Talent.com
Global Information and AI Security Director
Global Information and AI Security DirectorBoston Consulting Group • Boston, MA, US
No longer accepting applications
Global Information and AI Security Director

Global Information and AI Security Director

Boston Consulting Group • Boston, MA, US
12 days ago
Job type
  • Full-time
Job description

Locations : Boston | Atlanta

Who We Are

Boston Consulting Group partners with leaders in business and society to tackle their most important challenges and capture their greatest opportunities. BCG was the pioneer in business strategy when it was founded in 1963. Today, we help clients with total transformation-inspiring complex change, enabling organizations to grow, building competitive advantage, and driving bottom-line impact.

To succeed, organizations must blend digital and human capabilities. Our diverse, global teams bring deep industry and functional expertise and a range of perspectives to spark change. BCG delivers solutions through leading-edge management consulting along with technology and design, corporate and digital ventures—and business purpose. We work in a uniquely collaborative model across the firm and throughout all levels of the client organization, generating results that allow our clients to thrive.

What You'll Do

The Global Information and AI Security Director provides internal BCG technical consulting around information security architecture and security design measures for new projects, ventures and systems. The architect defines the desired end state to meet solution Security Goals and overall business goals. The Security Architect ensures the digital applications, tools, and services protect our data, our clients’ data, and our intellectual property; are resilient to cyber-attack; meet BCG policy and standards, regulatory requirements, and industry best practices; while using a risk-based approach to meeting BCG business needs and objectives.

The Global Information and AI Security Director works with teams inside BCG to secure the building and maintenance of complex computing environments to train, deploy, and operate Artificial Intelligence / ML systems by determining security requirements; planning, implementing and testing security systems; participate in AI / ML / LLM projects as the Security Subject Matter Expert; preparing security standards, policies and procedures; and mentoring team members.

YOU’RE GOOD AT

The Global Information and AI Security Director is good at :

  • Collaborating closely with software engineering, data science, data engineering, and cybersecurity teams to design, implement, and maintain secure solutions in agile environments leveraging cloud-native technologies and infrastructure.
  • Defining security requirements by deeply understanding business objectives, evaluating strategies, and implementing robust security standards throughout the full Software Development Life Cycle (SDLC).
  • Leading security risk assessments, threat modeling (utilizing frameworks such as MAESTRO, PASTA, STRIDE, etc.), security architecture reviews, and vulnerability analyses for client-facing digital products, particularly involving complex AI / ML-driven solutions.
  • Advising development teams, including AI engineers and data scientists, on secure coding practices, secure data handling, secure AI / ML model deployment, and related infrastructure security considerations.
  • Providing specialized guidance on secure AI model development lifecycle, including secure data usage, ethical AI practices, and robust security controls in Generative AI and large language model deployments.
  • Mentoring, managing, and setting clear Objectives and Key Results (OKRs) for a team of security leads and architects, ensuring alignment with strategic goals and promoting continuous professional growth.
  • Staying ahead of emerging security trends and technologies, conducting continuous research, evaluation, and advocacy of new security tools, frameworks, and architectures relevant to digital solutions.
  • Ensuring robust compliance with regulatory frameworks and industry standards, including ISO 27001, SOC2, NIST, and GDPR, particularly as they pertain to data privacy and AI-driven product development.
  • Developing and delivering training programs on secure development, AI security considerations, and incident response practices.
  • Partnering with internal stakeholders, articulating security risks clearly, influencing technical directions, and promoting comprehensive secure architecture roadmaps.
  • Conducting vendor and market assessments, guiding tests, evaluations, and implementation of security products that address enterprise and client-specific information security requirements.
  • Advising teams on compensating controls and alternative security measures to facilitate business agility without compromising security posture.
  • Leading the implementation and continuous improvement of security tooling and practices within CI / CD pipelines, infrastructure-as-code (IaC), and model deployment automation.

