Talent.com
Gogo
Director, Cyber SecurityGogo • Broomfield, CO, United States
No longer accepting applications
Director, Cyber Security

Director, Cyber Security

Gogo • Broomfield, CO, United States
10 days ago
Job type
  • Full-time
Job description

Director Of Cybersecurity

The Director of Cybersecurity is responsible for leading the enterprise's cybersecurity operations, incident response, and governance, risk, and compliance (GRC) programs. This role serves as a key member of the security leadership team, translating strategic security objectives into operational programs that protect the organization's information assets, infrastructure, and reputation. The Director will oversee a team of security professionals, manage the organization's security posture across threat detection, incident response, vulnerability management, and regulatory compliance, and serve as a trusted advisor to executive leadership on cyber risk.

Key Responsibilities

Incident Response & Security Operations

  • Own and continuously mature the enterprise incident response (IR) program, including playbooks, tabletop exercises, and post-incident reviews
  • Serve as incident commander for high-severity security incidents, coordinating cross-functional response efforts (Legal, Communications, IT, executive leadership)
  • Oversee Security Operations Center (SOC) functions, including threat detection, triage, containment, and remediation
  • Manage relationships with third-party incident response, digital forensics, and managed detection and response (MDR) providers
  • Lead root cause analysis and drive remediation of systemic vulnerabilities exposed by incidents
  • Establish and report on key incident metrics (MTTD, MTTR, containment time) to leadership and the board

Governance, Risk & Compliance (GRC)

  • Build and maintain the enterprise cybersecurity risk management framework, including risk registers, risk scoring methodologies, and treatment plans
  • Lead compliance efforts against applicable frameworks and regulations (e.g., NIST CSF/800-53, ISO 27001, SOC 2, PCI DSS, HIPAA, GDPR, FedRAMP, as applicable to the industry)
  • Manage internal and external audit engagements, including evidence collection, remediation tracking, and auditor liaison
  • Develop, implement, and maintain security policies, standards, and procedures
  • Oversee third-party/vendor risk management program, including security assessments and contract review
  • Partner with Legal and Privacy teams on regulatory obligations, breach notification requirements, and data protection matters
  • Present risk posture, compliance status, and program maturity to executive leadership, audit committee, and board of directors as needed

Technical Security Leadership

  • Direct vulnerability management program, including scanning, penetration testing coordination, and patch prioritization
  • Oversee identity and access management (IAM), endpoint detection and response (EDR), network security, and cloud security architecture in partnership with IT/engineering teams
  • Guide security architecture reviews for new systems, applications, and vendor integrations
  • Champion security awareness training and phishing simulation programs
  • Evaluate and recommend security tooling, technologies, and process improvements
  • Maintain threat intelligence awareness and translate emerging threats into actionable defensive measures

Leadership & Program Management

  • Build, mentor, and manage a high-performing cybersecurity team, including hiring, performance management, and professional development
  • Develop and manage departmental budget, including tooling, staffing, and professional services
  • Define and track KPIs/metrics demonstrating program effectiveness and maturity
  • Partner cross-functionally with IT, Legal, Privacy, Internal Audit, and business unit leaders to embed security into organizational processes
  • Support the CISO in developing and executing the enterprise security strategy and roadmap

Minimum Qualifications

  • 10+ years of progressive experience in cybersecurity, information security, or IT risk management, including demonstrated experience in incident response and GRC
  • 5+ years of people management or team leadership experience
  • Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience
  • Demonstrated experience building or maturing incident response programs and leading response to significant security events
  • Strong working knowledge of regulatory and compliance frameworks (NIST, ISO 27001, SOC 2, PCI DSS, and/or industry-specific regulations)
  • Hands-on familiarity with security technologies: SIEM, EDR/XDR, vulnerability management platforms, IAM, cloud security posture management (CSPM)
  • Experience managing third-party risk assessments and vendor security reviews
  • Excellent written and verbal communication skills, including experience presenting to executive leadership and boards
  • Proven ability to manage competing priorities in a fast-paced, evolving threat landscape

