Home > Washington D.C. jobs > Washington D.C. management/professional

Posted: Sunday, February 18, 2018 12:51 PM

Marriott International offers you the opportunity to find the hospitality job and career journey that’s right for you. With more than 5700 properties and 30 brands you’ll find us in your neighborhood and in more than 110 countries across the globe. Find Your World™ at Marriott.


As an executive member of the IT leadership team, enhance and oversee the information security strategy and program of a diverse and decentralized computing environment. This leader will be responsible for:

• Leading and prioritization of investments, projects, standards and controls that mitigate risks, strengthen defenses and reduce vulnerabilities in a manner that is in balance with business goals

• Establishing and managing information security governance via governance programs and processes

• Identifying, evaluating and effectively aligning senior leaders on information security trends and risks to protect Marriott’s reputation as well as to ensure compliance with regulatory requirements

This leader is also responsible for establishing and executing a people strategy that will:

• Cultivate a high-performing team of engaged leaders who will continue to evolve to address the information security needs of the company

• Create energy and enthusiasm at all levels of the information security organization

• Enable strong partnerships within IT, across Marriott and with our service provider partners


Set the Information Security Strategy & Champion Change

• Create and communicate a clear and compelling vision for the information security strategy balancing costs and appropriate risks

• Gain internal IT alignment and appropriate broader corporate alignment for the strategy and associated economics

• Lead information security planning processes to establish an inclusive and comprehensive program for the company; establish annual and long-range security and compliance goals, define security strategies, metrics, reporting mechanisms and program services; create a roadmap for continual program improvements

• Build understanding and enthusiasm within IT and across company executives for this strategy; model the behaviors needed to drive needed change

• Building partnerships throughout the company

• Make appropriate adjustments to the current support model (including internal and external resources) and processes to support this strategy of the company

• Establish, implement and facilitate an effective enterprise-wide information security governance program that ensures the strategic alignment of information security and broader corporate objectives and drives accountability; implement a metrics-based reporting framework to measure the efficiency and effectiveness of the program and facilitate appropriate resource allocation to increase the maturity of the information security program

Information Security Oversight

• Information Security Policy Development

o Analyze and assess information security policies and needs; collaborate with stakeholders to develop policies to govern information security activities; obtain consensus on proposed policies

o Translate applicable laws, statues and regulatory requirements and integrate into policies

o Promote awareness of information security risks and trends

o Lead efforts to evolve information security policies and technologies to ensure Marriott’s security posture meets business needs

o Develop and oversee effective information recovery policies to align with enterprise business continuity program goals; coordinate the development of plans and procedures to ensure business-critical services are recovered in the event of a security event

• Information Security Program Management

o Provide information security guidance and counsel to executive leaders and stakeholders throughout the company

o Create a strong bridge between IT and business partners; build respect for the contributions of all and bring groups together to share information and resources and create better decisions, policies and practices for the company

o Advise executive leadership on cost-benefit analysis of information security programs, policies, processes and projects

o Identify and develop strategies to proactively address and manage information security risk

o Communicate the value of information security throughout all levels of the company, and drive it to the forefront of all planning processes

o Identify security program implications of new technologies or technology upgrades; interpret and/or approve security requirements relative to the capabilities of new technologies

o Identify alternative information security strategies to address organizational security objectives

o Oversee the establishment, implementation and maintenance of an enterprise-wide information security training and awareness programs

o Manage information security compliance efforts; coordinate and track information security related audits; provide guidance, evaluation and advocacy on audit responses

o Manage information security threats incidents and events, support a Tier-1 managed service vendor and an in-house Tier-2 escalation team, in order to protect corporate assets

• Incident Management

o Establish incident response policy and procedures to protect company assets, including intellectual property, PII data and brand reputation

o Implement incident response program, including metrics for measuring the effectiveness of the program

o Provide overall direction to the incident response team who perform deep-dive incident analysis by correlating data from various sources to determine if a critical system of data set have been impacted; manages remediation

o Oversee the development, tuning and implementation of new analytic methods for detecting threats

