waypointjobs

Papa Johns

Vice President, Information Security

Remote — United States (see country and timezone requirements)

Check who can apply and the requirements below before continuing.

Job description

What’s Unique About You Is What Makes Us Better! Diversity is our strength and competitive advantage. Bring your flavor to the Papa John's team today!

Job Summary

The VP, Information Security & Cybersecurity is responsible for developing and executing the organization's enterprise information security and cybersecurity strategy. This leader will protect the organization's people, data, applications, technology, and digital ecosystem from evolving cyber threats while enabling the business to operate securely and efficiently.

The role provides strategic leadership across cyber defense, security operations, identity and access management, vulnerability management, security architecture, incident response, threat intelligence, security governance, and third-party risk.

This role partners closely with the technology leadership, business executives, risk, legal, compliance, and audit teams to establish an effective, risk-based security program.

Key Responsibilities

Cybersecurity Strategy

Develop and execute a multi-year enterprise cybersecurity strategy and roadmap.

Establish security priorities based on business risk and threat landscape.

Define cybersecurity policies, standards, controls, and operating procedures.

Provide executive leadership with clear visibility into cyber risk and security posture.

Security Operations & Cyber Defense

Lead enterprise security operations and cyber defense capabilities.

Oversee SOC, SIEM, EDR/XDR, MDR/MSSP, security monitoring, and threat detection.

Improve detection, investigation, and response capabilities.

Drive security automation and orchestration to improve operational effectiveness.

Incident Response & Cyber Resilience

Establish and maintain the enterprise cyber incident response program.

Lead response to significant cybersecurity incidents.

Develop and maintain ransomware, phishing, credential compromise, data breach, DDoS, and other incident playbooks.

Conduct regular tabletop exercises and cyber simulations.

Partner with business continuity and disaster recovery teams to strengthen cyber resilience.

Identity & Access Security

Establish strong identity and access security practices.

Partner with IAM teams on MFA, PAM, SSO, Zero Trust, and least-privilege access.

Protect workforce, privileged, third-party, and application identities.

Reduce identity-based cyber risk.

Vulnerability & Threat Management

Lead enterprise vulnerability and exposure management.

Establish risk-based vulnerability prioritization and remediation.

Develop threat intelligence capabilities to identify emerging threats.

Ensure critical vulnerabilities and exposures receive appropriate executive visibility.

Security Architecture

Establish enterprise information security architecture and security-by-design principles.

Partner with technology and architecture teams to embed security into new products, applications, cloud platforms, and digital experiences.

Evaluate emerging cybersecurity technologies and capabilities, including AI-driven security.

Application, Data & Digital Security

Establish security requirements for applications, APIs, data, and customer-facing digital platforms.

Partner with application development teams on secure SDLC and application security.

Protect sensitive corporate and customer information.

Strengthen controls around data protection, encryption, and privacy.

Third-Party & Supply Chain Security

Establish cybersecurity requirements for critical vendors and technology partners.

Assess and manage third-party cyber risk.

Partner with Procurement, Legal, and Risk to ensure appropriate security controls are incorporated into contracts.

Governance, Risk & Compliance

Partner with Risk, Compliance, Internal Audit, and Legal.

Maintain cybersecurity control frameworks and policies.

Lead remediation of security assessments and audit findings.

Support applicable regulatory, privacy, PCI, and compliance requirements.

Leadership & Financial Management

Lead, develop, and retain a high-performing information security organization.

Establish clear accountability, KPIs, and operating rhythms.

Manage cybersecurity operating and capital budgets.

Lead strategic cybersecurity vendors and managed security providers.

Build strong partnerships across technology and business organizations.

Communicate complex cybersecurity risks in clear business and financial terms.

Qualifications

10–15+ years of progressive experience in information security or cybersecurity.

5+ years of leadership experience managing cybersecurity teams.

Experience leading enterprise cybersecurity transformation.

Strong understanding of security operations, IAM, cloud security, application security, vulnerability management, incident response, and cyber risk.

Experience managing significant budgets and strategic vendors.

Strong executive communication and influencing skills.

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field preferred.

CISSP, CISM, CRISC, or equivalent certification preferred.

Our Values

EVERYONE BELONGS - We believe connectedness and belonging are the essential ingredients to our success

DO THE RIGHT THING - We are relentlessly focused on quality and integrity and make the right choices, even when it's difficult

PEOPLE FIRST - To craft positive experiences for our customers, we take care of each other first

INNOVATE TO WIN - We champion and challenge for a better way in all we do

HAVE FUN - We find joy, create meaningful impact and celebrate the journey together

Our Core Competencies

CUSTOMER CENTRIC - We leverage data and insights to craft a customer experience that builds relationships, cultivates trust, and delivers excellence

RESULTS DRIVEN – We focus on measurable outcomes by remaining optimistic, tenacious, and persistent even in the face of challenges

CONTINUOUS IMPROVEMENT - We champion for better through strategic risk taking, experimentation and challenging the status quo

BIAS FOR ACTION - We courageously lead, drive towards decisions, and maintain agility to meet the demands of our dynamic industry

WINNING TOGETHER - We work together to unlock our full potential by actively collaborating and contributing in a cross-functional capacity

Papa Johns is an equal opportunity employer.

Papa Johns is a federal contractor that participates in the E-Verify program to confirm employment eligibility for each new team member. We also comply with all Right to Work requirements. Official E-Verify and Right to Work notices are available for applicants to review in both English and Spanish.

Everybody loves pizza, which means they also love the people who are behind the scenes working to deliver it. This is complex and challenging work – but let’s face it – it’s also pizza! If you want a fulfilling career with a company that’s always moving forward, we’re the right place.

Papa John's is a Federal Contract employer who participates in E-Verify to confirm employment eligibility for each new team member. For more information please view the following PDFs: E-Verify Poster (English) - Right to Work Poster (English) - E-Verify Poster (Spanish) - Right to Work Poster (Spanish) Papa John's is an Affirmative Action and Equal Opportunity Employer. For more information please click on the following PDF. See terms & conditions for site use.

Originally posted on Himalayas

Who can apply

Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.

Ready for your next step?Apply on the official website
Apply on Himalayas ↗

Explore related searches

Current related jobs

Red Wine and Blue

Himalayas

General Interest Application

Remote — United States (see country and timezone requirements)

Salary not specifiedfull timeRemote

WHO THE HECK ARE WE? Red Wine & Blue is a national community of over 600,000 diverse suburban women working together to defeat extremism, one fr…

Listing expires 2026-12-04View job

Carle Health

Himalayas

Finance Systems Analyst

Remote — United States (see country and timezone requirements)

$26.41 – $44.10 per hourfull timeRemote

OverviewThe Finance Systems Analyst assists with supporting assigned finance/accounting applications for the enterprise such as costing, producti…

Listing expires 2026-12-04View job

Kyowa Kirin

Himalayas

Scientific Relations Manager

Remote — Worldwide (see timezone requirements)

Salary not specifiedfull timeRemote

OverviewWE PUSH THE BOUNDARIES OF MEDICINE. LEAPING FORWARD TO MAKE PEOPLE SMILE At Kyowa Kirin International (KKI), our purpose is to make peop…

Listing expires 2026-12-04View job

Belden, Inc

Himalayas

Solution Consultant - Cybersecurity Practice (US)

Remote — United States (see country and timezone requirements)

$125,000.00 – $160,000.00 per yearfull timeRemote

Innovation Starts With YouPropel your career at Belden, where innovation creates possibilities—for our people, our customers, and the communities…

Listing expires 2026-12-04View job