
Vice President, Information Security
Lansing, MIJobSeen todaySeen in employer's feed today
Most applications go out cold — see where you stand first. No sign-up to start.
Watch jobs like this. New roles like this one near Lansing, MI, by email.
Don't just apply. Show up ready.
Olive works from this exact posting.
At a glance
Olive lists jobs from US employers, including remote roles you can work from the United States.
Job overview
The Vice President of Information Security & Cybersecurity leads the development and execution of enterprise security strategy, protecting people, data, applications and technology while partnering with technology, business, risk, legal and audit teams to build a risk‑based security program.
Skills & qualifications
Skills
Qualifications
Full job description
Job Summary
The VP, Information Security & Cybersecurity is responsible for developing and executing the organization's enterprise information security and cybersecurity strategy. This leader will protect the organization's people, data, applications, technology, and digital ecosystem from evolving cyber threats while enabling the business to operate securely and efficiently.
The role provides strategic leadership across cyber defense, security operations, identity and access management, vulnerability management, security architecture, incident response, threat intelligence, security governance, and third-party risk .
This role partners closely with the technology leadership, business executives, risk, legal, compliance, and audit teams to establish an effective, risk-based security program.
Key Responsibilities
Cybersecurity Strategy
-
Develop and execute a multi-year enterprise cybersecurity strategy and roadmap.
-
Establish security priorities based on business risk and threat landscape.
-
Define cybersecurity policies, standards, controls, and operating procedures.
-
Provide executive leadership with clear visibility into cyber risk and security posture.
Security Operations & Cyber Defense
-
Lead enterprise security operations and cyber defense capabilities.
-
Oversee SOC, SIEM, EDR/XDR, MDR/MSSP, security monitoring, and threat detection.
-
Improve detection, investigation, and response capabilities.
-
Drive security automation and orchestration to improve operational effectiveness.
Incident Response & Cyber Resilience
-
Establish and maintain the enterprise cyber incident response program.
-
Lead response to significant cybersecurity incidents.
-
Develop and maintain ransomware, phishing, credential compromise, data breach, DDoS, and other incident playbooks.
-
Conduct regular tabletop exercises and cyber simulations.
-
Partner with business continuity and disaster recovery teams to strengthen cyber resilience.
Identity & Access Security
-
Establish strong identity and access security practices.
-
Partner with IAM teams on MFA, PAM, SSO, Zero Trust, and least-privilege access .
-
Protect workforce, privileged, third-party, and application identities.
-
Reduce identity-based cyber risk.
Vulnerability & Threat Management
-
Lead enterprise vulnerability and exposure management.
-
Establish risk-based vulnerability prioritization and remediation.
-
Develop threat intelligence capabilities to identify emerging threats.
-
Ensure critical vulnerabilities and exposures receive appropriate executive visibility.
Security Architecture
-
Establish enterprise information security architecture and security-by-design principles.
-
Partner with technology and architecture teams to embed security into new products, applications, cloud platforms, and digital experiences.
-
Evaluate emerging cybersecurity technologies and capabilities, including AI-driven security.
Application, Data & Digital Security
-
Establish security requirements for applications, APIs, data, and customer-facing digital platforms.
-
Partner with application development teams on secure SDLC and application security.
-
Protect sensitive corporate and customer information.
-
Strengthen controls around data protection, encryption, and privacy.
Third-Party & Supply Chain Security
-
Establish cybersecurity requirements for critical vendors and technology partners.
-
Assess and manage third-party cyber risk.
-
Partner with Procurement, Legal, and Risk to ensure appropriate security controls are incorporated into contracts.
Governance, Risk & Compliance
-
Partner with Risk, Compliance, Internal Audit, and Legal.
-
Maintain cybersecurity control frameworks and policies.
-
Lead remediation of security assessments and audit findings.
-
Support applicable regulatory, privacy, PCI, and compliance requirements.
Leadership & Financial Management
-
Lead, develop, and retain a high-performing information security organization.
-
Establish clear accountability, KPIs, and operating rhythms.
-
Manage cybersecurity operating and capital budgets.
-
Lead strategic cybersecurity vendors and managed security providers.
-
Build strong partnerships across technology and business organizations.
-
Communicate complex cybersecurity risks in clear business and financial terms .
Qualifications
-
10–15+ years of progressive experience in information security or cybersecurity.
-
5+ years of leadership experience managing cybersecurity teams.
-
Experience leading enterprise cybersecurity transformation.
-
Strong understanding of security operations, IAM, cloud security, application security, vulnerability management, incident response, and cyber risk.
-
Experience managing significant budgets and strategic vendors.
-
Strong executive communication and influencing skills.
-
Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field preferred.
-
CISSP, CISM, CRISC, or equivalent certification preferred.
Our Values
-
EVERYONE BELONGS - We believe connectedness and belonging are the essential ingredients to our success
-
DO THE RIGHT THING - We are relentlessly focused on quality and integrity and make the right choices, even when it's difficult
-
PEOPLE FIRST - To craft positive experiences for our customers, we take care of each other first
-
INNOVATE TO WIN - We champion and challenge for a better way in all we do
-
HAVE FUN - We find joy, create meaningful impact and celebrate the journey together
Our Core Competencies
-
CUSTOMER CENTRIC - We leverage data and insights to craft a customer experience that builds relationships, cultivates trust, and delivers excellence
-
RESULTS DRIVEN – We focus on measurable outcomes by remaining optimistic, tenacious, and persistent even in the face of challenges
-
CONTINUOUS IMPROVEMENT - We champion for better through strategic risk taking, experimentation and challenging the status quo
-
BIAS FOR ACTION - We courageously lead, drive towards decisions, and maintain agility to meet the demands of our dynamic industry
-
WINNING TOGETHER - We work together to unlock our full potential by actively collaborating and contributing in a cross-functional capacity
Papa Johns is an equal opportunity employer.
Papa Johns is a federal contractor that participates in the E-Verify program to confirm employment eligibility for each new team member. We also comply with all Right to Work requirements. Official E-Verify and Right to Work notices are available for applicants to review in both English and Spanish.
It is the policy of Papa John’s to provide equal employment opportunities for all applicants and team members without regard to race, color, religion, sex, age, marital status or civil partnership, national or ethnic origin, pregnancy or maternity, veteran status, uniformed service (as defined by 10 U.S.C. §101 (a)(5)), protected disability status, genetic information, sexual orientation, gender identity, gender reassignment, or gender expression, or any other characteristic protected by statute or law.
Similar jobs, posted recently
Open roles like this one, listed in the last 30 days.
Senior Policy Executive 18 - Chief Information OfficerState of Michigan · Lansing, MI (Hybrid) · $56.56–82.04/hrPosted 3w agoPosted 3w ago
Mid-level Exercise PlannerCadmus · Lansing, MI · $85–115K/yrPosted 4 days agoPosted 4 days ago
Vice President, Software EngineeringVontier · Lansing, MI · $235–300K/yr
Manager, Information SecurityTTEC · Remote · US · $110–130K/yr
Director, Cyber Compliance (Information Security)Cardinal Health · Remote · US · $137–232K/yr
You've read the whole posting — now see how you match it.