Assistant Director - Identity, Access & Data Security
1 month ago
Philadelphia
Job DescriptionOverview A highly respected, mission-driven organization is seeking an Assistant Director of Identity, Access & Data Security to lead the strategy, design, and execution of enterprise-wide identity and data protection capabilities. This is a senior leadership role with broad organizational visibility, responsible for advancing a modern, identity-centric security program aligned to Zero Trust principles. The position requires a balance of strategic leadership and deep technical expertise, with direct influence across infrastructure, cloud, application, and data domains. The Assistant Director will serve as a key advisor to security and IT leadership, ensuring that identity and data security controls are not only well-designed, but operationally effective, scalable, and aligned with business objectives. Key Responsibilities Enterprise Identity & Access Strategy • Define and lead the enterprise identity and access security strategy across on-premises, cloud, and SaaS environments, • Establish identity as a foundational control plane within a Zero Trust architecture, • Oversee the design, maturity, and continuous improvement of IAM capabilities, including:, • Identity lifecycle management (Joiner/Mover/Leaver), • Role-based access and entitlement governance, • Privileged Access Management (PAM/PIM), • Access certification and continuous validation processes, • Drive reduction of identity-based risk, including over-privileged access and attack path exposure, • Partner with architecture, cloud, and engineering teams to embed identity controls into system designData Security & Governance Leadership, • Lead the governance and protection of sensitive and regulated data through identity-aware security controls, • Establish enterprise standards ensuring data access is:, • Transparent and auditable, • Appropriately provisioned and justified, • Continuously monitored and reviewable, • Collaborate with application and data platform teams to implement scalable and sustainable data protection strategies, • Support detection, monitoring, and response related to inappropriate access or misuse of privileged dataSecurity Platforms & Operational Excellence, • Provide executive oversight and hands-on leadership across critical security platforms, including IAM/IGA, PAM, SaaS security, vulnerability management, and ITSM tools, • Drive platform integration, interoperability, and data flow to enable cohesive security operations, • Ensure security controls produce actionable intelligence and audit-ready evidence, • Champion automation and process optimization to reduce operational risk and improve efficiencyRisk, Framework Alignment & Audit Readiness, • Partner with security leadership and audit stakeholders to support enterprise security assessments, • Translate findings into prioritized, risk-based remediation strategies, • Ensure alignment with leading frameworks (e.g., NIST CSF, NIST 800-53, ISO 27001, CIS Controls), • Strengthen the organization's ability to demonstrate control effectiveness through defensible, system-generated evidenceGovernance, Policy & Control Effectiveness, • Contribute to the development and evolution of identity, access, and data security policies and standards, • Oversee control design, validation, and continuous improvement, • Ensure controls are scalable, measurable, and aligned with regulatory and organizational requirementsLeadership & Cross-Functional Influence, • Serve as a trusted advisor to senior IT and business stakeholders, • Communicate complex security risks in clear, actionable terms, • Influence enterprise initiatives related to identity modernization, cloud transformation, and data security, • Provide leadership and mentorship while remaining engaged in key technical decisions and executionQualifications, • 8+ years of progressive experience in information security, identity and access management, or security engineering, • Demonstrated experience leading enterprise IAM and data security initiatives, • Deep expertise in:, • Identity governance and administration (IGA), • Privileged access management (PAM/PIM), • Identity-based threat models and attack paths, • Data access governance and protection strategies, • Zero Trust architecture principles, • Experience working closely with executive leadership, audit, and risk stakeholders, • Strong ability to translate strategy into practical, operational outcomes, • Hands-on, execution-oriented mindset with leadership capabilityCompensation & Benefits, • Base salary: $160,000 – $180,000, • Generous paid time off, including 20+ vacation days, holidays, and sick time, • Pension program providing lifetime retirement income, in addition to 403(b) matching, • Comprehensive and cost-effective medical, dental, and vision coverage