What You'll Bring

  • Bachelor's degree (or equivalent experience) required.
  • CSSLP certification required; additional certifications such as CISSP, CCSP, or CCSK strongly preferred.
  • 10+ years of progressive experience in information security, with demonstrated leadership experience managing or mentoring technical teams or security architects.
  • Proven expertise supporting software engineering, data science, and AI / ML development teams, specifically with secure model lifecycle management, secure deployment practices, and secure data engineering.
  • Expert understanding of the Secure Software Development Lifecycle (SSDLC), including secure architecture, threat modeling frameworks (e.g., MAESTRO, PASTA, STRIDE), penetration testing, secure coding practices, vulnerability management, and incident response.
  • Demonstrated technical proficiency across multiple security technologies, platforms, and frameworks, with strong hands-on experience implementing secure cloud-native infrastructures (AWS, Azure, GCP).
  • Familiarity with data warehouse and data lake environments such as Databricks, Azure Fabric, or Snowflake, including security best practices in managing and securing large-scale data ecosystems.
  • In-depth knowledge and practical experience with AI and machine learning model security, ethical AI frameworks, secure handling of data, and comprehensive understanding of CI / CD pipelines specifically tailored for data science workloads.
  • Extensive experience conducting security assessments, vulnerability triage, intrusion detection and prevention, firewall management, network vulnerability analysis, cryptographic implementations, and incident response analysis.
  • Exceptional communication skills (written and oral), leadership capabilities, and ability to clearly articulate complex security concepts to stakeholders across various levels of the organization.
  • Proactive professional development, continuous learning, active participation in industry forums, professional networks, and familiarity with current and emerging security trends and standards.
  • Who You'll Work With

    Total compensation for this role includes base salary, annual discretionary performance bonus, retirement contribution, and a market leading benefits package described below.

  • The base salary range for this role begins at $171,000.00 in our lowest cost geography and goes up to $211,000.00 in our highest cost geography. Your recruiting contact can share more about the specific salary range for your preferred location during the hiring process.
  • This is an estimated range, however, specific base salaries within the range depend on various factors such as experience and skill set. It is not common for new BCG employees to be hired at the high-end of the salary range. BCG regularly reviews its ranges to ensure market competitiveness.

    In addition to your base salary, your total compensation will include a bonus of up to 30% and a generous retirement contribution that starts at 5% and moves to 10% after 2 years.

    All of our plans provide best in class coverage :

    Zero dollar ($0) health insurance premiums for BCG employees, spouses, and children

    Low $10 (USD) copays for trips to the doctor, urgent care visits and prescriptions for generic drugs

    Dental coverage, including up to $5,000 in orthodontia benefits

    Vision insurance with coverage for both glasses and contact lenses annually

    Reimbursement for gym memberships and other fitness activities

    Fully vested Profit Sharing Retirement Fund contributions made annually, whether you contribute or not, plus the option for employees to make personal contributions to a 401(k) plan

    Paid Parental Leave and other family benefits such as elective egg freezing, surrogacy, and adoption reimbursement

    Generous paid time off including 12 holidays per year, an annual office closure between Christmas and New Years, and 15 vacation days per year (earned at 1.25 days per month)

    Paid sick time on an as needed basis

    Boston Consulting Group is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity / expression, national origin, disability, protected veteran status, or any other characteristic protected under national, provincial, or local law, where applicable, and those with criminal histories will be considered in a manner consistent with applicable state and local laws.

    BCG is an E - Verify Employer. Click here for more information on E-Verify.

    Create a job alert for this search

    Director Information Security • Boston, MA, US

    Related jobs
    DevSecOps & Security Compliance Engineer

    DevSecOps & Security Compliance Engineer

    apiphani • Boston, MA, US
    Full-time
    We're a small but rapidly growing company, which means there's lots of room for growth and learning opportunities abound!. Diversity and inclusion are the bedrock of creativity and innovatio...Show more
    Last updated: 2 days ago • Promoted
    Principal System Security Engineer

    Principal System Security Engineer

    Draper Labs • Cambridge, MA, United States
    Full-time
    Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA.The 2,000+ employees of Draper tackle important national challenges with a promise of delivering ...Show more
    Last updated: 22 hours ago • Promoted • New!
    Lead Solution architect - Cloud Architecture & Security

    Lead Solution architect - Cloud Architecture & Security

    Talent Search PRO • Quincy, MA, US
    Full-time
    An experienced team member to lead Enterprise Risk Management and Liquidity Risk Management platforms projects as Solution Architecture capacity. The Lead Solution architect shall be responsible for...Show more
    Last updated: 16 days ago • Promoted
    Manager, Digital Asset / Cryptocurreny Risk Management

    Manager, Digital Asset / Cryptocurreny Risk Management

    Fidelity Investments • Boston, MA, US
    Full-time
    As a member of the Fidelity Digital Assets Risk Management team, you will play a key role in protecting Fidelity and its customers. You will primarily focus on the oversight of key risks, business u...Show more
    Last updated: 1 day ago • Promoted
    Director, Intelligence Solutions

    Director, Intelligence Solutions

    IPG Mediabrands • Boston, MA, United States
    Full-time
    MAGNA is the centralized IPG Mediabrands resource that provides strategic investment and media intelligence for agency teams and clients. We utilize our insights, forecasts and strategic relationshi...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cyber Software Engineer

