Genuine Parts Company logo

Director, Cyber Defense

Genuine Parts Company
  • GA, GA
  • Autofill and Review
20 days ago

Job Description

The Position

The Director of Cyber Defense reports to the Chief Information Security Officer and operates within the Office of the CISO. This role owns the full cyber defense mission: threat detection, incident response, threat intelligence, threat hunting, and digital forensics. The Director is accountable for global IT security monitoring across this multi-entity, multi-tenant environment, ensuring consistent visibility, detection coverage, and response readiness regardless of where in the ecosystem a threat emerges.

The ideal candidate pairs deep operational cyber defense expertise with a demonstrated record of building teams, transforming operating models, and applying security operations at scale.

Responsibilities

  • Cyber defense leadership: Own and mature the enterprise cyber defense function, spanning detection engineering, incident response, threat intelligence, threat hunting, and DFIR, setting strategy, standards, and operational metrics across the Ecosystem.
  • Global monitoring across a diverse ecosystem: Direct 24x7 global IT security monitoring across a multi-tenant environment serving a diverse ecosystem of companies, including regulated financial entities, ensuring consistent telemetry coverage, detection fidelity, and response SLAs for every entity.
  • Agentic cyber defense: Lead the organization in AI adoption by architecting and delivering an agentic cyber defense model, deploying AI agents for alert enrichment, triage, investigation, detection engineering, and automated response, with clearly defined human-in-the-loop controls, guardrails, and escalation paths.
  • Secure AI: Establish and enforce governance for AI used in cyber defense (model risk, data handling, auditability, and acceptable use), and defend the enterprise's AI estate, including AI gateways, model endpoints, agent frameworks, and AI-enabled SaaS, against emerging threats such as prompt injection, model abuse, and data exfiltration.
  • Incident response: Own the enterprise incident response framework and entity-specific playbooks; lead major incident command, coordinate cross-entity response, and drive post-incident reviews, root cause analysis, and control improvements.
  • Detection and automation engineering: Direct SIEM/SOAR strategy and engineering, driving AI/ML-enhanced detections, behavioral analytics, and intelligent automation to improve signal-to-noise ratio and reduce time to detect and respond.
  • Threat intelligence and hunting: Mature the threat intelligence program with PIR-driven collection and dissemination, and lead proactive, hypothesis-driven threat hunting across the ecosystem.
  • Stakeholder engagement: Partner with entity leadership, IT, engineering, legal, and compliance; represent cyber defense in architecture reviews and risk governance forums; report operational posture and metrics to executive leadership and boards.
  • Team leadership: Build, coach, and retain a high-performing cyber defense team; accurately assess performance, develop talent, and evolve roles as agentic capabilities reshape the operating model.
  • Regulatory alignment: Ensure monitoring and response capabilities satisfy regulatory obligations across the portfolio, including federally regulated banking entities, and support audits, examinations, and legal matters as required.

Requirements

  • Bachelor's degree in computer science, Information Security, or a related field; advanced degree a plus.
  • 10+ years of progressive experience in cyber defense or security operations, including 5+ years leading teams, with direct accountability for detection, incident response, and threat intelligence functions.
  • Demonstrated experience applying AI/ML and automation to security operations, and a credible vision for building agentic cyber defense capabilities with appropriate human oversight.
  • Working knowledge of AI security and governance: securing LLM/agentic workloads, AI gateways, and model endpoints, and familiarity with frameworks such as the NIST AI RMF, MITRE ATLAS, and the OWASP Top 10 for LLM Applications.
  • Deep expertise in the Microsoft security ecosystem (Sentinel, Defender suite, Entra ID) and modern SOAR platforms; proficiency with KQL, Python, and PowerShell.
  • Experience running security monitoring at scale in multi-tenant, multi-entity, or shared-services environments; exposure to regulated industries (e.g., OCC/FDIC-supervised banking) strongly preferred.
  • Experience implementing and operationalizing enterprise data classification and protection programs, including sensitivity labeling, data loss prevention, and data security posture management (e.g., Microsoft Purview, DSPM platforms), with the ability to align detection and response priorities to data classification tiers.
  • Strong understanding of data protection controls across cloud and endpoint environments, including encryption, key management, data residency, and insider risk monitoring, and their application in regulated and multi-entity contexts.
  • Strong command of adversary tradecraft and frameworks including MITRE ATT&CK, and experience operationalizing threat intelligence.
  • Possession of, or ability to obtain, professional certifications such as CISSP, CISM, GCIH, GCFA, or equivalent.
  • Strong knowledge of security, regulatory, and control frameworks such as NIST CSF, ISO 27001, CIS, and GDPR.
  • Exceptional communication skills, with the ability to convey security and risk concepts to technical teams, executives, and boards.
  • High level of personal integrity and the ability to professionally handle confidential matters.
  • Strong coaching and team-building skills, with the ability to motivate others through direct and indirect reporting relationships to achieve objectives.

Not the right fit? Let us know you're interested in a future opportunity by joining our Talent Community on jobs.genpt.com or create an account to set up email alerts as new job postings become available that meet your interest!

GPC conducts its business without regard to sex, race, creed, color, religion, marital status, national origin, citizenship status, age, pregnancy, sexual orientation, gender identity or expression, genetic information, disability, military status, status as a veteran, or any other protected characteristic. GPC's policy is to recruit, hire, train, promote, assign, transfer and terminate employees based on their own ability, achievement, experience and conduct and other legitimate business reasons.

Numbers & Facts

LocationGA, GA
IndustryAutomotive and Parts Mfg
Company Size1,500 to 1,999 employees

About Company

Today Genuine Parts Company (GPC) is a service organization engaged in the distribution of: • Automotive Replacement Parts • Industrial Replacement Parts and Materials • Business Products The Company has a distribution network of over 3,100 operations located throughout the United States, Canada, Mexico, the Caribbean, Australia, New Zealand, China, and Southeast Asia. In addition, the Company expanded its global network into Europe with its 2017 acquisition of Alliance Automotive Group.

Skills

  • Adoptionunmatched
  • Artificial Intelligence (AI)unmatched
  • Artificial Intelligence (AI) Agentsunmatched
  • Automationunmatched
  • Automation Engineeringunmatched
  • Bank Managementunmatched
  • Banking Servicesunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Coachingunmatched
  • Communication Skillsunmatched
  • Computer Forensicsunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Cryptographyunmatched
  • Data Modelingunmatched
  • Ecosystemsunmatched
  • Federal Deposit Insurance Corp (FDIC)unmatched
  • GCFA - GIAC Certified Forensic Analystunmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • Geneticsunmatched
  • Huntingunmatched
  • ISO (International Organization for Standardization)unmatched
  • Incident Managementunmatched
  • Incident Responseunmatched
  • Information/Data Security (InfoSec)unmatched
  • Injectionsunmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Legalunmatched
  • Loss Preventionunmatched
  • Metricsunmatched
  • Microsoft Product Familyunmatched
  • Militaryunmatched
  • Performance Analysisunmatched
  • Python Programming/Scripting Languageunmatched
  • Regulationsunmatched
  • Riskunmatched
  • Risk Managementunmatched
  • Risk Modelingunmatched
  • Root Cause Analysisunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Service Level Agreement (SLA)unmatched
  • Signal-to-noise Ratio (SNR)unmatched
  • Software as a Service (SaaS)unmatched
  • Standards Strategyunmatched
  • Strategic Planningunmatched
  • Talent Managementunmatched
  • Team Lead/Managerunmatched
  • Technical Leadershipunmatched
  • Telemetryunmatched
  • Time Managementunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Windows PowerShellunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder