Chief Information Security Officer positions focus on delivering results in their domain. This page aggregates open Chief Information Security Officer roles and what employers typically expect.
## Company Description **Mission Critical Group (MCG**) is an end-to-end power solutions and services provider that accelerates time-to-power and delivers scalable, resilient infrastructure for mission critical environments. By integrating engineering, manufacturing, modular deployment, and lifecycle services under one platform, we streamline execution and bring complex projects online faster - without compromising performance. With more than 1.5 million square feet of U.S. manufacturing capacity, MCG supports data centers, power generation, healthcare, oil & gas, pharmaceuticals, semiconductors, and industrial facilities where uptime is non-negotiable. ## Job Description The Chief Information Security Officer (CISO) is responsible for developing, implementing, and leading the enterprise cybersecurity, information risk management, and compliance strategy across a multi-site manufacturing organization. CISO partners with business leaders, engineering, operations, legal, HR, and executive leadership to protect intellectual property, manufacturing systems, operational technology (OT), industrial control systems (ICS), cloud infrastructure, and enterprise applications while enabling business growth and digital transformation. CISO provides strategic leadership over cybersecurity governance, regulatory compliance, cyber risk, incident response, disaster recovery, identity management, and secure adoption of emerging technologies including AI and cloud platforms. The ideal candidate has extensive experience securing both Information Technology (IT) and Operational Technology (OT) environments within manufacturing. **Key Responsibilities** **Executive Leadership** - Develop and execute the enterprise cybersecurity strategy aligned with business objectives. - Present cybersecurity risks, metrics, investment strategies, and emerging threats to executive leadership. - Build a security-first culture throughout the organization. - Develop long-term cybersecurity roadmaps supporting mergers, acquisitions, and business growth. **Cybersecurity Governance** Lead the enterprise security program including: - Information Security Governance - Cyber Risk Management - Security Policies and Standards - Enterprise Security Architecture - Third-Party Risk Management - Data Governance - AI Governance - Security Awareness Program - Enterprise Vulnerability Management Develop security scorecards and executive dashboards to measure organizational risk. **Manufacturing & Operational Technology (OT) Security** Lead security initiatives protecting: - Industrial Control Systems (ICS) - SCADA Environments - PLC Networks - Manufacturing Execution Systems (MES) - Robotics - IoT Devices - Plant Networks - Building Automation Systems Responsibilities include: - Network segmentation - Zero Trust architecture - Secure remote vendor access - Asset inventory - Patch management - OT vulnerability assessments - ICS incident response - Plant cyber resiliency **IT Infrastructure Security** Provide oversight for: - Microsoft 365 - Azure - Active Directory / Entra ID - Identity Governance - Privileged Access Management (PAM) - Endpoint Detection & Response (EDR) - SIEM / SOAR - Email Security - Secure Cloud Architecture - Data Loss Prevention (DLP) - Network Security - VPN - Firewalls - Secure Remote Access **Compliance & Regulatory Leadership** Ensure compliance with: - NIST Cybersecurity Framework (CSF) - NIST SP 800-53 - NIST SP 800-171 - CMMC Level 2 (if applicable) - ISO 27001 - SOC 2 Type II - CIS Controls - ITAR - DFARS - GDPR - CCPA - PCI-DSS (where applicable) - HIPAA (where applicable) Lead internal and external security audits. **Risk Management** Establish enterprise processes for: - Cyber Risk Assessments - Business Impact Analysis - Risk Register Management - Vendor Security Reviews - Penetration Testing - Security Architecture Reviews - Application Security - Secure Software Development - M&A Security Due Diligence **Security Operations** Oversee: - Security…