Deputy Chief Information & Security - Officer Operations
Date: Jun 10, 2025
Location: USA Home Office, --, US, NA
Company: Dentsply Sirona, Inc
|
Dentsply Sirona is the world’s largest manufacturer of professional dental products and technologies, with a 130-year history of innovation and service to the dental industry and patients worldwide. Dentsply Sirona develops, manufactures, and markets a comprehensive solutions offering including dental and oral health products as well as other consumable medical devices under a strong portfolio of world class brands. Dentsply Sirona’s products provide innovative, high-quality and effective solutions to advance patient care and deliver better and safer dentistry. Dentsply Sirona’s global headquarters is located in Charlotte, North Carolina. The company’s shares are listed in the United States on NASDAQ under the symbol XRAY.
Bringing out the best in people
As advanced as dentistry is today, we are dedicated to making it even better. Our people have a passion for innovation and are committed to applying it to improve dental care. We live and breathe high performance, working as one global team, bringing out the best in each other for the benefit of dental patients, and the professionals who serve them. If you want to grow and develop as a part of a team that is shaping an industry, then we’re looking for the best to join us.
Working at Dentsply Sirona you are able to:
Develop faster - with our commitment to the best professional development.
Perform better - as part of a high-performance, empowering culture.
Shape an industry - with a market leader that continues to drive innovation.
Make a difference -by helping improve oral health worldwide.
|
Scope: The Senior Director, Cyber Security Operations (Deputy CISO - Operations) leads the tactical execution of cybersecurity operations across the enterprise, with a focus on detection, response, and secure architecture. This role is responsible for managing the Security Operations Center (SOC), Incident Response (IR), and Security Architecture & Engineering (SAE), including coverage of enterprise infrastructure, cloud environments, and product ecosystems. The Deputy CISO – Operations also owns the hybrid SOC model, integrating internal teams with MSSP/MDR partners to deliver 24/7 visibility and rapid response.
Responsibilities:
- Define and execute a strategy to mature Dentsply Sirona’s Detection and Response capabilities into a modern, hybrid Detection and Response organization responsible for 24/7 coverage across enterprise, cloud, and product ecosystems.
- Provide day-to-day leadership and oversight of internal Detection and Response teams, while governing MSSP/MDR partners to ensure accountability, integration, and performance aligned to business needs.
- Serve as Incident Commander for major cybersecurity incidents and product-related breaches, coordinating both internal and external resources to minimize impact and ensure timely containment and recovery.
- Build and maintain tailored detection, prevention, and response capabilities mapped to the MITRE ATT&CK and D3FEND frameworks, spanning IT, OT, cloud, and product telemetry.
- Drive automation across detection, triage, and response using SOAR platforms; develop and manage automated playbooks for enterprise and product environments.
- Analyze incident trends, threat intelligence, and operational metrics to identify systemic issues and enable informed decision-making across Cybersecurity and the broader Global Security function.
- Oversee documentation governance, ensuring all SOC/IR policies, procedures, runbooks, playbooks, and engineering standards remain current and aligned with evolving threats, compliance, and business priorities.
- Define and report performance metrics and KPIs for Detection and Response effectiveness, including time to detect (TTD), time to respond (TTR), SOC coverage, MSSP SLA adherence, and product monitoring uptake.
- Leadership. Lead by example. Oversee experienced level senior leaders and professionals. Advise team(s) on complex matters. Lead the performance feedback process, sets performance and development goals, regularly provides feedback. Develop, motivate, inspire, and empower others. Recognize success and make hard decisions.
- Mentor, coach, and grow a high-performance team culture across SOC, IR, and Security Architecture & Engineering (SAE), ensuring career development and role clarity.
- Drive fusion and integration with Product Security, Information Technology, Legal, Privacy, and Communications to ensure a unified threat detection and incident response capability across the enterprise and product lines.
- Coordinate with product engineering teams and MSSP partners to onboard product telemetry, enrich contextual detections, and build product-specific IR playbooks.
- Engage with external consultants and technical service providers to support escalated investigations, penetration tests, red team exercises, and readiness assessments.
