Talent.com
Chief Information Security Officer (Remote)

Chief Information Security Officer (Remote)

Cengage GroupMinneapolis, MN, United States
7 hours ago
Job type
  • Full-time
  • Remote
Job description

We believe in the power and joy of learning

At Cengage Group, our employees have a direct impact in helping students around the world discover the power and joy of learning. We are bonded by our shared purpose – driving innovation that helps millions of learners improve their lives and achieve their dreams through education.

Our culture values inclusion, engagement, and discovery

Our business is driven by our strong culture, and we know that creating an inclusive workplace is absolutely essential to the success of our company and our learners, as well as our individual well-being. We recognize the value of diverse perspectives in everything we do, and strive to ensure employees of all levels and backgrounds feel empowered to voice their ideas and bring their authentic selves to work. We achieve these priorities through programs, benefits, and initiatives that are integrated into the fabric of how we work every day. To learn more, please see https : / / www.cengagegroup.com / about / inclusion-and-belonging / .

The Chief Information Security Officer (CISO) is a senior technology executive accountable for protecting Cengage Group\'s digital assets, data confidentiality, and technology infrastructure from cyber threats while ensuring compliance with regulatory requirements. This leader defines and delivers the enterprise information security strategy, building a robust and resilient security posture that enables business innovation while mitigating risk.

The CISO combines deep technical expertise with executive leadership, shaping the company\'s security vision while driving excellence in security operations, risk management, and governance. This role balances strategic vision, business partnership, and organizational influence to ensure security becomes an enabler of digital transformation rather than a barrier to progress. As a critical member of the IT leadership team, reporting to the CIO, this role serves as the primary authority on cybersecurity matters and partners closely with business leaders, legal, compliance, and the board to align security investments with enterprise priorities and risk appetite.

Key Responsibilities

Enterprise Security Strategy & Risk Leadership

Define and deliver the enterprise information security strategy, aligned with business priorities, digital transformation initiatives, and the company\'s risk tolerance in a PE-backed environment preparing for liquidity events.

Lead the development and implementation of comprehensive security programs encompassing cyber defense, data protection, identity and access management, security operations, and threat intelligence.

Conduct enterprise-wide risk assessments, identify vulnerabilities across the technology estate, and prioritize remediation efforts to reduce risk exposure while enabling business agility.

Serve as the primary cybersecurity advisor to the CIO, executive leadership team, and board of directors, translating technical risks into business impact and providing strategic recommendations on security investments.

Drive security architecture decisions that balance protection with performance, cost efficiency, and user experience across cloud, on-premises, and hybrid environments.

Cyber Defense & Security Operations

Oversee security incident detection, response, and recovery programs, ensuring swift identification and mitigation of potential breaches with minimal business disruption.

Manage the security architecture, tools, and technologies deployed across the organization\'s IT infrastructure, including firewalls, intrusion detection / prevention systems, SIEMs, endpoint protection, and encryption protocols.

Lead security operations center (SOC), threat hunting capabilities, and vulnerability management programs that proactively identify and remediate security weaknesses.

Develop and maintain incident response playbooks, disaster recovery plans, and business continuity protocols that ensure organizational resilience against emerging threats.

Monitor security metrics, threat landscape trends, and attack patterns to continuously evolve defensive capabilities and inform executive decision-making on security posture.

Governance, Compliance & Data Protection

Ensure compliance with industry standards, regulatory requirements, and data protection laws including GDPR, CCPA, FERPA, SOC 2, ISO 27001, and other relevant frameworks for the education technology sector.

Coordinate with legal, compliance, privacy, and regulatory teams to maintain certifications, manage audits, and respond to regulatory inquiries with appropriate documentation and evidence.

Develop and enforce security policies, procedures, standards, and protocols that align with business goals, regulatory obligations, and industry guidelines.

Be responsible for data classification, data loss prevention (DLP), and privacy programs that protect sensitive student, employee, and company information across all systems and geographies.

Manage security audits, compliance assessments, and third-party risk evaluations, ensuring vendors and partners meet security requirements and contractual obligations.

Business Partnership & Security Enablement

Serve as a trusted partner to business executives, ensuring security investments and controls enable business innovation while appropriately managing risk.

Collaborate with product, engineering, and DevOps teams to integrate security measures into software development lifecycles through DevSecOps practices and secure-by-design principles.

Partner with IT leadership on technology modernization initiatives including cloud migration, digital transformation, and AI / ML adoption, ensuring security is embedded from inception.

Communicate security value and risk posture at the executive and board levels, linking security investments to business outcomes including revenue protection, regulatory compliance, and competitive differentiation.

Champion security awareness and cultural transformation across the enterprise, promoting shared responsibility for security rather than viewing it as solely an IT function.

Leadership & Talent Development

Lead and inspire a global security team including security architects, security engineers, SOC analysts, governance / risk / compliance specialists, and security operations professionals.

Establish career pathways, competencies, and training programs that elevate security capability and develop next-generation cybersecurity leaders.

Champion a culture of accountability, collaboration, continuous learning, and innovation within the security organization.

Act as an executive sponsor for security awareness training programs for employees at all levels, promoting a culture of cybersecurity across the organization.

