Chicago, Illinois, United States
14 hours ago
Director - Data Protection & Insider Threat
Description

Find your future at United! We’re reinventing what our industry looks like, and what an airline can be – from the planes we fly to the people who fly them. When you join us, you’re joining a global team of 100,000+ connected by a shared passion with a wide spectrum of experience and skills to lead the way forward.

Achieving our ambitions starts with supporting yours. Evolve your career and find your next opportunity. Get the care you need with industry-leading health plans and best-in-class programs to support your emotional, physical, and financial wellness. Expand your horizons with travel across the world’s biggest route network. Connect outside your team through employee-led Business Resource Groups.

Create what’s next with us. Let’s define tomorrow together.

We believe that inclusion propels innovation and is the foundation of all that we do. Join our Cybersecurity and Digital Risk (CDR) team to help lead the industry in cyber safety, security and resilience. United's CDR team plays a critical role in protecting our operations by enabling secure and resilient systems, managing threats and vulnerabilities and ensuring swift response and recovery. Our mission is to seamlessly embed cybersecurity and digital risk management into every aspect of our business. We help drive progress and growth through trusted digital solutions, safeguarding assets and empowering our team, all while promoting a cyber-safe and secure environment that supports resilient airline operations.

Key Responsibilities:

We are in search of an innovative and driven leader to further incubate and grow key new capabilities for the Cyber Defense organization as the Director of Data Protection & Insider Threat.

In this multi-functional role, the Director will be responsible for preventing, detecting, analyzing, and responding to cyber-related incidents in these key areas, against United. You will need to implement and enforce standard processes in data loss prevention policies, controls, processes, and technologies; ensure compliance with cybersecurity policies and regulations to protect our data, assets, and operations; continually assess and implement key cybersecurity initiatives to safeguard our infrastructure and operations- and perform all of this while keeping in mind our business strategies, goals, missions, and objectives.

The Director is expected to help identify and respond to events and incidents associated with data loss, as well as partnering with collaborators across the enterprise to reduce risk. This leader will not only be the face of the organization, but the uber-Incident Commander for any major incident. This will be a critical and very high-profile role.

Lead the Data Protection & Insider Threat team. Attract, Hire, and Retain top talent for the organization; Coach and mentor individuals at all levels of the organization, demonstrating tangible results and growth in your peopleDesign, develop and scale processes for an automated programEnsure up to date plans and playbooks exist, and are consistently followed, tested, and refinedLeverage and operationalize existing security investments while identifying gaps in our defenses. Recommend new technologies, as relevant.Perform as the uber-Incident Commander for any major event or incident. Drive towards resolution across all partners while ensuring communication is delivered in a manner understandable by non-technical audiencesDefine and develop metrics program to track maturity, evolution, and health of the program over timeWork with internal/external partners such as law enforcement, human resources, legal, business units, and morePartner with Privacy counsel in optimizing data protection and privacy operations to ensure appropriate digital rights managementCreate and define interlocks between internal and external team members and ensure those interlocks remain in working order and are consistently tested

This position is remote and would require approximately 25% travel.

United values diverse experiences, perspectives, and we encourage everyone who meets the minimum qualifications to apply. While having the “desired” qualifications make for a stronger candidate, we encourage applicants who may not feel they check ALL of those boxes! We are always looking for individuals who will bring something new to the table!

QualificationsWhat’s needed to succeed (Minimum Qualifications): Bachelor's degree or 4 years of relevant work experience (STEM)12+ years of related work experience5+ years leading and mentoring teams to their highest potential4+ years of demonstrable experience identifying and remediating cybersecurity, technology, or operational risks related to dataProven track record to make decisions in a timely mannerBoth a doer and leader who can operate at a granular level on data protection and work across high levels of the organizationAble to adjust style to meet the needs of the audience, incorporate business core drivers, apply systems thinking, and have a bias for actionExpert-level understanding of all aspects of data protection and insider threat to include communication, legal, public relations, playbooks, forensics, hunting, detection technologies, intelligence, attack lifecycles, and moreDevelop and implement roadmaps for cybersecurity initiativesPrevent, manage, and mitigate cybersecurity incidents; identify, analyze, and resolve problemsSuperior communication skills (including to non-technical audiences); high emotional intelligence; agilityEnthusiastic about cybersecurity, technology, and protecting United’s digital footprintKnowledge of applicable laws, regulations, standards, and frameworks (PCI, Data Privacy Laws, IOS27001/2, NIST, HITRUST, CIS, etc.)Must be legally authorized to work in the United States for any employer without sponsorshipWhat will help you propel from the pack (Preferred Qualifications):Master's degree (Cybersecurity, Information Technology)Security industry credential such as Certified Information Systems Security ProfessionalDemonstrable ability to operate at immense scale

United Airlines is an equal opportunity employer. United Airlines recruits, employs, trains, compensates and promotes regardless of race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status and other protected status as required by applicable law. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions. Please contact JobAccommodations@united.com to request accommodation.

 


The base pay range for this role is $171,475.00 to $233,640.00.
The base salary range/hourly rate listed is dependent on job-related, non-discriminatory factors such as experience, education, and skills. This position is also eligible for bonus and/or long-term incentive compensation awards.

You may be eligible for the following competitive benefits: medical, dental, vision, life, accident & disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) and flight privileges.

United Airlines is an equal opportunity employer. United Airlines recruits, employs, trains, compensates and promotes regardless of race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status and other protected status as required by applicable law. Equal Opportunity Employer - Minorities/Women/Veterans/Disabled/LGBT.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions. Please contact JobAccommodations@united.com to request accommodation.
Confirm your E-mail: Send Email