Sherwin-Williams logo

Senior Director, Cybersecurity Architecture

Sherwin-Williams
14 hours ago
Full-time
On-site
Cleveland, Ohio, United States
Description

The Sr. Director, Cybersecurity Architecture is the senior leader responsible for enterprise cybersecurity architecture, solution design, and architecture governance across cloud, identity, network, endpoint, application, data, and detection domains. This role is a member of the Enterprise Risk & Resiliency Senior Leadership Team and helps shape organizational priorities, operating direction, and investment decisions across the function. 

This role sets standards and reusable patterns, leads architecture reviews for major initiatives, and partners with business and technology teams to deliver secure, scalable, and practical solutions aligned to enterprise risk priorities. It also serves as the people leader for the architecture organization, with clear accountability for team structure, talent development, succession planning, and day-to-day leadership of the function. 

Reporting to the CISO, this leader manages and develops a team of security architects and engineers and serves as a trusted advisor on tradeoffs involving risk, cost, performance, resiliency, and user experience. Success in the role requires strong people leadership, cross-functional influence, and active participation in Enterprise Risk & Resiliency leadership discussions, planning, and decision making. 



Responsibilities

Success in this role requires an authentic people leader with strong leadership presence, cross-functional influence, and budget experience, with the ability to balance team development, hands-on leadership across diverse security and risk functions, and collaboration with senior business leaders. This leader will provide the vision and direction needed to advance the organization’s future-state objectives in alignment with Enterprise Risk and Resiliency goals. The individual will also work closely with peers to understand business and technology priorities and align those drivers with the organization’s broader strategy.

 

  • Lead and develop a diverse team of Cybersecurity professionals in support of a Global Fortune 200 company.
  • Own the enterprise cybersecurity architecture framework, standards, reference architectures, and design guardrails.
  • Manage across organizations and influence both business and Information Technology professionals.
  • Develop, manage, and operate end user security organizations and programs.
  • Lead architecture and design reviews for major programs, significant changes, and high-risk initiatives.
  • Ensure solution designs align with enterprise strategy, risk appetite, policy requirements, and long-term architecture direction.
  • Support the company’s ability to detect, respond and recover from Cyber and Cyber related incidents.

 

CAPABILITIES

  • Security Architecture Strategy, Roadmap, and Future-State Transformation
  • Enterprise Cybersecurity Architecture Leadership
  • People Leadership and Organizational Development
  • Financial Planning, Budget Management, and Investment Prioritization
  • Cross-Functional Leadership and Executive Influence
  • Security-by-Design, Secure Engineering, and Application Security Architecture
  • Cloud Security Architecture (AWS, Azure, OCI)
  • Identity, Access, and Zero Trust Architecture
  • Security Operations Architecture Alignment
  • Security Platform Rationalization and Optimization
  • Network and Infrastructure Security Architecture
  • Data Protection and Information Security Architecture
  • Technology Standards, Reference Architectures, and Architecture Governance
  • Cyber Risk Reduction and Security Control Integration
  • M&A Security Architecture Integration
  • Cyber Risk and Exposure Reduction Strategy
  • Emerging Technology and AI Security Risk Management
  • Business Aligned Security Architecture and Stakeholder Engagement

 

This is a remote position. 

This position is not eligible for sponsorship for work authorization now or in the future, including conversion to H1-B visa.  Must be legally authorized to work in the country of employment without needing sponsorship for employment work visa status now or in the future.

 Job duties include contact with other employees and access confidential and proprietary information and/or other items of value, and such access may be supervised or unsupervised. The Company therefore has determined that a review of criminal history is necessary to protect the business and its operations and reputation and is necessary to protect the safety of the Company’s staff, employees, and business relationships.

 Must be eighteen years or older



Qualifications

FORMAL EDUCATION

Required: 

  • Bachelor’s Degree (or foreign equivalent) or in lieu of a degree, at least 12 years in experience in the field of Information Technology, Cybersecurity or Business (work experience or a combination of education and work experience in the field of Information Technology or Business) 

 Preferred: 

  • Master’s degree in Computer Science, Cyber Security, Information Technology, Risk Management, or related field; or equivalent experience 
  • Certified Information Systems Security Professional (CISSP) 
  • Cybersecurity certification (e.g., CEH, CISA, CISM, CCSP, etc.) 

 

KNOWLEDGE & EXPERIENCE: 

Required: 

  • 12+ years’ experience leading security operations and engineering organization  
  • 10+ years leading direct reports. 
  • 7+ years of leading experience in security operations center processes and systems  
  • Working knowledge of AWS, Azure, Security Operations Technology  
  • 7+ years of experience in monitoring and vulnerability & threat management technologies as well as threat intelligence services and practices 
  • Demonstratable experience with security information and event management (SIEM) systems 
  • Commitment to fostering a culture of inclusion and diversity. 

 

Preferred: 

  • 10+ years working in the Manufacturing or Consumer Products industry 
  • 7+ years of experience with incident response 
  • 3+ years’ experience leading a large team of 25+ direct and indirect reports) preferred. 
  • Strong understanding of emerging Cyber technologies, and industry best practices around policies and controls 

 

TECHNICAL/SKILL REQUIREMENTS:

Required:

  • Experience leveraging Open-Source security tools 
  • Demonstrated superior analytical skills, applying conceptual models, recognizing patterns while drawing and defending conclusions 
  • Strong business and financial acumen as well as analytical skills  
  • Clear and concise verbal and written communication 
  • Ability to lead through influence, including at executive levels 

  

Preferred: 

  • Experience automating security tasks via scripting  
  • Knowledge of Windows Endpoints, Mac Endpoints, Cloud Networking