- Additional responsibilities as assigned by the CISO to support strategic and operational cybersecurity initiatives
Education and Experience:
- Education: Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical field (Substitution: 5 years of directly relevant experience may be substituted for a bachelor’s degree)
Years and Type of Experience (Desired):
- At least 10 years of experience in cybersecurity operations, incident response, or security architecture
- At least 10 years of experience leading cybersecurity teams, including direct leadership of managers and cross-functional teams
- Demonstrated experience managing MSSP/MDR providers or operating in a hybrid SOC model
- Strong familiarity with:
- NIST CSF 2.0 and NIST SP 800-61 (Incident Handling Guide)
- MITRE ATT&CK framework
- CIS Controls v8.1
- Ability to write clear strategy and process documentation and experience championing new initiatives
- Ability to lead thru influence, bring people together and effectively resolve conflicts
- Experience hiring globally, managing, developing and retaining top cybersecurity talent
(Preferred)
- Master’s degree in Cybersecurity, Business Administration (MBA), or a related discipline (Substitution: 10 years of directly relevant experience may be substituted for master's degree)
- One or more industry-recognized certifications:
- CISSP – Certified Information Systems Security Professional
- CISM – Certified Information Security Manager
- GIAC certifications (e.g., GCIA, GCIH, GNFA)
- OSCP – Offensive Security Certified Professional
- Hands-on experience with:
- SOAR platform deployment and playbook development
- Security monitoring for connected products, cloud, and OT/IoT environments
- Familiarity with ISO/IEC 27001 and incident reporting requirements under HIPAA, GDPR, SEC, or FDA 524B
- Ability to lead effectively under pressure and during high-impact cyber incidents
- Ability to communicate technical concepts to non-technical and executive stakeholders
- Ability to align day-to-day operations with strategic cybersecurity and business objectives
- Ability to collaborate across IT, product, engineering, legal, compliance, and business teams
- Ability to build scalable and continuously improving detection and response capabilities
- Ability to prioritize and manage multiple competing demands in a global enterprise environment
- Knowledge
- Deep understanding of cybersecurity operations, incident response, and threat detection methodologies
- Expertise in cybersecurity frameworks such as NIST CSF 2.0, NIST SP 800-61, MITRE ATT&CK, MITRE D3FEND, and CIS Controls v8.1
- Strong knowledge of SIEM, SOAR, EDR/XDR, IAM, and network defense technologies
- Familiarity with secure cloud and hybrid architecture, including AWS and Azure
- Understanding of regulatory and industry standards (HIPAA, GDPR, ISO/IEC 27001, FDA 524B)
- Awareness of product security risks, telemetry integration, and monitoring for connected or regulated devices
- Skills:
- Leadership and team development, including direct management of managers and cross-functional technical teams
- Advanced incident handling and cyber crisis management, including executive-level communication
- MSSP/MDR management and hybrid SOC operations oversight
- Detection engineering and threat analysis across enterprise and product environments
- SOAR platform integration and automation of response playbooks
- Development and maintenance of response documentation, runbooks, and playbooks
- Operational metrics analysis and data-driven decision-making
- Program and project management in complex, fast-paced environments
- Abilities and Competencies
- Ability to lead effectively under pressure and during high-impact cyber incidents
- Ability to communicate technical concepts to non-technical and executive stakeholders
- Ability to align day-to-day operations with strategic cybersecurity and business objectives
- Ability to collaborate across IT, product, engineering, legal, compliance, and business teams
- Ability to build scalable and continuously improving detection and response capabilities
- Ability to prioritize and manage multiple competing demands in a global enterprise environment
- Strategic Thinking – Applies experience, knowledge, and perspective of business and external or global factors to create new perspectives and fresh thinking.
- Understands current skills, developments and trends in the industry; uses this information to anticipate and problem solve for customer needs.
- Adheres to the requirements, standards and regulations that govern the way we do business.
- Is authentic and transparent, even when it means admitting knowledge gaps or mistakes.
- Internationally and culturally aware
- Experience with communications and change management.
- Strategic focus with the ability to also operate tactically when needed
- Exceptional Analytical thinking with effective judgment and decision-making capabilities
- A positive approach and a can-do attitude in a fast-paced environment.
|
|
Dentsply Sirona is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, disability, or protected Veteran status. We appreciate your interest in Dentsply Sirona. If you need assistance with completing the online application due to a disability, please send an accommodation request to careers@dentsplysirona.com. Please be sure to include “Accommodation Request” in the subject. For California Residents: We may collect the following categories of personal information in connection with the submission of your resume or application materials to us for employment, and if hired, your employment with us: identifiers (e.g., name, address, email address, birthdate); personal records (e.g., telephone number, signature, education information, criminal background information, passport number and visa information); consumer characteristics (e.g., sex, marital status, veteran status, race, disability, sexual orientation); professional or employment information (e.g., resume, cover letter, employment history, background check forms, references, certifications, transcripts and languages spoken); and inferences from personal information collected (e.g., a profile reflecting abilities and aptitudes). The above categories of personal information are collected for the following business purposes: performing recruitment and hiring services; processing interactions and transactions (e.g., to comply with federal and state laws requiring us to maintain certain records, managing the workforce); and security (e.g., detecting security incidents, protecting against fraudulent or illegal activity). For additional details and questions, contact us at careers@dentsplysirona.com |
|