Build strategic relationships with peer CISOs, industry groups, law enforcement, and threat intelligence communities to stay ahead of emerging threats and share best practices.

Qualifications

15+ years of progressive leadership in information security, cybersecurity, or risk management, with 5+ years in senior director, VP, or CISO roles.

Proven track record developing and implementing enterprise security programs in global, complex organizations, preferably in education technology, SaaS, or regulated industries.

Extensive knowledge of information security principles, cybersecurity frameworks (NIST, ISO 27001, CIS Controls), and risk management practices with demonstrable success reducing organizational risk.

Deep expertise in security technologies including firewalls, intrusion detection / prevention systems, SIEMs, identity and access management (IAM), cloud security platforms, and encryption protocols.

Solid understanding of data privacy regulations (GDPR, CCPA, FERPA) and compliance requirements with experience managing audits and regulatory relationships.

Experience securing cloud infrastructure (AWS, Azure, GCP) and implementing cloud-native security architectures in multi-cloud and hybrid environments.

Demonstrated ability to lead incident response programs, manage security breaches, and coordinate with legal, communications, and executive teams during crisis situations.

Exceptional leadership skills with a history of developing high-performing, distributed security teams across multiple disciplines and geographies.

Strong business sense and communication skills, with the ability to influence C-suite leaders and board members by translating technical security concepts into business risk and value propositions.

Experience working in PE-backed technology companies preferred, with understanding of security requirements for M&A due diligence, integration, and preparing for liquidity events.

Relevant certifications such as CISSP, CISM, CISA, or equivalent strongly preferred.

Familiarity with DevSecOps practices, secure software development, ethical hacking, and penetration testing techniques valued.

Understanding of artificial intelligence and machine learning applications in security, including emerging threats and defensive capabilities in AI-powered systems.

Cengage Group is committed to working with broad talent pools to attract and hire strong and most qualified individuals. Our job applicants are considered regardless of race, national origin, religion, sex, sexual orientation, genetic information, disability, age, veteran status, and any other classification protected by applicable federal, state, provincial or local laws.

Cengage is also committed to providing reasonable accommodations for qualified individuals with disabilities including during our job application process. If you are an applicant with a disability and require reasonable accommodation in our job application process, please contact us at accommodations.ta@cengage.com or at +1 (617) 289-7917.

About Cengage Group

Cengage Group, a global education technology company serving millions of learners, provides affordable, quality digital products and services that equip students with the skills and competencies needed to be job ready. For more than 100 years, we have enabled the power and joy of learning with trusted, engaging content, and now, integrated digital platforms. We serve the higher education, workforce skills, secondary education, English language teaching and research markets worldwide. Through our scalable technology, including MindTap and Cengage Unlimited, we support all learners who seek to improve their lives and achieve their dreams through education.

Compensation

At Cengage Group, we take great pride in our commitment to providing a comprehensive and rewarding Total Rewards package designed to support and empower our employees. Click here (https : / / www.cengagegroup.com / news / perspectives / 2024 / cengage-group-total-rewards-philosophy / ) to learn more about our Total Rewards Philosophy.

The full base pay range has been provided for this position. Individual base pay will vary based on work schedule, qualifications, experience, internal equity, and geographic location. Sales roles often incorporate a significant incentive compensation program beyond this base pay range.

$250,200.00 - $308,000.00 USD

Cengage Group , a global education technology company serving millions of learners, provides affordable, quality digital products and services that equip students with the skills and competencies needed to be job ready. For more than 100 years, we have enabled the power and joy of learning with trusted, engaging content, and now, integrated digital platforms.

We serve the higher education, workforce skills, secondary education, English language teaching and research markets worldwide. Through our scalable technology, including MindTap and Cengage Unlimited, we support all learners who seek to improve their lives and achieve their dreams through education.

Warning : Be aware, there has been an increase of targeted recruitment scams perpetrated by bad actors falsely providing job offers on behalf Cengage Group to candidates as a means of obtaining personal information. Note that Cengage will always interview candidates via live in-person meetings, phone calls and video calls before an offer would be extended. Also, be sure to check that communication is coming from an @cengage.com email address.

#J-18808-Ljbffr

Create a job alert for this search

Chief Information Security Officer • Minneapolis, MN, United States

Related jobs
  • Promoted
Program Manager (Information Security)

Program Manager (Information Security)

Diverse LynxMinneapolis, MN, US
Full-time
Program Management experience 10+ years, Knowledge of Info Security Program Management, Excellent communications skills and Stakeholder Management. Proficiency in MS Office Diverse Lynx LLC is an Eq...Show moreLast updated: 30+ days ago
  • Promoted
Chief Operating Officer Opportunity

Chief Operating Officer Opportunity

CFSBrooklyn Park, MN, US
Full-time
K-$250K base + performance bonus + equity potential.An established and growing manufacturing company based in Hutchinson, MN - within an hour's drive of the southwest Twin Cities suburbs including ...Show moreLast updated: 5 days ago
  • Promoted
Senior Manager of Information Technology

