Director, Cybersecurity
Assetliving · Dallas, TX
About this role
**Director, Cybersecurity** **Company Overview** Asset Living is a third-party management firm and a trusted partner in fostering thriving communities nationwide. Founded in 1986, Asset Living has grown from a small property management firm into a national leader across multifamily, single-family rentals, affordable housing, build-to-rent, active adult, and student housing. **Role Summary** The Director of Cybersecurity leads the organization’s enterprise cybersecurity strategy, governance, and operations in a serverless, cloud-first Microsoft 365 environment. This role will centralize and standardize the cybersecurity program, establish a scalable security operating model, and mature security capabilities across the enterprise. You will develop and execute a multi-year cybersecurity roadmap aligned with business objectives, M&A activity, **NIST CSF 2.0**, **CIS Controls v8.1**, and evolving risk landscapes to strengthen security posture and resilience. **Key Responsibilities** - Build and manage clear internal cybersecurity team roles, responsibilities, and operating processes aligned with strategic MSSP partnerships. - Leverage Microsoft 365 Defender and Azure expertise to maximize security telemetry, visibility, and threat response through integration with third-party security platforms. - Develop, maintain, and continuously improve enterprise threat detection and incident response playbooks/runbooks (detection, containment, mitigation, remediation, recovery, and post-incident learning). - Lead cyber-attack preparedness and crisis readiness by aligning people, processes, technologies, and testing programs. - Develop and operationalize incident response and crisis management programs (response plans, tabletop exercises, recovery testing, and stakeholder communications). - Implement and optimize security awareness training using measurable performance metrics to reduce human risk. - Drive continuous improvement of outsourced cybersecurity services (monitoring, detection/response, vulnerability management, cloud security, threat intelligence, and security validation). - Own and optimize enterprise security monitoring and protection capabilities, including **EDR, ITDR, MDR, SIEM, Vulnerability Management, and Cloud Posture**. - Oversee continuous threat exposure management (network vulnerability scanning, external penetration testing, and dark web scans). - Maintain visibility and control over cloud applications through continuous discovery, classification, risk evaluation, and security oversight. - Oversee identity and access management, including adoption of **Entra ID SSO**, **SCIM-based automated provisioning**, and centralized identity governance. - Oversee identity and access governance for Entra-integrated and non-SSO applications, including authentication, authorization, user lifecycle management, and periodic access reviews. - Develop, maintain, and annually update security policies/procedures; conduct regular tabletop exercises to validate readiness (DR, IR, BC). - Oversee email firewall management and optimization, including **DMARC** policy. - Oversee network firewall management and optimization (**IDS/IPS**). - Provide monthly executive reporting. **Education & Experience** - Relevant education in Cybersecurity, Information Security, Computer Science, Information Technology, or related field preferred (equivalent experience considered). - **8+ years** progressive IT and cybersecurity experience. - **3+ years** in a cybe
Listing freshness
CronJobs last confirmed this listing 2h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.