• Financial Management

o Accountable for effectively managing Marriott’s investment in information security

o Drive financial accountability within the organization through systematic financial management processes

o Ensure continuous industry scanning for the most cost effective platforms that meet the company’s needs

Cultivate a High-Performing Team

• Create a compelling vision, clear direction and strategy for the team

• Generate enthusiasm and understanding of the information security vision and how each role contributes to the achievement of that vision

• Ensure capabilities are developed and resources are aligned to support the strategy

• Attract, motivate, develop and retain highly skilled leaders; champion and model leadership development

• Create and sustain a work environment that drives associate engagement and enables business success

• Ensure appropriate processes are in place and executed to drive collaboration and alignment within the team and with the broader IT organization

• Serve as a role model and ensure all information security leaders are visible and effective partners with IT counterparts, broader Marriott stakeholders, and service providers



• Communication

o Effectively and articulately communicate strategies, goals, and business priorities to key stakeholders

o Communicate with key stakeholders in a clear, concise, and timely manner

o Present information to others in a convincing and engaging way

o Actively listen to and manage opposing viewpoints to build alignment and support for a solution, point of view, or course of action

o Effectively represent the Company and discipline to media and other public audiences

• Leading Through Vision and Values

o Model, coach, and hold others accountable for leading ethically and with a high degree of integrity

o Promote the Company’s vision and values and hold others accountable for incorporating these into strategies and programs

• Managing Change

o Communicate a compelling vision for change that generates commitment and action across the Company

o Model and coach leadership on managing stakeholder expectations during change

o Coaches others on developing strategies that support change initiatives across the Company

o Establish expectations for managing large‐scale change efforts across the Company

• Problem Solving and Decision Making

o Model and hold others accountable for contributing data‐driven suggestions, identifying strategic opportunities, and playing an active role in problem solving

o Evaluate how alternatives may impact Company outcomes, customers, and stakeholders

o Determine when to involve key stakeholders to gain alignment before making decisions impacting the Company or discipline

o Make key decision, develop strategies, and advise others on implementing solutions in a reasonable amount of time

• Professional Demeanor

o Exhibit behavioral styles that convey confidence and command respect from others; make a good first impression and represents the company in alignment with its values

• Strategy Development

o Set discipline strategies and hold others accountable for applying these to discipline and program initiatives

o Use data to thoroughly evaluate opportunities and coach others on focusing on those with the strongest business impact

o Develop global strategies that maximize competitive advantage, customer/stakeholder satisfaction, and profitability

o Communicate strategies and business cases to influence senior stakeholders and manage their expectations

Managing Execution

• Building a Successful Team

o Set the vision for department and make sure direct reports collaborate to achieve that vision

o Create high‐performing teams that maximize results for the Company

o Hold others accountable for coaching team members on how shared goals support Company and discipline success

o Reconcile competing expectations and priorities among continent and discipline teams

o Recognize achievements that support the Company and discipline

• Strategy Execution

o Lead discipline and program‐level strategic planning, budgeting, and goal setting

o Determine strategic business requirements and coordinate with internal and external partners to secure resources needed to complete the work

o Work toward achieving long‐range business objectives, taking into account available resources and constraints

• Driving for Results

o Create an environment that encourages excellence, innovation, and strong business performance

o Partner with Continent and discipline leaders to develop strategies that align with Company directives, account for industry and market trends, and promote business success

o Establish performance standards and monitors progress

o Lead discipline and/or program‐level financial critiques and audits to ensure compliance with business goals and operating budgets

Building Relationships

• Customer Relationships

o Coach others on creating innovative service strategies to maximize business results

o Maintain strong working relationships with Company, government, and industry contacts, as well as with high‐value customers/stakeholders

o Model and holds others accountable for representing the Company in key community forums

o Manage relationships by balancing the interests of the Company and ownership groups

o Resolve escalated customer/stakeholder issues

• Global Mindset

o Coach direct reports and holds them accountable for ensuring that an environment where everyone is valued and included is integrated into all business processes

o Champion and hold direct reports accountable for promoting the Company culture of service, opportunity, respect, and fair treatment

o Ensure processes are in place to address any fairness issues

o Hold direct reports accountable for attracting, developing, and retaining diverse executive talent

o Build strategies and diverse partnerships across the Company to drive innovation and engagement

