Job Description
SC Data Center, an affiliate of Colony Brands, Inc., is seeking a Director of IT Security to lead the development and execution of our enterprise-wide information security strategy. This role is essential in protecting our customers, company, and affiliates-especially in areas involving audit readiness, credit card processing, and regulatory compliance. We operate with a lean, agile team, so we're looking for a hands-on leader who thrives on variety, builds strong relationships across the enterprise, and brings both technical depth and business acumen to the table.
This role offers the opportunity to collaborate with business partners on projects that drive business results and will positively impact a family-owned, people-oriented company in business for almost a century. If you're a seasoned IT security professional with a passion for leadership, a strong background in audits and PCI compliance, and a desire to work across the full spectrum of the security domain-this opportunity is for you!
What You'll Do:
As the Director of IT Security, you will be responsible for shaping and executing a comprehensive security program that aligns with business goals and regulatory requirements. You'll report to the Vice President of IT, lead a team of security professionals, and collaborate with IT and business stakeholders to ensure that security controls are effective, scalable, and support enterprise objectives.
Key responsibilities include:
* Directing the development and implementation of comprehensive cybersecurity strategies to safeguard sensitive customer and company data against emerging threats, ensuring trust and compliance in all digital transactions
* Driving PCI DSS, SOC1, and other regulatory compliance efforts, including assessments, gap analysis, and ensuring timely remediation of findings
* Collaborating with IT and business units to ensure secure system design and implementation
* Coordinating incident response and forensic investigations in the event of security breaches
* Building and mentoring a high-performing security team
* Preparing and communicating executive-level reports, risk assessments, and security communications
* Staying current with evolving threats, technologies, and regulatory requirements
* Evolve AI-driven security strategies, integrating AI/ML tools for threat detection and response while ensuring ethical and compliant use
* Partnering with a SOC and a variety of vendors to support security efforts
What It Takes:
This role requires a strategic thinker with strong technical expertise and a collaborative leadership style. Ideally, you will have a bachelor's degree in Computer Science, Information Technology, Business, or a related discipline, and 10+ years of progressive experience in IT security leadership roles. All team members are required to physically work onsite at our Monroe, WI headquarters.
In addition, we're looking for someone with:
* Broad understanding of information security principles, risk management, and IT operations
* Mature judgment and strategic advisory skills, with the ability to provide practical, solutions-oriented advice and to make sound decisions during times of high-pressure
* Exceptional analytical, critical thinking, and problem-solving abilities, with a knack for addressing complex challenges with innovative solutions.
* Demonstrated ability to lead, mentor, and develop high-performing teams
* Proven experience managing IT audits and regulatory compliance (SOC1, PCI DSS, ...) and a strong knowledge of credit card processing security and PCI DSS frameworks
* Outstanding written and verbal communication skills with the ability to articulate complex technical concepts to a diverse range of stakeholders, from executive leadership to non-technical audiences
* Experience with security systems such as IDS/IPS, SIEM, MFA, EDR, vulnerability scanners, and patch management
* Familiarity with cloud and on-premise environments
* Experience managing multiple security vendors and contracts
* CISSP, CISM, CISA, ISA, or similar certifications preferred
* Experience working in small to mid-size organizations is a plus
Please note this position is not eligible for remote work or Visa Sponsorship.