Sr. Director of Information Security Job at Aspira Connect, Dallas, TX

QkNhSkhaa2REb1h0TTFyMFdIQi9ZYmlwOWc9PQ==
  • Aspira Connect
  • Dallas, TX

Job Description

Sr. Director, Information Security

Aspira | IT Operations

About Aspira

For more than 40 years, Aspira has been the market-leading provider of software and services that help public agencies protect natural and cultural resources while making them accessible for all. Our platform supports everything from campground reservations to hunting licenses, helping millions of people discover, enjoy, and care for the outdoors.

We share our client partners’ mission: to steward resources for future generations, create opportunities for genuine enjoyment of the outdoors today, and expand access so more people can experience its benefits.

Aspira is transforming its technology and service model to give agencies more capacity and insight—streamlined tools, smarter automation, and better connections with their communities. Our goal is simple: make it easier for our clients to conserve what matters most and for their customers to enjoy it to the fullest.

 

The Ideal Candidate

The Director of Information Security is responsible for building and leading Aspira’s global information security program across cloud, on-premises, and hybrid environments. Reporting to the VP of Technology Operations, this leader will manage the Security Analyst, Senior Security Cloud Network Engineer, and Senior Security System & Network Engineer roles.

This role offers significant influence in shaping Aspira’s security strategy and close partnership with the VP of Technology Operations and executive team. It requires a hands-on executive technical leader who can both set strategic direction and dive deep into incident response, cloud security, and network defense. The Director will mature Aspira’s monitoring, threat response, and compliance posture while partnering closely with Technology, Product, and Engineering teams.

Key Responsibilities

Security Strategy & Leadership

  • Develop and execute Aspira’s enterprise information security strategy, aligned with business goals and regulatory requirements.
  • Develop and execute Aspira’s information security roadmap, aligned with Tech Ops goals and enterprise strategy.
  • Lead the design and enforcement of security standards across AWS, Azure integrations, and on-premises systems within the US and abroad
  • Provide security risk reporting and metrics to VP Tech Ops and executive leadership
  • Manage and mentor the security team (Analyst, Sr. Cloud Security Engineer, Sr. Network Security Engineer).
  • Represent security within Aspira’s Technology Operations leadership team.
  • Establish KPIs and metrics for security maturity, resilience, and incident response performance.

Cloud & Network Security Oversight

  • Oversee cloud security architecture for AWS-native services (VPCs, Transit Gateway, Direct Connect, GuardDuty, WAF, Network Firewall).
  • Direct firewall and VPN management across Palo Alto (Panorama), Cisco Meraki, and hybrid environments.
  • Ensure secure hybrid connectivity across AWS, Azure, and global office sites.
  • Champion zero-trust principles across endpoints, applications, and networks.

Security Operations & Incident Response

  • Lead the monitoring and incident response program, integrating AWS CloudWatch, CloudTrail, Security Hub with Rapid7, LogRhythm, and log monitoring pipelines.
  • Define incident response playbooks and coordinate Tier 2/3 escalations.
  • Oversee forensic investigations, root cause analysis, and lessons learned after security events.
  • Partner with IT Ops and DevOps to ensure timely remediation of vulnerabilities.

Governance, Risk & Compliance

  • Ensure compliance with NIST, PCI DSS, CIS Benchmarks, SOC2, and insurer-driven security baselines (e.g., MFA enforcement).
  • Drive risk assessments, security audits, and penetration testing.
  • Own responses to customer/vendor security reviews, insurer security questionnaires, and regulatory audits.
  • Maintain documentation for policies, controls, and audit reporting.
  • Define and measure security KPIs, including Mean Time to Respond (MTTR) for incidents, percentage of assets onboarded into SIEM monitoring, and SLA compliance for vulnerability patching.

Automation & Continuous Improvement

  • Lead automation of security operations using Terraform, Ansible, and CloudFormation.
  • Implement CI/CD security integrations to support DevSecOps practices.
  • Track KPIs for detection coverage, incident response times, and vulnerability remediation.
  • Partner with DevOps and engineering to embed DevSecOps practices in the software lifecycle.
  • Optimize SIEM and log ingestion pipelines to achieve full visibility across servers, endpoints, and laptops.

Qualifications

  • 8+ years in IT and security, including senior leadership in cloud and network security.
  • Proven expertise in AWS security services, SIEM platforms (Rapid7/LogRhythm), Palo Alto/Meraki firewalls, and hybrid connectivity.
  • Proven experience securing AWS-first environments (VPCs, Security Hub, GuardDuty, WAF, Network Firewall) and hybrid global networks.
  • Strong background in incident response, log analysis, and forensic investigation.
  • Deep understanding of security frameworks and compliance standards (NIST, PCI DSS, SOC2, CIS).
  • Hands-on automation/scripting experience with Terraform, Ansible, Python, or PowerShell.
  • Certifications are strongly preferred: CISSP, CISM, AWS Security Specialty, PCNSE, CCNP Security.

Job Tags

Work at office,

Similar Jobs

Ernst & Young Advisory Services Sdn Bhd

Hybrid Salesforce Solution Architect Manager Job at Ernst & Young Advisory Services Sdn Bhd

 ...A global consulting firm is seeking an experienced Salesforce.com Solution Architect to lead enterprise implementations. This role requires 4-6 years of experience and a proven track record in Salesforce configurations and integrations. The ideal candidate must possess... 

Dynamics ATS

General Shop Helper Job at Dynamics ATS

 ...of specific and general safety policies and procedures as relates to the plant and the position is preferred Ability to use basic hand tools, power tools, tape measure, grinders, and saws safely Strong and clear communication skills ability to give clear... 

Eco Recovery Solutions

Plant Operator (P) Job at Eco Recovery Solutions

We're Eco Recovery Solutions.We recover the metals from the waste-to-energy process so they can be upgrade and reused to support our circular economy. Think you have what it takes to join us? Find out! We're looking for talented operators to join our growing team....

Rinvio Recruitment

Maintanence Mechanic - Second Shift (Food Manufacturing) Job at Rinvio Recruitment

 ...flow.**Knowledge, Skills, and Experience** - A High School Diploma or GED is mandatory. - 3-5 years of hands-on experience in food processing, specifically in the troubleshooting and repair of high-tech production equipment with advanced control systems is... 

Las Vegas Area Post-Acute Care Practice

Wound Care Physician in Las Vegas, NV Job at Las Vegas Area Post-Acute Care Practice

 ...Join TeamHealth's high-performing post-acute care team in Las Vegas, Nevada. This is an excellent opportunity as a physician to provide quality wound care by rounding on adults at skilled nursing facilities. We ask that you be board certified in family medicine (FM),...