Deputy Chief Information Security Officer (Deputy CISO)
Howmet Aerospace · Pittsburgh, PA · Yesterday
Hybrid$8.3/hrFull-time
Responsibilities
- Support the CISO in developing and executing the global cybersecurity strategy aligned to business, engineering, and manufacturing priorities.
- Lead enterprise security governance, risk management, and compliance programs across multiple regions and regulatory environments.
- Drive adoption of security frameworks such as NIST 800-171, NIST CSF, ISO 27001, CMMC, NIS2 and aerospace/defense-specific requirements (e.g., ITAR, DFARS, EAR).
- Serve as acting CISO when required, including executive briefings, board presentations, and crisis leadership.
- Partner with CISO to oversee global Security Operations Center (SOC), threat intelligence, incident response, and digital forensics capabilities, cyber investigations, Data Loss Prevention, and cyber architecture and maintain cybersecurity regulatory/legal requirements.
- Ensure rapid detection, containment, and remediation of cyber threats targeting manufacturing systems, OT/ICS environments, R&D networks, and supply chain partners.
- Lead development of advanced defense capabilities including zero trust architecture, identity security, and endpoint/OT protection.
- Direct enterprise cyber risk assessments, supplier security evaluations, tabletop and penetration testing and compliance audits across global operations.
- Partner with Legal, Compliance, Information Technology, and Export Control teams to ensure adherence to aerospace and defense regulatory requirements.
- Oversee third-party risk management, ensuring secure collaboration with suppliers, contractors, and joint-venture partners.
- Collaborate with engineering and manufacturing leaders to embed security into product design, avionics systems, and industrial control systems.
- Lead security programs for factory automation, robotics, additive manufacturing, and other advanced aerospace production technologies.
- Ensure secure integration of IT/OT systems and protection of proprietary aerospace designs and intellectual property.
- Mentor and develop global cybersecurity leaders and technical teams.
- Build strong partnerships with business units, engineering, operations, and executive leadership.
- Represent the cybersecurity function with regulators, government agencies, defense customers, and industry partners.
Qualifications
- Bachelor's in cybersecurity, engineering, computer science, or related field
- 10+ years of progressive experience in cybersecurity, including leadership roles in large, complex, global organizations
- Deep expertise in security governance, risk management, incident response, and regulatory compliance
- Experience securing OT/ICS environments, manufacturing systems, or aerospace/defense technologies
- Strong knowledge of NIST, ISO, CMMC, DFARS, ITAR, and other relevant frameworks
- Proven ability to lead large teams, manage crises, and influence senior executives
- Ability to operate effectively in a high-security, export-controlled environment