Senior Manager of Information Technology

CalabrioMinneapolis, MN, US
Full-time
Director of Information Technology.Calabrio is a customer experience intelligence company that empowers organizations to enrich human interactions. We deliver a cloud-first, AI-powered workforce per...Show moreLast updated: 30+ days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

GlocommsMinneapolis, MN, United States
Full-time
Glocomms is partnering with a fast growing health tech organization to search for a Lead Security Engineer to spearhead the design, implementation, and management of security systems that protect o...Show moreLast updated: 6 days ago
  • Promoted
Fractional Chief Information Officer (in-office & remote)

Fractional Chief Information Officer (in-office & remote)

ThriveonEden Prairie, MN, US
Remote
Full-time
As a Fractional CIO, you will serve as a strategic advisor to multiple mid-sized companies, aligning IT strategy with business goals. Youll guide executives on how to leverage technology for growth,...Show moreLast updated: 30+ days ago
  • Promoted
Director of Information Technology - Infrastructure and Cybersecurity

Director of Information Technology - Infrastructure and Cybersecurity

SJEMinneapolis, MN, US
Full-time
Director Of Information Technology - Infrastructure And Cybersecurity.We are looking for a Director of Information Technology to support our corporation. This role will work out of our Plymouth, MN ...Show moreLast updated: 30+ days ago
Traveling Electronic Security Systems Site Lead

Traveling Electronic Security Systems Site Lead

Evergreen Fire and SecurityMinneapolis, MN, US
Full-time
Quick Apply
Who We Are Evergreen Fire and Security (EFS) is a recognized leader in the life safety and security solutions industry.We are entrusted by the Federal Government and commercial customers to p...Show moreLast updated: 30+ days ago
  • Promoted
President & Chief Executive Officer

President & Chief Executive Officer

American Dental Education Association (ADEA)Saint Paul, MN, United States
Full-time
President & Chief Executive Officer.The Center for Victims of Torture (CVT).The Center for Victims of Torture (CVT) is a globally recognized leader in the field of torture rehabilitation and human ...Show moreLast updated: 29 days ago
  • Promoted
Director Technology - Network Security

Director Technology - Network Security

TargetBrooklyn Park, MN, US
Full-time
Pay is based on several factors which vary based on position.These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Tar...Show moreLast updated: 30+ days ago
  • Promoted
Director of Information Technology

Director of Information Technology

Hammer & NERWayzata, MN, US
Full-time
Systems Lead and Help Desk Manager.Must be willing and able to work flexible hours / days, (can work a hybrid schedule –remote and in-person). The Director of Information Systems Technology, rep...Show moreLast updated: 10 days ago
  • Promoted
Vice President of Information Technology - MnSCU Administrator-7

Vice President of Information Technology - MnSCU Administrator-7

Minnesota StateSaint Paul, MN, US
Full-time
Vice President of Information Technology - MnSCU Administrator-7.This position provides vision and leadership for information technology oversight and development. This includes planning, implementi...Show moreLast updated: 30+ days ago
  • Promoted
Vice President Compliance - Remote

Vice President Compliance - Remote

UnitedHealth GroupCircle Pines, MN, US
Remote
Full-time
Compliance Leadership Position.Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly imp...Show moreLast updated: 30+ days ago
  • Promoted
Chief Privacy Officer

Chief Privacy Officer

DanaherChaska, MN, US
Full-time
Beckman Coulter Diagnostics is proud to work alongside a community of five fellow Diagnostics Companies at Danaher.Together, we're working at the pace of change to improve patient lives with diagno...Show moreLast updated: 13 days ago
  • Promoted
Principal Information Security Engineer

Principal Information Security Engineer

GravieMinneapolis, MN, US
Full-time
Our mission is to improve the way people purchase and access healthcare through innovative, consumer-centric health benefit solutions that people can actually use. Our industry-changing product...Show moreLast updated: 12 days ago
  • Promoted
Chief Information Officer, Home & Community Care Solutions

Chief Information Officer, Home & Community Care Solutions

UnitedHealth GroupCircle Pines, MN, US
Full-time
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives.The work you do with our team will directly improve health outcomes by connect...Show moreLast updated: 30+ days ago
  • Promoted
UnitedHealthcare (UHCT) Chief Technology Officer

UnitedHealthcare (UHCT) Chief Technology Officer

UnitedHealth GroupCircle Pines, MN, US
Full-time
Chief Technology Officer (CTO).Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly imp...Show moreLast updated: 28 days ago
  • Promoted
Chief Operating Officer

Chief Operating Officer

SkyWater Search PartnersEden Prairie, MN, United States
Full-time
SkyWater Search Partners is excited to partner with a $1B AUM leading Broker / Dealer and Investment Advisor to find a new strategic and entrepreneurial Chief Operating Officer.This executive will be...Show moreLast updated: 5 days ago
  • Promoted
Lead Security Engineer (Minneapolis)

Lead Security Engineer (Minneapolis)

GlocommsMinneapolis, MN, United States
Full-time
Glocomms is partnering with a fast growing health tech organization to search for a Lead Security Engineer to spearhead the design, implementation, and management of security systems that protect o...Show moreLast updated: 6 days ago