Preferred Qualifications

  • Master's degree (MBA, MS in Cybersecurity/Information Assurance, or related)
  • Relevant industry certifications: CISSP, CISM, CRISC, CISA, GCIH, GCFA, or equivalent
  • Experience in [industry-specific: aviation, financial services, healthcare, government contracting, etc.]
  • Experience with cloud security across AWS, Azure, and/or GCP
  • Familiarity with privacy regulations (GDPR, CCPA) and their intersection with security programs
  • Experience supporting SEC cybersecurity disclosure requirements (for public companies)

Core Competencies

Competency

Description

Incident Command

Ability to lead cross-functional response under pressure with clear decision-making

Risk-Based Thinking

Translates technical risk into business impact for non-technical stakeholders

Regulatory Fluency

Deep understanding of applicable compliance obligations and audit processes

Technical Credibility

Sufficient depth to guide architecture and tooling decisions with engineering teams

Executive Communication

Comfortable briefing C-suite, audit committee, and board-level audiences

People Leadership

Builds, retains, and develops security talent

Physical/Work Requirements

  • Ability to participate in on-call rotation for incident response as needed
  • Occasional travel for audits, conferences, or cross-site coordination (typically <15%)

Equal Pay Disclosure(s)

Base Pay: 180,000.00 - 225,000.00 USD Annual

Target Annual Short-Term Incentive: Bonus Plan at 20% (% of Annualized Base Pay)

Eligible for Incentive Stock Program: Yes

Benefits: Gogo offers competitive benefits including medical, dental and vision coverage with plans that can fit each employee's needs. We offer an immediate vesting 401k plan, paid time off and volunteer time off. Employees have the option to participate in an Employee Stock Purchase Plan. Visit the Careers page on our website for more information at

Gogo is an Equal Opportunity and Affirmative Action employer, working in compliance with both federal and state laws. We are committed to the concept of Equal Employment opportunity.

Qualified candidates will be considered for employment regardless of race, color, religion, age, sex, national origin, marital status, medical condition, or disability.

The EEO is the law and is available here. Gogo participates in E-Verify (English and Spanish). Right to Work Statement (English and Spanish).

Create a job alert for this search

Director, Cyber Security • Broomfield, CO, United States

Similar jobs

Cyber Insider Risk Manager

DeloitteDenver, CO, United States
Full-time

Deloitte is committed to providing reasonable accommodations for people with disabilities.If you require a reasonable accommodation to participate in the recruiting process, please direct your inqu... Show more

 • Promoted

Senior Cyber Engagements Lead

FINRADenver, CO, United States
Full-time

Senior Principal Risk Specialist, Cyber Engagements.About FINRA FINRA (Financial Industry Regulatory Authority) is the largest independent regulator of securities firms doing business in the United... Show more

 • Promoted

Vice President, Information Security

Procare SolutionsDenver, CO, United States
Full-time

Vice President, Information Security.For over 30 years, Procare Solutions has been dedicated to empowering early childhood educators by providing products and services that enable them to focus on ... Show more

 • Promoted

Director, National Security-Trade Controls

Alvarez & MarsalEnglewood, CO, United States
Part-time

National Security Risk Analyst.Alvarez & Marsal (A&M) is a global consulting firm with over 10,000 entrepreneurial, action and results-oriented professionals in over 40 countries.We take a hands-on... Show more

 • Promoted

Director of Capture Management - Space Warfighting

AstrionDenver, CO, United States
Full-time

Director Of Capture Management - Space Warfighting.LOCATION: Arlington, VA; Huntsville, AL; Denver, CO; Los Angeles, CA.CLEARANCE: TS/SCI Eligible (TS/SCI w/CI Poly preferred).TRAVEL: Up to 50% (De... Show more

 • Promoted

Security Engineering Manager

Medtronic PlcLafayette, CO, United States
Full-time

Careers that change lives start here.Medtronic is a global leader in healthcare technology with a Mission to alleviate pain, restore health, and extend life.Our 95,000 employees work across more th... Show more

 • Promoted

Security Lead - Industrial Control Systems (ICS)