• Strategic Partnerships

o Build and use strategic partnerships to achieve goals

o Coach and hold others accountable for building strong working relationships

o Coach and hold others accountable for developing an open, trusting, and supportive work environment

o Facilitate cooperation among Continent, Corporate, and discipline leadership

Generating Talent and Organizational Capability

• Developing Others

o Model and hold direct reports accountable for developing others

o Contribute to the development of potential future senior leaders

o Systematically lead talent reviews and ensures succession plans are in place for key leadership positions

o Make effective executive hiring decisions at the most senior levels of the organization

o Facilitate successful on‐boarding of new executive hires

• Organizational Capability

o Ensure organizational structures, systems, and processes support business performance and innovation

o Build a high‐performing senior team with clear leadership accountabilities

o Hold leaders accountable for building teams with the appropriate mix of talent and skills to drive innovation and performance

o Model and hold direct reports accountable for effectively using meetings and other forums to regularly communicate

Learning and Applying Professional Expertise

• Business Acumen

o Use economic, financial, industry, and customer data to identify strategic business opportunities

o Define discipline and program standards and use key business metrics to evaluate performance

o Ensure discipline operations deliver financial results in line with budget expectations

o Prioritize expenditure needs to ensure the most impactful investments are made

o Ensure that Company resources are used effectively

•Continuous Learning

o Sponsor a learning strategy for the discipline and team and ensure implementation

o Hold others accountable for creating a positive learning environment for their teams

o Model and holds others accountable for evaluating own and others’ strengths and developmental needs

o Ensure processes are in place to facilitate stretch assignments and professional development

• Strategy Knowledge

o Show and coach others to develop a strong understanding of the operating principles, resource needs, terminology, and interdependence of all relevant business functions to inform Company strategy and enterprise‐wide platforms

Ensure compliance with contractual, legal, and regulatory requirements



Education and Experience


• 15+ years of relevant information security and IT operations experience with a minimum of 5 years at a VP/SVP level

• Experience leading teams within a managed services environment

• Experience implementing security technologies, including encryption, network security, intrusion detection and digital forensics

• Direct management of complex budgets in excess of $15M (operating and capital)

• Demonstrated success leading large, cross functional, sourced, or matrixed teams

• Proven track record in executive communications


• Bachelor’s degree in Computer Sciences or related field

• Current information security certification, including Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or Certified Information Systems Security Professional (CISSP)

• Demonstrated success establishing and executing technology strategies

• Experience establishing and migrating security programs to a Cloud-based environment

• Demonstrated success leading large scale initiatives/transformations across an enterprise

• Knowledge of IT security within an infrastructure environment

• ITIL v3 Enterprise experience

• Strong negotiating, influencing and problem resolution skills

• Proven ability to effectively prioritize and execute tasks in a high-pressure environment

• Knowledge of business environment, service requirements and hospitality culture

• Ability to translate information security objectives into mutually beneficial business strategies for the client organizations

• Demonstrated ability to assess customer/client needs, creatively approach solutions, decide and influence appropriate courses of action

• Deep understanding of IT financial structures and ability to manage to corporate financial practices and goals, including drivers of process cost

• Graduate/post graduate degree

Marriott International is an equal opportunity employer committed to hiring a diverse workforce and sustaining an inclusive culture. Marriott International does not discriminate on the basis of disability, veteran status or any other basis protected under federal, state or local laws.

Click here for more info:

• Location: Bethesda, District Of Columbia

• Post ID: 39562552 dc is an interactive computer service that enables access by multiple users and should not be treated as the publisher or speaker of any information provided by another information content provider. © 2018