Unknown Company

Director, Data & Applications Security

smithfield, va • Posted 6 days ago
Onsite Full Time IT & Technology

Have a seat at our table. When you join Smithfield, you become part of something special - a company that’s sustainably feeding people around the world, producing good food the right way with respect for our people, animals, communities and planet. With opportunities across locations and functions, a culture grounded in our Core Four values - gratitude, communication, respect and accountability - and a strong commitment to learning, collaboration, and innovation, Smithfield offers challenging and rewarding careers where you can grow, contribute and make a real impact.

THE VALUE YOU'LL BRING:

The position summary states the general nature and purpose of the job. Overall accountabilities are defined in this section.

As the Director, Data and Applications Security, you will lead the development and implementation of enterprise-wide data protection strategies and secure software development practices. This role oversees the creation of data security policies, governance frameworks, and secure architecture for applications and integrations across Smithfield's technology landscape. Key responsibilities include defining data taxonomy, implementing cryptographic safeguards, managing application and API security, and transitioning the Secure Software Development Lifecycle (SSDLC) into a compliant and sustainable operating model. You will also be responsible for integrating tools such as Cloud Access Security Broker (CASB) into Smithfield's data protection ecosystem, ensuring both proactive risk mitigation and alignment with corporate cybersecurity goals.

WHAT YOU'LL DO:

  • Strategic Collaboration: Regularly meet with the CISO and align with Data Services and Infrastructure leadership to ensure strategic alignment, business satisfaction, and continuous improvement in cybersecurity services.
  • Data Security Governance: Develop and implement enterprise-wide data classification, taxonomy, and governance policies to drive consistent data protection and compliance.
  • Data Loss Prevention: Develop, manage, monitor, and deploy the enterprise strategy and tools for data loss prevention.
  • Risk Management: Identify, measure, and minimize security risks across application, database, network, host, artificial intelligence, and cloud environments with a focus on data and application security.
  • Capability Assessment & Roadmap: Assess the effectiveness of current data security capabilities, identify gaps, and develop a comprehensive security strategy and execution roadmap.
  • Vulnerability Management: Collaborate with IT and OT leaders to manage vulnerabilities in systems supporting data and application functions.
  • Vendor Oversight: Manage security vendor relationships and evaluate the effectiveness of products and services related to data and application protection.
  • Audit & Compliance Support: Support internal and external cybersecurity audits for systems and service providers to ensure regulatory and policy compliance.
  • Software and Asset Management: Set direction, manage, and support software and hardware asset management standards, capabilities, and reporting.
  • Leadership: Drives a positive employee experience through leadership by way of employee development and coaching.

WHAT WE'RE SEEKING:

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals to perform the essential functions.

  • Education & Experience: Bachelor's degree from an accredited four-year college or university and 10+ years of relevant experience in Data & Applications Security; or equivalent combination of education and experience required.
  • Leadership: 5+ years of demonstrated experience in team management/development required.
  • Certifications: CISSP, CISM, or equivalent certification is required.
  • Enterprise Experience: Experience working in multinational organizations with complex, integrated IT and OT environments.
  • Data Protection Expertise: Proven knowledge in data classification strategies, high-risk data handling, data masking, tokenization, encryption, and cryptographic controls.
  • AI Risk and Governance: Knowledge and experience implementing, managing, and assessing AI risk and governance frameworks.
  • SDLC & Application Security: Deep understanding of Secure Software Development Lifecycle (SSDLC), code review methodologies, and static/dynamic code analysis.
  • Risk & Security Strategy: Strong background in risk management, cyberse

#J-18808-Ljbffr

Director, Data & Applications Security in smithfield at Unknown Company

This position is listed as full time and onsite.

Back to Job Search