Director, Information Security U.S. - Stamford CT
Be a part of a revolutionary change!
At Philip Morris International (PMI), we’ve chosen to do something incredible. We’re totally transforming our business and building our future on one clear purpose – to deliver a smoke-free future.
With huge change, comes huge opportunity. So, if you join us, you’ll enjoy the freedom to dream up and deliver better, brighter solutions and the space to move your career forward in endlessly different directions. Our success depends on people who are committed to our purpose and have an appetite for progress.
Our beautiful HQ in Stamford, CT is just steps away from the Stamford Metro-North Train Station and easily accessible from NYC.
About the Role
The Director, Information Security U.S. is responsible for delivering an effective information security capability that protects the confidentiality, integrity, and availability of PMI U.S. data, intellectual property, and Information & Technology assets across the U.S. region.
As a member of PMI’s Information Security senior leadership team, this role supports the Chief Information Security Officer by driving global security strategy and overseeing regional security operations. You will lead a team of Regional Information Security Officers and security services professionals, guide risk practices, and serve as the primary Information Security leader for the U. market.
A key focus will be harmonizing cybersecurity across the U.S. while allowing for local adaptations based on business needs and regulatory requirements. This role requires close collaboration with senior market leaders globally and strong alignment with PMI’s global Information Security teams.
About the Team
PMI’s Information Security organization is a well-established global function with a mandate to protect the company against evolving cyber threats. You will report directly to the Chief Information Security Officer and operate as part of PMI’s Global Information Security leadership team. This is an opportunity to make a significant impact within a complex, multinational environment.
Key Responsibilities
Regional Leadership (U.S. Focus)
Serve as the Head of Information Security for the U.S., building strong stakeholder relationships and promoting a secure-by-design mindset. Advise senior market leadership and key stakeholders on cyber risks and priorities across regions. Represent regional needs and viewpoints in global security strategy discussions.Global Security Strategy & Governance
Contribute to developing and implementing PMI’s global security strategy from a regional perspective. Strengthen affiliations with IT leadership, assurance teams, and the broader Information Security organization. Support the definition of the cyber risk program and ensure alignment with regional business needs. Drive continuous improvement of security governance structures across regions and report updates to global committees and regional leaders.Program Delivery & Harmonization
Lead execution of the Global Security Program and harmonize security practices and maturity across markets. Partner with global teams to implement a regional security engagement strategy. Ensure regional adherence to PMI’s security policies and standards, incorporating local regulatory requirements.Team Leadership
Manage Regional Information Security Officers and Regional Security Services teams. Enable markets to implement security practices that meet global standards and policies (“Build Secure”). Ensure completion of cyber risk and maturity assessments across all regions (“Stay Secure”).Risk Management & Incident Response
Oversee identification and management of cyber and information security risks in alignment with PMI’s risk appetite. Lead regional execution of cyberattack simulations, table‑top exercises, and crisis management activities. Strengthen security awareness and ownership through ongoing training and communication initiatives.AI & Emerging Technology Security
Shape PMI’s security strategy for AI/ML technologies, working with global InfoSec and IT Engineering teams. Help define governance frameworks for ethical and compliant AI implementation. Assess emerging AI-related risks and advise senior leaders on mitigations. Leverage AI-driven tools to enhance threat detection, anomaly monitoring, and predictive risk analysis.
Who we’re looking for:
16+ years of experience in information security, technology, or related fields, with a strong track record in security and risk leadership. Bachelor’s degree (Computer Science preferred). Proven ability to engage, influence, and communicate with top executives in global and domestic environments. Excellent written and verbal communication skills; ability to simplify technical concepts for non-technical audiences. Strong knowledge of relevant legal and regulatory requirements. Expertise with frameworks such as NIST, ISO 27001, SOX, PCI DSS, GDPR, COBIT, and ITIL. Exceptional leadership abilities, including motivation of interdisciplinary and geographically dispersed teams. Professional certifications such as CISSP, CISM, or similar are preferred. Ability to travel 10–15%. Fluent in English. Legally authorized to work in the U.S.
Annual Base Salary Range: $232,000-$290,000
What we offer
We offer a competitive base salary, annual bonus (applicable based on level of position), great medical, dental and vision coverage, 401k with a generous company match, incredible wellness benefits, commuter benefits, pet insurance, generous PTO, and much more! We have implemented Smart Work, a hybrid model of working that promotes flexibility in the workplace. Seize the freedom to define your future and ours. We’ll empower you to take risks, experiment and explore. Be part of an inclusive, diverse culture where everyone’s contribution is respected; Collaborate with some of the world’s best people and feel like you belong. Pursue your ambitions and develop your skills with a global business – our staggering size and scale provides endless opportunities to progress. Take pride in delivering our promise to society: To improve the lives of millions of smokers.
PMI is an Equal Opportunity Employer.
PMI is headquartered in Stamford, Conn., and its U.S. affiliates have more than 3,000 employees.
PMI has been an entirely separate company from Altria and Philip Morris USA since 2008. PMI’s affiliates first entered the U.S. market following the company’s acquisition of Swedish Match in late 2022. Philip Morris International and its U.S. affiliates are working to deliver a smoke-free future. Since 2008, PMI has invested $12.5 billion globally to develop, scientifically substantiate and commercialize innovative smoke-free products for adults who would otherwise continue to smoke with the goal of transitioning legal-age consumers who smoke to better alternatives. In 2022, PMI acquired Swedish Match – a leader in oral nicotine delivery – creating a global smoke-free champion led by the IQOS and ZYN brands. The U.S. Food and Drug Administration has authorized versions of PMI’s IQOS electronically heated tobacco devices and Swedish Match’s General snus as Modified Risk Tobacco Products and renewal applications for these products are presently pending before the FDA. For more information, please visit www.pmi.com/us and www.pmiscience.com.
#PMIUS #LI-MB1