Chief Information Security Officer Position Profile

About Our Client



Our client is a leading industrial products supplier to a diverse group of public and private sector customers. With over 20,000 employees and over forty million orders received per year, this company provides over 1.5 million products to most markets including government, education, food and beverage, hospitality, public safety, property management, retail, and many other sectors. This publicly traded company has a long tradition of quality products, services and distribution through product expertise, consultative selling, expedited order management and a cutting-edge digital platform.

Our client has invested heavily in recent years in digitalization and technology “build their own” solutions. This has transformed order creation, management of orders, delivery, and inventory management to create a world class user experience. Their expertise is borne of a profound understanding of their customers, their needs, and how their product and services create value for those customers. Our client is continuously innovating, charting courses for unparalleled enterprise systems and applications.

Position Overview

The Chief Information Security Officer is responsible for establishing and maintaining an enterprise information security management program to ensure that information assets are adequately protected. This role will also be responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the organization. They will proactively work with business units and IT functional areas to implement practices that meet defined policies and standards for information security.

The Chief Information Security Officer serves as the process owner of all activities related to the availability, integrity and confidentiality of clients, employee, and corporate information in compliance with the organization's information security policies. A key element of the Chief information Security Officer's role is also working with executive management to determine acceptable levels of risk for the organization. They must be highly knowledgeable about the business environment and ensure that information systems are maintained in a fully functional secure mode. Additionally, they will be an internal consultant to organizational leadership regarding cybersecurity awareness and education. The Chief Information Security Officer will partner with the Chief Technology Officer. This position will be located in the Chicago metro area.

The information security team includes over eighty professionals with focus on security operations, security architecture, governance-regulations-compliance, identity and access management, subsidiary security, infrastructure security, technology and code security protocols, corporate information risk management, business continuity, and incident response management.

If you are ready to make a direct impact at this organization, we want to speak to you!

Role & Responsibilities


  • Develop, implement, and monitor a strategic, comprehensive enterprise information security and Information technology risk management program.
  • Work directly with business units to facilitate information risk assessment and risk management processes.
  • Develop and enhance an information security management framework.
  • Understand and interact with related disciplines through Board of Directors, executive management, and technology teams to ensure the consistent application of policies and standards across all technology projects, systems, and services.
  • Provide leadership to the enterprise's information security organization of 80+ professionals.
  • Partner with business stakeholders across the company to raise awareness of risk management concerns.
  • Assist with the overall business technology planning, providing a current knowledge and future vision of information security technology and systems.
  • Work effectively in a collaborative decision-making team environment with low formality requiring strong and effective communications and leadership.

Experience Requirements


  • Bachelor's degree in computer science, information technology, or a related field required.
  • Master’s degree preferred.
  • Certified Information Systems Security Professional (CISSP) or Certified Chief Information Security Officer (CCISO) certificate preferred.
  • 15+ years of Information Security Technology management experience.
  • 5+ years of experience in a senior leadership role, managing large teams.
  • Prior extensive experience in large global manufacturing, distribution, and e-commerce companies.
  • Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST.
  • Specific experience in Agile software development or other best in class development practices.
  • Experience with Cloud computing/Elastic computing across virtualized environments.
  • Proven experience building credibility with company management and comfortable interacting at Board of Directors level.
  • Highly adept at breaking down complex concepts into easily understood points of view for audiences.
  • Proven Innovative thinking and leadership with an ability to manage and motivate cross-functional, interdisciplinary teams from information technology to product management and other functions throughout the organization.
  • Demonstrated experience in successfully executive managing vendors and consultants.
  • Advanced negotiation, problem solving and interpersonal skills (presentation, written, and oral) and the ability to communicate effectively with all levels of staff and management.
  • Demonstrates a strong combination of cognitive and emotional intelligence, possessing both high IQ and EQ.

Critical Competencies for Success


Exceptional Leader

One who builds, inspires, and coaches teams with a passion for the business, while forging close working relationships with others throughout the organization. This individual will work to foster a culture of trust, accountability, and results while elevating capabilities. This role requires a hands-on, team-oriented executive who has broad-based credibility and is capable of consistently motivating people to act. A true mature leader that facilitates change through others.

Results Oriented

Performance-driven and able to provide measurable results. The successful candidate will be resourceful, action-oriented, as well as a flexible and decisive leader who establishes clarity during distractions to produce results in a timely fashion. They will provide clear direction and establish aggressive and achievable goals and will actively lead cross-functional teams to ensure their success. The ability to be resilient in the face of challenges and deliver to higher standards while upholding company values which commands respect from others.

Critical Thinker

Combines analytical and creative horsepower to simplify and break down complex situations into core issues with easy-to-understand action items. This individual must be intellectually sharp and use critical thinking to make or influence decisions while demonstrating outstanding business judgement. They will be comfortable creating the new and the different and have a ravenous appetite to learn more and experiment in a disciplined way.

Strategic Agility

This individual must be intellectually sharp and clearly capable of thinking on their feet while demonstrating outstanding business judgment. The Chief Information Security Officer will possess the analytical skills to improve overall productivity and elevate the organization's e-commerce efforts to a point of differentiation in the marketplace. This person must not only embrace change but embrace change and draw on resilience to alter their road map along the way based on marketplace and feedback.

Global/External Mindset

This individual will provide a worldly perspective of macro and industry influences to assist in guiding the organization in new directions. They will provide perspective coming in from outside the organization to aid in the collective leadership team’s understanding and acceptance of trends, insights, changing business perspective and management strategies. This keen perspective should be presented with patience and guidance rather than authoritative. Values diversity and works well with different interpersonal styles.

For More Information:


Bernard Layton

Title: Managing Director

Email: blayton@comharpartners.com

Phone: (415) 302-5300

Dakotah Brown

Title: Director

Email: dbrown@comharpartners.com

Phone: (763) 438-5711

Ty Perdue

Title: Senior Associate

Email: tperdue@comharpartners.com

Phone: (352) 213-8500