Peets is seeking a Director of IT Security and Infrastructure to be part of the team that drives concept, design, and development of our on-premise and cloud-based technology infrastructure. This role is responsible for strategy, design, build and operations and will focus on delivery of highly reliable and scalable technology components to meet the needs of our business.
Reporting to the Peets SVP CTO, this IT senior leader is on point to ensure all parts of local and enterprise technology execution are delivered with high quality, security and positive results. The Director IT Security and Infrastructure will assist business partners in determining how to achieve business results quicker and more effectively through technology while maintaining a comprehensive security strategy that ensures we protect our people, customer, and company information assets to the fullest extent. This individual is responsible for understanding business direction and needs, to drive formulation of solutions and roadmaps, providing insights to technical solution capabilities, leveraging internal solutions and investigating external solutions and partner capabilities.
Responsibilities
Strategy & Planning
- Lead the infrastructure strategy planning activities, bringing a current knowledge and future vision of infrastructure technology and systems and best practices (e.g. ITIL) as related to the needs of the business
- Create infrastructure roadmaps in collaboration with business and IT leaders from SVPs to Managers.
- Leverages cloud-based technology strategies as a mechanism to delivery infrastructure services faster at a lower cost.
- Takes a leadership role in shaping technology shared services aligned to the strategic direction of the company across Peets multiple business units.
- Responsible to stay abreast of industry and technology trends that impact or support business partners.
- Develop and implement forward-thinking improvements that enable IT.'s ability to deliver more, faster, and with a higher degree of quality and business value by collaborating with the entire IT Leadership Team.
Information Security
- Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program to ensure the integrity, confidentiality and availability of information owned, controlled or processed by the organization.
- Facilitate information security governance through implementation of a hierarchical governance program, including the formation of an information security steering committee or advisory board.
- Develop, maintain and publish up-to-date security policies, standards and guidelines, and oversee training and dissemination of security policies and practices.
- Create, communicate and implement a risk-based process for vendor risk management, including assessment and treatment for risks that may result from partners, consultants and other service providers.
- Develop and manage information security budgets and monitor them for variances.
- Create and manage information security and risk management awareness training programs for all employees, contractors and approved system users.
- Work directly with the business units to facilitate IT risk assessment and risk management processes, and work with stakeholders through the enterprise on identifying acceptable levels of residual risk.
- Provide periodic reporting on the status of the information security program to enterprise risk teams, senior business leaders and the board of directors as part of a strategic enterprise risk management program.
- Create a framework for roles and responsibilities regarding information ownership, classification, accountability and protection.
- Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.
- Liaise with the JDE Peets global security and enterprise architecture teams to ensure alignment between the security and enterprise architectures, thus coordinating the strategic planning implicit in these architectures.
- Coordinate information security and risk management projects with resources from the IT organization and business unit teams.
- Create and manage a unified and flexible control framework to integrate and normalize the wide variety and ever-changing requirements resulting from global laws, standards and regulations.
- Ensure that security programs are compliant with relevant laws, regulations and policies to minimize or eliminate risk and audit findings.
- Liaise among the information security team and Peets corporate compliance, audit, legal and HR management teams as required.
- Define and facilitate the information security risk assessment process, including the reporting and oversight of treatment efforts to address negative findings.
- Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation.
- Develop and oversee effective disaster recovery policies and standards to align with enterprise business continuity management program goals. Coordinate the development of implementation plans and procedures to ensure that business-critical services are recovered in the event of a security event, and provide direction, support and in-house consulting in these areas.
- Facilitate a metrics and reporting framework to measure the efficiency and effectiveness of the program, facilitate appropriate resource allocation, and increase the maturity of the security.
Financial Discipline and Vendor Management:
- Identifying the right balance of in-house versus professional services consultants to meet the demand for services
- Negotiate favorable software and professional services contracts with reputable vendors
- Manage complex and rapidly changing budgets
- Drive effective governance and engagement with partners and suppliers to ensure cost effectiveness and timely deliverables
- Analyzes and predicts trends and develops long-range plans designed to maintain the cost effectiveness and competitiveness of the corporate technology infrastructure
- Keep informed of issues and risks across all technology organizations, anticipate impact, and mitigate risks
Relationship Management
- In conjunction with other members of the IT Leadership Team, be a trusted advisor to internal leaders by seeing the big picture and translating business strategies into actionable technology roadmaps and project plans.
- Responsible for effective stakeholder management to create positive relationships through management of expectations and agreed upon objectives.
- Ensures/participates in development of business cases, requirements, and documentation in support of proposed and approved business initiatives in collaboration with business stakeholders and key business users
- Provides the IT Leadership Team insights to the needs and concerns of shared infrastructure.
- Establish and manage senior level technical relationships with strategic vendors to feed the innovation process as well as ensure global delivery of initiatives.
- Prepare strategies to increase existing and new businesses and identify appropriate vendors for all projects and manage communication for all projects.
- Administer and approve all final deliveries and improvements into production operation
- Assist business leads to review all financials of projects and analyze all key business metrics.
Operational Management
- Leads and promotes effective teamwork and manages the resolution of interpersonal issues, serving as a point of escalation.
- Establish and maintain appropriate operational tools, monitoring methods and site metrics, and reporting to determine and track needs and trends for support, issues, and capacity
- Drive a customer service mindset measuring success using goals and metrics and infrastructure service levels for the Companys enterprise-wide user community
- Establish a culture of engineering excellence while maintaining a strong focus on security and operational quality
- Leads and manages the architecture, design and implementation of the servers and network infrastructure to provide a 24x7 operation with low latency, high-availability systems
- Is accountable for orchestrating and delivering 24x7 operational support for mission critical systems.
- Coordinates closely across IT functional areas that are supporting business operations stays aware of and actively manages, when necessary, production issues, project status, delays, etc.
- Demonstrates an in-depth knowledge of IT and the service catalog and assigned departments/business partners to identify and communicate how IT infrastructure solutions can support the achievement of short- and long-term business goals. Team Building
- Develop high performing infrastructure professionals through ongoing opportunities for professional development, mentorship, and coaching
- Share knowledge and best practices within the corporate infrastructure team, as well as broadly within the organization to ensure that Peets technology infrastructure management is highly effective and valued
- Scale the infrastructure team, ensuring we have the right resource allocation, ratio of support and subject matter experts
- Be an inspirational leader who can attract and retain quality people globally to the organization and develop these individuals into a cohesive team
Critical Skills & Behaviors for Success
Results-orientation:
- Gets things done, wi