    Senior Cyber Software Engineer

    STR • Woburn, MA, US
    Full-time
    Senior Cyber Software Engineer.Apply software engineering principles to develop robust and resilient software solutions for critical national security missions. Develop static analysis tools to iden...Show more
    Last updated: 30+ days ago • Promoted
    Director - Operational Risk, Cybersecurity

    Director - Operational Risk, Cybersecurity

    Citizens • Westwood, MA, United States
    Full-time
    Director, Operational Risk Management Oversight – Cybersecurity Risk.Citizens is hiring a Director to join our Operational Risk Management Oversight team with a focus on cybersecurity risk.This lea...Show more
    Last updated: 1 day ago • Promoted
    Principal Data Engineer, Attack Surface Intelligence

    Principal Data Engineer, Attack Surface Intelligence

    Recorded Future • Boston, MA, United States
    Full-time
    With 1,000 intelligence professionals, over $300M in sales, and serving over 1,900 clients worldwide, Recorded Future is the world’s most advanced, and largest, intelligence company!.Lead the desig...Show more
    Last updated: 30+ days ago • Promoted
    Systems Engineer II - Anti-Tamper / Program Protection (P2)

    Systems Engineer II - Anti-Tamper / Program Protection (P2)

    RTX • Tewksbury, MA, United States
    Full-time
    Assabet 50 Apple Hill Drive Assabet - Building 1, Tewksbury, MA, 01876 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is rooted in our values and a ...Show more
    Last updated: 1 day ago • Promoted
    Systems Engineer Engineer II - Cyber Engineer (On-site) P2

    Systems Engineer Engineer II - Cyber Engineer (On-site) P2

    Raytheon • Dracut, MA, United States
    Full-time
    MA131 : Tewksbury, MA Bldg 1 Assabet 50 Apple Hill Drive Assabet - Building 1, Tewksbury, MA, 01876 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is...Show more
    Last updated: 1 day ago • Promoted
    Cybersecurity Risk Manager

    Cybersecurity Risk Manager

    VirtualVocations • Lowell, Massachusetts, United States
    Full-time
    A company is looking for a Senior Manager Cybersecurity Risk to lead enterprise risk and compliance initiatives for commercial clients. Key Responsibilities Direct the Risk Services team in implem...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Software Engineer

    Senior Security Software Engineer

    VirtualVocations • Dorchester, Massachusetts, United States
    Full-time
    A company is looking for a Senior System Software Engineer - Security for IaaS, PaaS, SaaS.Key Responsibilities Partner with product and engineering teams to support, develop, and manage products...Show more
    Last updated: 30+ days ago • Promoted
    Sr Mgr, Revenue Intelligence

    Sr Mgr, Revenue Intelligence

    Massachusetts Staffing • Boston, MA, US
    Full-time
    Senior Manager, Revenue Intelligence.At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming ...Show more
    Last updated: 5 days ago • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    Whoop • Boston, MA, US
    Full-time
    At WHOOP, we're on a mission to unlock human performance.WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.WHOOP is seeking a Se...Show more
    Last updated: 18 days ago • Promoted
    Senior Postgres Security Engineer

    Senior Postgres Security Engineer

    VirtualVocations • Lowell, Massachusetts, United States
    Full-time
    A company is looking for a Senior Postgres Security Engineer to join their Postgres Team.Key Responsibilities Maintain and expand the security, permissions, and role system of the hosted Postgres...Show more
    Last updated: 22 hours ago • Promoted • New!
    Principal Security Architect

    Principal Security Architect

    InterSystems Corporation • Boston, MA, United States
    Full-time
    Build a Career that Makes a Difference.Welcome to our Careers section! We hire only talented, dedicated, and driven individuals - the best and the brightest from all over the world.Join us as we de...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Engineer I

    Senior Security Engineer I

    Compass • Boston, MA, United States
    Full-time
    At Compass, our mission is to help everyone find their place in the world.Founded in 2012, we’re revolutionizing the real estate industry with our end-to-end platform that empowers residential real...Show more
    Last updated: 5 days ago • Promoted
    Senior Technology Cloud Security Architect

    Senior Technology Cloud Security Architect

    Cooley LLP • Boston, MA, United States
    Full-time
    Senior Technology Cloud Security Architect.Cooley is seeking a Technology Cloud Security Architect to join the Security team. Cooley Technology embraces a culture of customer service excellence, and...Show more
    Last updated: 30+ days ago • Promoted