Corporate Vice President, Cyber Security Incident Management (CSIR) Lead

Posted 2 hours ago
$185K - $264.5K / year

Are you applying to the internship?

Job Description

Corporate Vice President – Cyber Security Incident Response Team Lead | New York Life Insurance Company

The Tone:
This is a full-time Corporate Vice President role at New York Life Insurance Company, located in a hybrid capacity requiring 3 days per week onsite. Within the Technology, Data, AI, and Ventures (TDAV) organization, New York Life deploys technology, data, and AI to accelerate competitive advantage for its businesses. This role is critical as it establishes unified ownership and leadership for the enterprise cyber incident response capability, protecting the company’s operations and policy owners in a regulated financial services environment.

The TL;DR
• Role: Full Time
• Type: Full Time
• Location: Hybrid – New York, NY, USA
• Pay: $185000–$264500 yearly
• Team: Cybersecurity organization, reporting to the CISO
• Mission: Lead and unify New York Life’s enterprise cyber incident response capability from activation through secure recovery.

What You’ll Actually Do
• Lead Enterprise Response: Act as the enterprise Incident Commander for all cybersecurity incidents, overseeing the full lifecycle from activation through secure recovery.
• Manage Incident Function: Build, develop, and lead a dedicated Cyber Incident Response team, establishing its roadmap, priorities, and talent strategy.
• Govern Program Standards: Own and maintain the cybersecurity incident management standard, response plan, playbooks, and procedures in alignment with NIST guidelines.
• Ensure Regulatory Readiness: Partner with legal and compliance to assess notification obligations, track deadlines, and support timely regulatory filings for incidents.
• Coordinate Stakeholders: Serve as the primary point of coordination for incident response, briefing leadership, business partners, and external parties, and managing crisis communications.

The Must-Haves
• Background: Bachelor’s degree or equivalent work experience, with core domain knowledge in cybersecurity incident response, digital forensics, security operations, or incident management.
• Experience: Eight or more years in cybersecurity or technology, including at least four years in incident response or incident management, with prior team leadership and experience as an Incident Commander for high-severity, cross-functional incidents in a large enterprise.
• Skills: Demonstrated technical depth in cybersecurity incident response across diverse enterprise environments, working command of NIST SP 800-61 and the NIST Cybersecurity Framework, and the ability to communicate clearly, assert authority, and maintain composure during active incidents.
• Bonus: Preferred cybersecurity certifications (GCIH, GCFA, GCFE, CISSP, CISM, CRISC), prior experience in a regulated financial services or insurance environment, and experience with incident management platforms, case management tooling, or security orchestration and automation.

Related Jobs