
Director, Apps and Systems Security
Job Description
About Fordham
The University offers a comprehensive benefits package that includes medical, dental, and vision insurance; flexible spending accounts; retirement plans; life insurance; short and long-term disability; employee assistance program (EAP); tuition remission; and generous time off.
Successful candidates should have a knowledge of and commitment to the goals of Jesuit Education.
Title of Position
Director, Apps and Systems SecurityPosition Number
A02445FLSA
ExemptScheduled Hours Per Week
35Department
Information ServicesCampus
Rose HillWork Arrangement
HybridHybrid Policy:
Please review the Hybrid Policy at www.fordham.edu/hybridpolicy.Position Summary
This position ensures that security principles are integrated into the configuration of systems and the development and deployment of web applications across all stages. Additionally, this position collaborates closely with application and engineering teams to proactively address current and potential security threats and oversees the University’s system configuration management, maintains a secure Software Development Life Cycle (SDLC) program, and conducts regular audits, assessments, penetration tests, and vulnerability scans of systems and applications.
This position may require occasional evening, weekend, and holiday hours.
Essential Functions
Manages the overall system configuration to ensure security and compliance, and ensures security is a core component in system configurations and the development/deployment process of web applications at all phases.
Oversees the security aspects of running systems and applications in both Cloud and On-Prem environments.
Partners with application and engineering teams to safeguard against existing and emerging security threats.
Implements vulnerability scanning of applications to detect potential security issues and leads penetration testing initiatives to identify vulnerabilities.
Crafts communications strategies by developing key messaging elements and channels, establishing timelines for agreed-upon actions, and overseeing the execution of the strategy.
Is responsible for a secure Software Development Life Cycle (SDLC) program.
Performs periodic audits and assessments for system and application security.
Negotiates with vendors, partners, and internal departments to achieve optimal security outcomes.
Essential Functions Note
This list is not intended to be an exhaustive list.The University may assign additional related duties as necessary.
Management Responsibilities
Guides work of other employees who perform essentially the same work and/or student workers. Organizes, sets priorities, schedules and reviews work, but is generally not responsible for final decisions in hiring, performance management or compensation.Additional Functions
Required Qualifications: Education and Experience
Minimum of six years of IT resource and security management experience, including performing Threat Modeling and integrating these practices into the product lifecycle, conducting Attack and Penetration assessments and reviews, implementing a successful, highly automated SDLC program and using application vulnerability scanning products and Security Information and Event Management (SIEM) tools.
Required Qualifications: Knowledge and Skills
Knowledge of cloud computing, virtualization, Cybersecurity framework (CSF), and ITIL framework.
Proven ability in leading teams focused on System Security Architecture, Secure Development Lifecycle Management, Application Security (Web and Mobile), Cloud Technology and Security, Risk, and Compliance.
Proficiency in penetration testing.
Excellent verbal and written communication skills, including public speaking experience.
Strong analytical and problem-solving abilities.
Effective customer focus and management of client expectations.
Excellent collaboration and team-building capabilities.
Good organizational and time management skills.
Demonstrated ability in consensus building across business and technology teams.
Proven ability to develop and maintain vendor relationships.
Preferred Qualifications
Previous experience in roles such as network, server, database, or application administration.
Proficiency in using Project Management tools, such as Microsoft Project.
Possession of relevant information security certifications, including but not limited to CISSP, CISM, CCSP, CISA, or GIAC.
Minimum Starting Salary
$128,000Maximum Starting Salary
$160,000Note
Salary is commensurate with qualifications, experience, and skills.Is this a Union position?
NoPosting Number
A885PNumber of Vacancies
1Start Date
N/APosting Date
09/25/2025EEO Statement
Fordham University is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristic protected by law.
Sitting
Nearly ContinuouslyRepetitive Hand Motion (such as typing)
OftenHearing, Listening, Talking
OftenStanding
SeldomWalking
SeldomRunning
Not RequiredBending, Stooping, Kneeling, squatting, Crouching, Crawling
Not RequiredClimbing stairs
Not RequiredClimbing ladders
Not RequiredReaching overhead
Not RequiredPulling, pushing
Not RequiredShoveling
Not RequiredLifting – up to 20 pounds
Not RequiredLifting – up to 50 pounds
Not RequiredLifting – over 50 pounds
Not RequiredWork Environment
Office Environment: Employees are protected from weather conditions or contaminants, but not necessarily occasional temperature changes.*Please mention you saw this ad on FacultyHiring.*
Be Seen By Recruiters at the Best Institutions
Create a FREE Profile to be Seen!
