Jobs · Information Technology · Pennsylvania

Director, Information Security

Crown Holdings, Inc. · Yardley, PA · 2 wk ago
Information TechnologyFull-time

About the role

Crown Holdings, Inc. is a global leader in packaging solutions, operating across more than 40 countries with over 23,000 employees. The Information Security Director is a senior leadership role responsible for executing and operationalizing Crown’s global cybersecurity program across multiple domains, including Security Operations, Operational Technology (OT), Vulnerability Management, Governance, Risk, Compliance, and Security Training and Awareness.

Reporting to the CISO, this role focuses on maturing and managing cybersecurity capabilities and processes that protect Crown’s revenue and employees. The leader translates enterprise security strategy into practical roadmaps, operating processes, and measurable outcomes, partnering closely with IT, legal, and key stakeholders to strengthen detection and response capabilities, improve security engineering practices, and support regulatory and policy requirements.

This role offers significant opportunity to broaden enterprise impact and assume increasing leadership responsibility, with a global remit and responsibilities spanning:

  • Security Operation Center (SOC)
  • Governance, Risk, and Compliance (GRC)
  • Training and Awareness
  • Vulnerability Management (VM)
  • Operational Technology (future expansion to oversee plant operations)

Responsibilities

  • Provide end-to-end ownership of cybersecurity program execution across multiple functional areas.
  • Lead and mature cybersecurity capabilities, including security operations, vulnerability management, governance, risk, compliance, and security training and awareness.
  • Translate enterprise security strategy into practical roadmaps, operating processes, and measurable outcomes.
  • Partner with IT, legal, and key stakeholders to strengthen detection and response capabilities, improve security engineering practices, and support regulatory and policy requirements.
  • Manage cybersecurity resources, investments, and budgets in a complex enterprise environment.
  • Oversee Crown’s security training and awareness program.
  • Serve as a key thought partner to the CISO and an extension of the function’s leadership.
  • Drive continuous improvement in control effectiveness while supporting enterprise priorities and governance practices.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or related field, or equivalent practical experience.
  • 10 or more years of progressive experience in cybersecurity, information security, technology risk, or related technology leadership roles.
  • Demonstrated leadership across multiple cybersecurity domains such as security operations, security engineering, vulnerability management, compliance, governance, or incident response.
  • Experience managing cybersecurity programs, teams, vendors, budgets, and delivery roadmaps in a complex enterprise environment.
  • Working knowledge of security frameworks and practices such as NIST, ISO 27001, CIS Controls, incident response, vulnerability management, identity security, cloud security, and audit support.
  • Effective communication skills with the ability to present operational issues, program status, and recommendations clearly to technical and non-technical stakeholders.

This role requires collaboration, teamwork, and face-to-face interaction with colleagues, leaders, and clients, with an expectation of in-office presence to ensure access to necessary resources and timely decision-making.

Benefits

  • Strong engagement and commitment to employee safety.
  • Opportunity to build a meaningful career with professional and personal development through training and work experiences.
  • Inclusive work environment valuing and respecting each individual as part of Crown’s Twentyby30™ program.

Similar jobs