Vice President, Information Security Strategy, Engineering, and Architecture

Disney Disney · Media · Burbank, CA +4

This role is for a Vice President of Information Security Strategy, Engineering, and Architecture at Disney. The primary focus is on setting the enterprise security vision, strategy, architecture, and roadmap, and embedding security into business operations. While the role involves evaluating and integrating modern security capabilities like AI/ML-based detection, its core function is not the direct development or deployment of AI/ML models but rather the strategic oversight and governance of information security for a large global organization.

What you'd actually do

  1. Set the enterprise security vision. Own and evolve Disney’s global information security strategy, architecture, and roadmap across cloud, applications, networks, data, and emerging technologies.
  2. Embed security into the business. Act as a strategic, consultative partner to business and technology leaders—translating complex cyber risk into clear business and enterprise risk decisions for executives and boards.
  3. Lead technology strategy and innovation. Evaluate and integrate modern security capabilities, including AI/ML-based detection, IoT, and new platforms supporting Disney’s digital and physical experiences.
  4. Drive risk governance and assurance. Establish and oversee security governance, metrics, and risk management frameworks spanning cybersecurity, privacy, SOX, resilience, and third‑party risk.
  5. Build and lead globally. Lead senior teams responsible for security architecture and consultative engagement, fostering inclusive leadership and strong cross‑segment relationships worldwide.

Skills

Required

  • Cybersecurity leadership
  • Risk management
  • Technology strategy
  • Architecture design
  • Cloud security
  • Application security
  • Network security
  • Data security
  • Executive communication
  • Business partnership
  • NIST
  • ISO
  • COBIT
  • GDPR

Nice to have

  • CISO experience
  • Relevant security certifications
  • Advanced degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field

What the JD emphasized

  • 15+ years of progressive leadership in cybersecurity, risk, and technology for large, complex, global organizations
  • Deep technical foundation across infrastructure, software, cloud, data, and modern digital platforms
  • Proven ability to translate technical threats and vulnerabilities into enterprise and brand risk for C‑suite and board audiences
  • Experience operating in highly matrixed environments where influence, partnership, and trust are critical