Director of Cybersecurity

WME | William Morris EndeavorBeverly Hills, CA
$183,750 - $245,000

About The Position

The Director of Cybersecurity leads the cybersecurity program — setting strategy, owning the organization’s risk posture, and delivering executive- and board-level cyber-risk reporting. The role builds and leads the internal security team, manages security vendors and their SLAs, and directs incident response and cyber resilience across a global footprint. The Director reports to the VP, IT Infrastructure & Cybersecurity, with an independent line for cyber-risk reporting.

Requirements

  • 12+ years in cybersecurity, including 5+ years leading security teams at manager/director level, ideally in a global, high-profile, or media/entertainment enterprise.
  • Demonstrated ownership of an enterprise security program built on NIST CSF 2.0 (or ISO 27001) — governance, policy, control framework, and a multi-year maturity roadmap.
  • Track record building and leading an internal security function — hiring, developing, and retaining architects, engineers, and analysts — including insourcing functions from a managed provider (MSSP).
  • Executive- and board-level cyber-risk reporting; experience presenting to boards, audit/risk committees, and ownership or private-equity stakeholders, translating technical risk into business and financial terms.
  • Enterprise risk management and multi-jurisdiction regulatory literacy across a global footprint — SOX ITGC and global privacy regimes (GDPR, CCPA/CPRA, PIPL).
  • Proven vendor and contract management — negotiating and enforcing SLAs with MSSPs and holding them accountable to contracted obligations.
  • Incident-response leadership — has directed the organization’s response to a material security incident and owns cyber-resilience / BCP-DR direction.
  • Security-budget ownership — has built and defended a security operating budget and headcount business case.
  • Working architecture fluency across identity, cloud (Azure), data protection, and SASE — enough to direct architects and challenge technical designs.
  • Bachelor’s degree in a relevant field or equivalent experience; CISSP and/or CISM required.

Nice To Haves

  • Private-equity portfolio-company experience, including M&A security due diligence and post-close integration.
  • Media, entertainment, talent-representation, or high-net-worth-individual environment — elevated BEC/impersonation and privacy exposure.
  • Experience standing up an independent cyber-risk reporting line or remediating findings from an external security assessment or audit.
  • Experience insourcing security functions from a managed provider on a phased plan.
  • Advanced credentials — CRISC, CCISO, or an MBA / MS in cybersecurity.

Responsibilities

  • Set and own the cybersecurity strategy, program roadmap, and risk posture across a global footprint, anchored to NIST CSF 2.0.
  • Deliver executive- and board-level cyber-risk reporting.
  • Manage security vendors and contracts; define and enforce SLAs and hold partners accountable to contracted obligations.
  • Build and lead the internal security team and bring core security functions in-house from managed providers.
  • Direct incident response and cyber resilience, including business continuity and disaster recovery.
  • Establish cybersecurity governance, policy, and security-awareness programs.
  • Own the cybersecurity budget and headcount plan.

Benefits

  • health care
  • retirement
  • vacation
  • other paid time off
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service