Cybersecurity Director

Cummins•United States,
•$180,600 - $265,000•Remote

About The Position

We are seeking an experienced Cybersecurity Director to be responsible for the global strategy, leadership, and maturity of Application Security, Vulnerability Management, Cloud Security, and Penetration Testing. The role identifies and evaluates cybersecurity exposures across applications, infrastructure, cloud environments, products, and technology platforms and partners with the organizations responsible for mitigating those risks. This role is offsite remote. The Director works closely with Global Cyber Security Governance, Risk & Compliance (GRC) and other stakeholders to enable the communication and prioritization of technical security findings into business risk, influence enterprise risk prioritization, strengthen compliance and control frameworks, and provide measurable evidence of risk reduction. The role also maintains a strong understanding of Frontier AI and emerging technologies, helping the organization securely adopt AI capabilities while identifying opportunities to use AI to improve cybersecurity effectiveness, automation, and risk management.

Requirements

  • College, university, or equivalent degree in Computer Science, Information Technology, Engineering, or related subject, or relevant equivalent experience required.
  • Understanding of the capabilities and configuration of industrial cybersecurity controls and solutions across multiple facets; for example: asset management, vulnerability management, anomaly detection, identity and access management, network security, endpoint security, application security, IDS/IPS, deep packet inspection, SIEM, data analytics, security and/or risk management and product development.
  • This position may require licensing for compliance with export controls or sanctions regulations.

Nice To Haves

  • Global Information Assurance Certification (GIAC) Security Essentials Certification, GIAC Security Leadership Certification, Information Systems Audit and Control Association (ISACA) Certified Information Security Manager, Microsoft Certified Systems Engineer: Security, or Certified Information Systems Security Professional (CISSP) certification preferred.

Responsibilities

  • Champion the global Application Security oversight program and security-by-design practices.
  • Partner with stakeholder to integrate security into product development, SDLC, DevSecOps, and application processes.
  • Oversee the analysis of application security finding and vulnerability identification and prioritization.
  • Partner with Product, Engineering, Platform teams to prioritize and remediate application risk.
  • Lead enterprise vulnerability identification, prioritization, remediation, and validation.
  • Establish risk-based prioritization using exploitability, threat intelligence, and exposure.
  • Provide vulnerability intelligence to GRC to support enterprise cyber risk decisions.
  • Identify systemic and recurring vulnerabilities requiring broader corrective action.
  • Lead the global Cloud Security strategy and security requirements.
  • Identify and manage risks across cloud infrastructure, workloads, identities, configurations, applications, and data.
  • Partner with Cloud, Infrastructure, Architecture, Product, and Engineering organizations to reduce cloud risk.
  • Integrate cloud security risk into enterprise cyber risk management and prioritization processes and platforms.
  • Develop the penetration testing service offering in cooperation with Internal Audit and other stakeholders.
  • Validate vulnerabilities and security controls through penetration testing and red team exercises.
  • Identify exploitable attack paths and systemic security weaknesses by partnering with purple team partners.
  • Provide evidence-based assessments and validate remediation through oversight of Pen Test reporting.
  • Partner with Cyber GRC to translate technical security findings into business risk.
  • Develop methodologies, metrics, and indicators that improve cyber risk prioritization.
  • Provide technical input into risk assessments, policies, controls, compliance, and risk acceptance decisions.
  • Support identification and escalation of material cyber risks.
  • Ensure remediation accountability remains with the appropriate Product, Technology, or Business owner.
  • Maintain a working understanding of Frontier AI, AI agents, emerging AI architectures, and associated cybersecurity risks.
  • Partner with AI, Product, Data, Engineering, and GRC organizations to support secure AI adoption.
  • Identify opportunities to leverage AI for vulnerability prioritization, security testing, risk analysis, automation, and cyber defense.
  • Help incorporate emerging AI risks into cybersecurity and enterprise risk frameworks.
  • Lead globally through influence, partnership, and accountability, working across Cyber Security, GRC, Product, Engineering, Cloud, Infrastructure, IT, and business organizations.
  • Effectively translate technical cybersecurity issues into business risk and actionable decisions, balancing security requirements with business priorities, operational needs, cost, and innovation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service