Enter a job title or keyword

Director, Cyber Security


Job Location:

Broomfield, CO - USA

Monthly Salary: Not provided by the employer
Posted: 29 August 2026 (25 days ago)
Application Deadline: 26 November 2026
Vacancies: 1 Vacancy

Job Summary

We will be accepting applications through September 20 2026 or until filled.

Position Summary

The Director of Cybersecurity is responsible for leading the enterprises cybersecurity operations incident response and governance risk and compliance (GRC) programs. This role serves as a key member of the security leadership team translating strategic security objectives into operational programs that protect the organizations information assets infrastructure and reputation. The Director will oversee a team of security professionals manage the organizations security posture across threat detection incident response vulnerability management and regulatory compliance and serve as a trusted advisor to executive leadership on cyber risk.

Key Responsibilities

Incident Response & Security Operations

  • Own and continuously mature the enterprise incident response (IR) program including playbooks tabletop exercises and post-incident reviews
  • Serve as incident commander for high-severity security incidents coordinating cross-functional response efforts (Legal Communications IT executive leadership)
  • Oversee Security Operations Center (SOC) functions including threat detection triage containment and remediation
  • Manage relationships with third-party incident response digital forensics and managed detection and response (MDR) providers
  • Lead root cause analysis and drive remediation of systemic vulnerabilities exposed by incidents
  • Establish and report on key incident metrics (MTTD MTTR containment time) to leadership and the board

Governance Risk & Compliance (GRC)

  • Build and maintain the enterprise cybersecurity risk management framework including risk registers risk scoring methodologies and treatment plans
  • Lead compliance efforts against applicable frameworks and regulations (e.g. NIST CSF/800-53 ISO 27001 SOC 2 PCI DSS HIPAA GDPR FedRAMP as applicable to the industry)
  • Manage internal and external audit engagements including evidence collection remediation tracking and auditor liaison
  • Develop implement and maintain security policies standards and procedures
  • Oversee third-party/vendor risk management program including security assessments and contract review
  • Partner with Legal and Privacy teams on regulatory obligations breach notification requirements and data protection matters
  • Present risk posture compliance status and program maturity to executive leadership audit committee and board of directors as needed

Technical Security Leadership

  • Direct vulnerability management program including scanning penetration testing coordination and patch prioritization
  • Oversee identity and access management (IAM) endpoint detection and response (EDR) network security and cloud security architecture in partnership with IT/engineering teams
  • Guide security architecture reviews for new systems applications and vendor integrations
  • Champion security awareness training and phishing simulation programs
  • Evaluate and recommend security tooling technologies and process improvements
  • Maintain threat intelligence awareness and translate emerging threats into actionable defensive measures

Leadership & Program Management

  • Build mentor and manage a high-performing cybersecurity team including hiring performance management and professional development
  • Develop and manage departmental budget including tooling staffing and professional services
  • Define and track KPIs/metrics demonstrating program effectiveness and maturity
  • Partner cross-functionally with IT Legal Privacy Internal Audit and business unit leaders to embed security into organizational processes
  • Support the CISO in developing and executing the enterprise security strategy and roadmap

Minimum Qualifications

  • 10 years of progressive experience in cybersecurity information security or IT risk management including demonstrated experience in incident response and GRC
  • 5 years of people management or team leadership experience
  • Bachelors degree in Computer Science Information Security or related field or equivalent experience
  • Demonstrated experience building or maturing incident response programs and leading response to significant security events
  • Strong working knowledge of regulatory and compliance frameworks (NIST ISO 27001 SOC 2 PCI DSS and/or industry-specific regulations)
  • Hands-on familiarity with security technologies: SIEM EDR/XDR vulnerability management platforms IAM cloud security posture management (CSPM)
  • Experience managing third-party risk assessments and vendor security reviews
  • Excellent written and verbal communication skills including experience presenting to executive leadership and boards
  • Proven ability to manage competing priorities in a fast-paced evolving threat landscape

Preferred Qualifications

  • Masters degree (MBA MS in Cybersecurity/Information Assurance or related)
  • Relevant industry certifications: CISSP CISM CRISC CISA GCIH GCFA or equivalent
  • Experience in industry-specific: aviation financial services healthcare government contracting etc.
  • Experience with cloud security across AWS Azure and/or GCP
  • Familiarity with privacy regulations (GDPR CCPA) and their intersection with security programs
  • Experience supporting SEC cybersecurity disclosure requirements (for public companies)

Core Competencies

Competency

Description

Incident Command

Ability to lead cross-functional response under pressure with clear decision-making

Risk-Based Thinking

Translates technical risk into business impact for non-technical stakeholders

Regulatory Fluency

Deep understanding of applicable compliance obligations and audit processes

Technical Credibility

Sufficient depth to guide architecture and tooling decisions with engineering teams

Executive Communication

Comfortable briefing C-suite audit committee and board-level audiences

People Leadership

Builds retains and develops security talent

Physical/Work Requirements

  • Ability to participate in on-call rotation for incident response as needed
  • Occasional travel for audits conferences or cross-site coordination (typically <15%)

Equal Pay Disclosure(s)

Base Pay:

180000.00 - 225000.00 USD Annual

Target Annual Short-Term Incentive:

Bonus Plan at 20% (% of Annualized Base Pay)

Eligible for Incentive Stock Program:

Yes

Benefits:

Gogo offers competitive benefits including medical dental and vision coverage with plans that can fit each employees needs. We offer an immediate vesting 401k plan paid time off and volunteer time off. Employees have the option to participate in an Employee Stock Purchase Plan. Visit the Careers page on our website for more information at --- ---

Gogo is an Equal Opportunity and Affirmative Action employer working in compliance with both federal and state laws. We are committed to the concept of Equal Employment opportunity.

Qualified candidates will beconsidered for employment regardless of race color religion age sex national origin marital status medical condition or disability.

The EEO is the law and is availablehere. Gogoparticipates in E-Verify (EnglishandSpanish). Right to Work Statement(EnglishandSpanish).


Required Experience:

Director


About Company

Gogo Business Aviation | Satcom Direct deliver the highest quality, secure inflight connectivity and entertainment solutions for all business aircraft.

View Profile View Profile