up set the control framework lead material incident and risk decisions manage the external security ecosystem and build the internal capability required to progressively bring security operations and ownership in-house.
The role reports into the Technology organization and partners closely with Software Networking Data Engineering Business Intelligence Applied AI Finance Legal People and Mining Operations.
What Youll Do
- Define and own Hut 8s enterprise cybersecurity strategy target operating model multi-year roadmap and security architecture.
- Establish clear security priorities decision rights risk tolerances investment requirements and success measures for the organization.
- Serve as the senior cybersecurity advisor to executive leadership and the board providing clear reporting on material risks incidents control maturity and remediation progress.
- Establish and govern the enterprise security control framework aligning to recognized standards and obligations such as NIST CSF ISO 27001 SOC 2 SOX ITGC PCI and applicable regulatory requirements.
- Own the cybersecurity governance risk and compliance program including risk acceptance control ownership evidence management audit readiness third-party assessments and remediation tracking.
- Set the defense-in-depth architecture across identity and access management network segmentation endpoint security cloud SaaS data APIs CI/CD pipelines and OT or industrial control environments.
- Define security-by-default principles and embed them into technology strategy architecture review procurement solution design and the system development lifecycle.
- Build and lead the Security Operations capability including threat detection monitoring security engineering vulnerability management incident response and security metrics.
- Own the identity and access governance program including privileged access MFA SSO least privilege joiner-mover-leaver controls access reviews and segregation of duties.
- Lead cyber incident and breach management end to end including preparation detection containment eradication recovery post-incident review executive communication and regulatory coordination.
- Manage the security vendor and MSSP ecosystem including strategy evaluation contracts performance budget service levels and clear criteria for reducing external dependency.
- Establish the security awareness training and anti-phishing program for a distributed multi-site workforce.
- Partner with technology and business leaders to protect enterprise data production platforms mining environments and AI/compute workloads without unnecessarily slowing delivery.
- Recruit mentor and grow the internal security team creating clear ownership across architecture engineering operations GRC and incident response.
- Define operating metrics and regularly assess the effectiveness coverage and maturity of the security program.
ABOUT YOU
- 8 years of progressive cybersecurity or information security experience including significant experience operating as a security leader head of security CISO or equivalent enterprise security owner.
- Experience building or materially transforming a cybersecurity program in a complex fast-growing or publicly traded organization; SOX experience is strongly preferred.
- Bachelors degree in Computer Science Information Security or a related field; a masters degree or certifications such as CISSP CISM CCSP or GIAC are strongly preferred.
- Demonstrated ability to set enterprise security strategy and translate it into a sequenced funded measurable roadmap.
- Strong knowledge of security architecture cloud and SaaS security identity and access management network security endpoint security data security and OT or industrial control environments.
- Hands-on experience owning security control frameworks audits and assessments including SOC 2 NIST CSF ISO 27001 SOX ITGC PCI and third-party risk.
- Proven experience establishing or leading SIEM or SOC capabilities EDR vulnerability management incident response identity governance and security engineering programs.
- Experience securing platform integrations APIs CI/CD pipelines cloud and data architectures and AI or compute environments.
- Demonstrated experience managing security budgets vendors MSSPs contracts and executive-level trade-offs including transitioning capabilities in-house.
- Experience leading material incidents and communicating clearly with executives board members regulators legal counsel and non-technical stakeholders.
- Strong leadership judgment influence and communication skills with the ability to create alignment and make pragmatic decisions under ambiguity.
- A builders mindset: willing to design the operating model establish the foundations and personally engage in the work required to make the program effective.
ABOUT THE WORK ENVIRONMENT
This role is in office at our corporate headquarters in the Brickell area of Miami Florida. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.