About The Position

Austin Industries is one of the nation’s largest, most diversified U.S.-based construction companies with more than 7,000 employee-owners. They provide civil, commercial, and industrial construction services through their operating companies: Austin Bridge & Road, Austin Commercial, and Austin Industrial. Austin Industries is seeking a Director of Information Security for their corporate headquarters in Dallas, Texas. This strategic leadership role involves directing the company’s Network and Cybersecurity teams and advancing a mature, risk-based cybersecurity program. The Director will report to the CIO, define and execute the enterprise security roadmap, rationalize existing security tools and processes, and continuously reduce cybersecurity risk across the organization. The role requires a strong balance of strategic thinking, technical depth, people leadership, and communication skills, with the expectation to inspire high-performing teams, build trust and security awareness, and confidently present cybersecurity topics to various audiences, including executive leadership and the Board of Directors.

Requirements

  • Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field (or equivalent experience).
  • 10+ years of progressive experience in cybersecurity, with demonstrated leadership over security and/or network teams.
  • Proven experience developing and executing enterprise cybersecurity strategies and roadmaps.
  • Strong understanding of cybersecurity frameworks and best practices (e.g., NIST, ISO 27001, CIS, zero trust).
  • Demonstrated success rationalizing security tools and simplifying complex security environments.
  • Exceptional communication skills with the ability to engage technical and non-technical audiences, including executives and board members.
  • Applicants must be legally authorized to work for ANY employer in the United States. Austin Industries is unable to sponsor or take over sponsorship of an employment visa for this position.

Nice To Haves

  • Advanced degree (MBA, MS in Information Security, or similar).
  • Industry certifications such as CISSP, CISM, CRISC, or equivalent.
  • Experience supporting regulated or risk-sensitive industries.
  • Prior experience presenting cybersecurity risk at the board or audit committee level.

Responsibilities

  • Develop, maintain, and execute a multi-year cybersecurity roadmap aligned with business objectives and enterprise risk tolerance.
  • Lead the ongoing maturation of the cybersecurity program, shifting from reactive controls to proactive, risk-based security practices.
  • Identify, assess, and prioritize cybersecurity risks; implement mitigation strategies to measurably reduce risk across the enterprise.
  • Establish and track key security metrics and KPIs to demonstrate program effectiveness and inform executive decision-making.
  • Evaluate and rationalize current cybersecurity tools, platforms, and vendors to reduce redundancy, complexity, and cost.
  • Drive standardization, optimization, and integration of security technologies across the environment.
  • Ensure security solutions scale with business growth and evolving threat landscapes.
  • Direct and mentor the Network and Cybersecurity teams, fostering a culture of accountability, continuous improvement, and operational excellence.
  • Build, develop, and retain high-performing security professionals through coaching, career development, and succession planning.
  • Align team priorities and workloads with strategic outcomes rather than reactive task completion.
  • Establish security governance frameworks, policies, and standards that are practical, clearly communicated, and consistently enforced.
  • Build trust and strong partnerships with IT, Legal, People, Operations, and business leadership.
  • Lead enterprise-wide security awareness and education initiatives to elevate cybersecurity literacy and shared responsibility.
  • Prepare and deliver clear, concise, and impactful presentations to all levels of the organization, including: New hire and employee security awareness sessions, Executive leadership briefings, Board of Directors and Audit Committee presentations.
  • Translate complex technical risks into business-relevant language focused on impact, likelihood, and mitigation.
  • Oversee cybersecurity incident response planning, tabletop exercises, and post-incident reviews.
  • Ensure the organization is prepared to detect, respond to, and recover from cybersecurity incidents with minimal business disruption.

Benefits

  • medical
  • dental
  • life and disability insurance
  • matching 401K plan
  • 100% Employee-Owned Company (ESOP)
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service