Overview
Director of IT & Information Security Jobs in Washington DC-Baltimore Area at Robert Half
Title: Director of IT & Information Security
Company: Robert Half
Location: Washington DC-Baltimore Area
Director of IT & Information Security
About the Opportunity
Our client is seeking a Director of IT & Information Security to establish and lead the organization's internal technology and cybersecurity function. This newly created leadership position offers the opportunity to build scalable IT operations, strengthen cybersecurity, modernize the technology environment, and develop a long-term technology strategy that supports continued business growth.
This role serves as the organization's senior technology leader and primary point of contact for all internal IT initiatives. The Director will oversee strategic technology planning, information security, vendor management, compliance, cloud transformation, and enterprise AI initiatives while partnering closely with executive leadership and an outsourced Managed Service Provider (MSP).
This is an excellent opportunity for a hands-on technology leader who enjoys building programs from the ground up while influencing executive decision-making and driving technology strategy.
Responsibilities
Technology Strategy & Leadership
- Develop and execute the organization's IT and information security strategy aligned with long-term business objectives.
- Serve as a trusted advisor to executive leadership on technology investments, cybersecurity, compliance, and digital transformation initiatives.
- Establish enterprise IT governance, policies, standards, and operational best practices.
- Develop and maintain multi-year technology roadmaps and recommend strategic technology investments.
IT Operations & Vendor Management
- Provide strategic oversight of all internal IT operations while managing the organization's outsourced Managed Service Provider (MSP).
- Establish service level expectations, operational metrics, escalation procedures, and vendor accountability.
- Oversee endpoint management, identity and access management, cloud collaboration platforms, networking, and enterprise applications.
- Lead software licensing, hardware procurement, contract negotiations, and vendor relationships.
- Continuously evaluate technology platforms and recommend improvements that enhance security, productivity, and operational efficiency.
Cybersecurity & Risk Management
- Own the organization's cybersecurity program and information security roadmap.
- Develop and maintain enterprise security policies, standards, and governance processes.
- Partner with the MSP to oversee endpoint protection, vulnerability management, identity security, disaster recovery, business continuity, and incident response planning.
- Continuously assess cybersecurity risks and implement strategies that strengthen the organization's security posture.
Compliance & Governance
- Lead the organization's SOC 2 Type II readiness initiative from planning through successful certification.
- Establish governance processes supporting security controls, evidence collection, change management, risk assessments, and policy management.
- Coordinate with external auditors, compliance consultants, and internal stakeholders throughout the audit lifecycle.
- Maintain ongoing compliance with regulatory requirements and industry best practices.
Digital Workplace & Cloud Transformation
- Lead the migration from Google Workspace to Microsoft 365, including Exchange Online, SharePoint Online, Microsoft Teams, Entra ID, and Intune.
- Drive adoption of modern workplace technologies while improving collaboration, productivity, and security.
- Develop change management strategies, user communications, and training initiatives to support successful technology adoption.
AI Strategy & Innovation
- Partner with executive leadership to develop and implement the organization's enterprise AI strategy.
- Lead governance for AI technologies, including acceptable use policies, security standards, and data privacy considerations.
- Evaluate and implement AI solutions that improve operational efficiency, knowledge management, and business processes.
- Stay informed on emerging AI technologies, cybersecurity risks, and industry best practices.
Qualifications
- 8–12+ years of progressive experience leading IT operations, infrastructure, cybersecurity, or enterprise technology initiatives.
- Experience serving as a senior technology leader within a professional services, consulting, financial services, or other highly regulated environment.
- Proven experience managing Managed Service Providers (MSPs) and enterprise technology vendors.
- Strong knowledge of Microsoft 365, Exchange Online, Entra ID (Azure AD), Intune, SharePoint Online, Teams, and Azure cloud services.
- Experience leading enterprise cloud migrations and digital transformation initiatives.
- Working knowledge of SOC 2, ISO 27001, NIST CSF, or comparable security and compliance frameworks.
- Strong understanding of cybersecurity principles, identity and access management, endpoint security, networking, Zero Trust concepts, and risk management.
- Experience developing technology roadmaps, governance frameworks, budgets, and executive-level presentations.
- Exceptional communication skills with the ability to translate technical concepts into business outcomes.
- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or equivalent professional experience.
Preferred Qualifications
- CISSP, CISM, CISA, Security+, Microsoft, or other relevant industry certifications.
- Experience leading or managing a successful SOC 2 Type II audit.
- Experience implementing Microsoft Intune, Conditional Access, Microsoft Defender, and modern identity management solutions.
- Familiarity with enterprise AI platforms, AI governance, and responsible AI adoption.
- Experience building or maturing an internal IT organization within a growing business.
What Success Looks Like
During your first year, you will:
- Successfully lead the organization's SOC 2 Type II readiness initiative.
- Deliver a seamless migration from Google Workspace to Microsoft 365.
- Establish scalable IT governance, operational processes, and cybersecurity standards.
- Optimize vendor relationships and improve MSP performance.
- Develop a strategic technology roadmap that supports future business growth and innovation.
- Position the organization to securely adopt emerging technologies, including enterprise AI solutions.