ClifyXDenver, CO, United States
Full-time

Security Industrial Control Systems (ICS) Manager Southwest.Locations: Oklahoma City, AZ - Phoenix, CO - Denver, TX - Austin, TX - Dallas, TX Houston - Energy domain. Show more

 • Promoted

Advisory Director Client Relationship Executive Cyber & Risk

Grant Thornton LLPDenver, CO, United States
Full-time

Grant Thornton is seeking an Advisory Director Client Relationship Executive Cyber & Risk to join the team.Approved office locations can be found below.Grant Thornton is seeking an Advisory Direct... Show more

 • Promoted

Virtual Director of Sales - West, AI DLP, cybersecurity

Planet Green SearchDenver, CO, United States
Full-time

Virtual Director Of Sales - West, AI DLP, Cybersecurity.Our client is the first-ever data security platform that puts data loss prevention (DLP) and insider risk management (IRM) programs on autopi... Show more

 • Promoted

Strategic Account Manager - Cybersecurity and Risk Consulting

RSMDenver, CO, United States
Full-time

RSM US LLP is seeking to add a Strategic Account Manager to our Enterprise Sales Organization to focus on growing our cybersecurity and risk consulting practice.The Strategic Account Manager is res... Show more

 • Promoted

Director Technical Program Manager - Blue National Security

Blue OriginDenver, CO, United States
Permanent

At Blue Origin, we envision millions of people living and working in space for the benefit of Earth.We're working to develop reusable, safe, and low-cost space vehicles and systems within a culture... Show more

 • Promoted

Director of Enterprise Risk Management

Metropolitan State University of DenverDenver, CO, United States
Full-time

Director Of Enterprise Risk Management.The Director of Enterprise Risk Management (ERM) provides strategic leadership for the development, implementation, and ongoing enhancement of the institution... Show more

 • Promoted

Senior Director, Business Development - Intelligence Community

Loft Orbital FederalArvada, CO, United States
Full-time

Senior Director, Business Development - Intelligence Community.Loft Federal is committed to delivering the U.At Loft, we empower our team with autonomy, ownership, and bold problem-solving opportun... Show more

 • Promoted

Senior Director-Systems Integration - Power Generation

TallgrassDenver, CO, United States
Full-time

Systems Engineering & Integration Lead.We are seeking a Systems Engineering & Integration Lead to establish and lead systems engineering practices for complex technical and operational initiatives.... Show more

 • Promoted

Advanced Cyber Threat Response & Forensics Lead/Manager

DeloitteDenver, CO, United States
Full-time

Cyber Defense And Resilience Team Member.Deloitte's Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilitie... Show more

 • Promoted

Industrial Cybersecurity Senior Consultant

Black & VeatchEnglewood, CO, United States
Full-time

Industrial Cybersecurity Senior Consultant.Industrial Cybersecurity Senior Consultant manages or contributes to technical consulting projects and implementation services for critical infrastructure... Show more

 • Promoted

Director of Engineering

Georgia IT, Inc.Denver, CO, United States
Full-time

Location: Denver, CO Salary: $130k/yr Position Type: Contract Interview Process: Phone Followed by F2F.US Citizen, Green Card and GC EAD.Development, integration, testing and deployment of complex ... Show more

 • Promoted

Cyber Oracle Cloud Security Manager / Engineering Manager II

DeloitteDenver, CO, United States
Full-time

Cyber Oracle Cloud Security Manager / Engineering Manager II.Are you interested in working in a dynamic environment that offers opportunities for growth and new responsibilities? As an Engineering... Show more

 • Promoted

Information Security Project Manager../Denver, CO, 12+ Months

Suncap TechnologyDenver, CO, United States
Full-time

Disease Surveillance Technology Solutions Manager.The position is responsible for strategic design, development, management, implementation, and evaluation of disease surveillance technology soluti... Show more

 • Promoted

Sr Director, Enterprise Applications

Sierra SpaceEnglewood, CO, United States
Full-time

At Sierra Space, we build the missions and systems that keep our world secure in the domain above Earth.Sierra Space team members share a spirit of innovation and collaboration and a belief that we... Show more