A leading construction company offering services in building, infrastructure, and energy sectors.
Lead enterprise cybersecurity, compliance, and privacy strategy and operations.
14 days ago ago
$200,000 - $255,000
Expert & Leadership (13+ years)
Full Time
Arvada, CO
Office Full-Time
Company Size
1,300 Employees
Service Specialisms
Construction services
Project Management
Consulting
Engineering
Architecture
Property Development
Design
Technical Services
Sector Specialisms
Healthcare
Life Sciences
Affordable Housing
Aviation
Parking Structures
Industrial
Energy
Mass Timber Construction
Role
Description
security architecture
risk management
compliance reporting
vendor management
data archiving
privacy program
Develop and control the annual department budget to ensure that it's consistent with the overall strategic objectives of IT and the enterprise and is within plan.
Ensure digital and paper archiving (warehouse) systems are complying with corporate data retention policies. Collaborate with Product Managers to ensure they understand policies and their products and services are aligned.
Developing staff including coaching, mentoring and performance management
Lead cross-functional Privacy Team to develop and implement a comprehensive enterprise-wide data and personnel privacy program. Maintain current policies, facilitate publication and communication, and ensure all employees receive required privacy training.
Develop and actively participate in peer network groups. Stay up on trends and share lessons learned.
Sets the mission, vision, and strategy for technology risk management including cybersecurity, compliance and privacy organization. Implementing appropriate risk management and mitigation efforts while ensuring the success of business and IT initiatives, ensuring alignment with business objectives and product priorities.
Lead vendor management and negotiations with security service providers. Establish strong vendor relationships ensuring vendors understand and share our focus on security and are capable of meeting requirements.
Foster an enterprise security culture by embedding compliance and risk management practices into daily business operations. Lead organization-wide training and awareness initiatives that enable informed cybersecurity decision-making across all functions and levels.
Third-party management, working closely with sourcing and vendor managers
Build successful stakeholder relationships with other IT , enterprise risk managers and key business stakeholders by developing a clear understanding of business needs, acting as a trusted advisor, and ensuring cost-effective delivery of security services to meet those needs.
Build and lead a high performing team. Work collaboratively with direct reports to support their career progression, nurture their development and to help them realize their potential. Have a documented succession plan for critical functions.
Direct enterprise-wide security architecture and operations across IT and OT environments, ensuring secure design, deployment, and ongoing protection of infrastructure, applications, and data systems.
Maintain awareness of emerging threats and incorporate appropriate mitigation measures
Conduct comprehensive enterprise risk assessments and develop strategies that strengthen business continuity, disaster recovery, and incident response capabilities. Build, train, and coordinate cross-functional incident response teams across security, IT, business partners, and executive leadership to ensure effective crisis response and business protection.
Ensure compliance with all relevant cybersecurity, compliance and privacy regulations. As part of a strategic enterprise risk management program, conduct compliance assessments and provide regular status reports to risk management teams and senior business leaders including relevant metrics, key performance and risk indicators.
Requirements
cissp
cism
nist
cmmc
15+ years
leadership
Certification Preferred - Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or other similar credentials
Bachelor’s or Master’s degree in business administration or technology related field
Deep understanding of current and emerging security technologies and practices, and how other enterprises are employing them
Strong awareness of current and changing regulatory landscape
Artificial Intelligence
15 or more years of experience in IT Operations, cybersecurity or business/industry
Data management, classification and privacy
Strong business acumen, including industry, domain-specific knowledge of the enterprise and its business units
NIST 800-53
3 or more years of leadership responsibilities of an auditable compliance program (ex: NIST 800-171, CMMC, ISO 2700x, SOC 2, NERC-CIP, etc.)
NIST 800-171/CMMC
7 or more years of leadership responsibilities, including strategy, budgeting, and staffing
Exceptional leadership skills, with the ability to develop and communicate a vision that inspires and motivates staff and aligns with the IT and business strategy
Effective influencing and negotiation skills and the ability to build consensus in complex environments where resources required for success may not be in direct control of this role
Demonstrated ability to develop and execute a strategic staffing plan that ensures the right people are in the right roles at the right time, and employees are highly engaged and satisfied
Excellent analytical, strategic conceptual thinking, strategic planning, and execution skills
Demonstrate collaboration skills across multiple teams including business operating groups, corporate departments and other IT teams
Benefits
Information not given or found
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
Information not given or found
Security clearance
Information not given or found
Company
Overview
130+ Years
Established as a Construction Leader
Pioneered the industry and built a legacy of trust and expertise over a century of operation.
$10 Billion
Annual Project Value Delivered
Demonstrates consistent performance and scale in managing large and complex construction projects.
Tackles projects ranging from high-rise buildings to energy facilities with a diverse portfolio.
Known for adaptability in delivering both traditional and cutting-edge projects.
Operates across multiple sectors, including residential, commercial, energy, and industrial developments.
Combines technical knowledge with a focus on quality and value in every project.
Recognized for expertise in large-scale infrastructure, such as bridges, airports, and transport hubs.
Achievements include iconic skyscrapers and sustainable energy projects.
Culture + Values
Safety is our top priority and a core value.
We are committed to teamwork and collaboration.
We believe in delivering exceptional quality.
We prioritize innovation and continuous improvement.
We are dedicated to building lasting relationships with clients, partners, and communities.
Integrity and honesty guide our decisions and actions.
We value diversity and respect different perspectives.
We invest in our people through training and development.
Environment + Sustainability
Net-zero by 2040
Carbon emissions commitment
Targeting complete elimination of carbon emissions by 2040.
200+ LEED-Certified
Sustainable building achievements
Accomplished over 200 LEED认证的建设项目,彰显绿色环保理念。
Focusing on reducing energy consumption, waste, and water usage in its operations.
Actively implementing sustainable building practices, including LEED certification for projects.
Working to minimize environmental impact across all stages of construction, from design to delivery.
Inclusion & Diversity
25% Women
Leadership Representation
Swinerton has achieved significant representation of women in leadership roles within the company.
Committed to creating an inclusive workplace and promoting diversity at all levels.
Aims to increase diversity in its talent pipeline through outreach programs and strategic partnerships.
Monitors and reports on diversity metrics with a focus on growth in underrepresented groups.