Chanel Group Director, Cyber Risk & Security Engineering

Employment
Full-Time
Seniority
Director
Compensation
$127,000–195,000/year
Posted
Jun 29, 2026

About Chanel

Chanel is one of the world’s most revered luxury houses, founded by Gabrielle Chanel and distinguished by an enduring vision of elegance, freedom, and modernity. As an employer, the House brings together métiers ranging from haute couture, fashion and leather goods to fragrance, beauty, watches, and fine jewelry, offering employees the opportunity to contribute to a legacy defined by exceptional craftsmanship and creative audacity. Chanel values excellence, discretion, collaboration, and long-term development, fostering an environment where talent is nurtured and heritage is continually reinterpreted for contemporary clients. Its teams are united by a commitment to quality, innovation, and the timeless spirit of the brand.

Chanel seeks a Group Director of Cyber Risk & Security Engineering in New York City to lead enterprise information security strategy, governance, and risk management. Competitive base salary $127,000–$195,000.

Role & Responsibilities

  • Lead cyber risk identification, assessment, and prioritization activities to enable confident decision-making on remediation, acceptance, or risk transfer across the enterprise
  • Design and implement integrated security controls spanning digital infrastructure, cloud-native environments (Azure, AWS, GCP), networks, endpoints, and physical systems in close collaboration with engineering and operations teams
  • Translate technical risks and security requirements into actionable organizational behaviors, fostering a culture of secure operations and cyber resilience throughout the company
  • Develop, scale, and execute comprehensive security awareness programs targeting diverse audiences—technical and non-technical alike—driving measurable behavior change across corporate, retail, and operational environments
  • Establish and oversee identity and access management governance frameworks, ensuring timely, appropriate access provisioning while minimizing business friction and operational overhead
  • Conduct threat modeling, technical security assessments, and remediation planning; advise senior leadership on information security program maturity, gaps, and strategic priorities
  • Partner with cross-functional stakeholders including Technology, Legal, Operations, Retail, and global security teams to monitor risks at regional and global levels, driving consistent transformation and change management
  • Mentor and develop security engineering talent to support organizational growth and succession planning within the Information Security function
  • Communicate complex technical and cyber risk concepts clearly to executive leadership and non-technical stakeholders, translating technical detail into business impact
  • Act as a decisive technology leader, making rapid, informed recommendations within a complex, matrixed organization while demonstrating entrepreneurial spirit and calculated risk-taking

Qualifications

  • Minimum 10 years of hands-on experience in cyber security engineering, including designing, implementing, and managing enterprise security solutions
  • Advanced expertise in security engineering, governance, and cyber risk assessment across complex environments
  • Proficiency with cloud-native security across Azure, AWS, and GCP platforms
  • Practical experience with secure software development, DevSecOps practices, and infrastructure-as-code technologies (Terraform, Ansible)
  • Deep knowledge of security technologies including SIEM, EDR, PAM, firewalls, and encryption
  • Strong command of identity and access management (IAM) and data loss prevention (DLP) principles and implementation
  • Demonstrated expertise conducting threat modeling, technical assessments, and security remediation planning
  • Practical application of industry frameworks and standards: NIST 800-53, ISO 27001, CIS, and PCI DSS
  • Bachelor's degree in computer science, information technology, or equivalent discipline
  • Professional security certifications such as CISSP, CISM, or CISA (preferred)
  • Proven ability to lead and develop teams in a complex, multi-stakeholder environment
  • Strong business acumen and the ability to balance security requirements with operational efficiency

Skills

Cyber Security Engineering Security Governance & Risk Management Azure, AWS, GCP cloud security SIEM and EDR platforms Privileged Access Management (PAM) Data Loss Prevention (DLP) Firewall architecture and management Encryption technologies Terraform and infrastructure-as-code DevSecOps practices NIST 800-53 ISO 27001 CIS benchmarks PCI DSS compliance Threat modeling and assessment Identity and Access Management (IAM) Security awareness program development CISSP, CISM, or CISA certification Executive communication and stakeholder management Team leadership and talent development

Experience

Minimum 10 years of progressive experience in cyber security engineering and information security leadership, including hands-on involvement in designing and implementing enterprise-scale security solutions, conducting risk assessments, and building security awareness programs across complex, matrixed organizations with both corporate and retail operations. Experience leading security teams, driving governance initiatives, and translating technical security requirements into organizational policy and behavior is essential. Preferred experience includes managing security assessments in regulated industries, implementing cloud-native security architectures, and navigating multi-stakeholder environments to achieve security outcomes.

Education

Bachelor's degree in computer science, information technology, cybersecurity, or a related technical discipline. Equivalent professional experience may be considered in lieu of formal education. Security-specific professional certifications (CISSP, CISM, CISA) are strongly preferred.

Workplace

The successful candidate will be located in New York, New York, USA.

Compensation

The base compensation for this position ranges from USD 127,000 to USD 195,000 per annum.

Benefits

Wellbeing resources including dedicated paid time off for wellbeing (2-week August office closure) and wellbeing fund; family and caregiving benefits (parental leave, fertility support, MilkStork, Care.com membership); generous paid time off (vacation, holiday, sick, and volunteer days); 401(k) and additional incentives; robust healthcare (medical, dental, vision, MDLIVE virtual care, One Medical, Flexible Spending Accounts, Health Savings Account, Employee Assistance Program); life insurance, accidental death and dismemberment, short and long-term disability, health advocate, international business travel accident and medical insurance, commuter transit and parking benefits; access to employee resource groups; career development programs including Imagine Chanel People, Heart of Leadership coaching, and Bloom platform training; volunteer opportunities and charitable giving match through CHANEL Community.

Culture

Chanel fosters a culture of timeless creativity, exacting craftsmanship, and quiet excellence, where employees are encouraged to uphold the house’s heritage while contributing to its continued innovation. The workplace environment is refined, collaborative, and deeply committed to quality, offering professionals the opportunity to grow within a globally respected maison that values discretion, artistry, and long-term vision.

About Cerulean

Cerulean is the definitive career portal for the global luxury industry. We match exceptional professionals with exclusive opportunities at the world's most prestigious brands. From haute couture and fine watchmaking to prestige beauty, hospitality, and boutique retail, Cerulean centralises luxury employment to help you find the career for which you were destined.

Frequently Asked Questions

A.

The luxury industry is characterised by a diverse and nuanced nomenclature. Esteemed houses frequently employ proprietary terminology, and even within a single organisation like Chanel, titles may vary across global markets to reflect local conventions. To ensure absolute clarity, Cerulean assigns a standardised, industry-coherent canonical title to every listing. However, it is worth noting that this role is functionally synonymous with «Director of Cyber Security Engineering», «Head of Security Engineering & Risk», «Chief Security Engineering Officer», «Director of Information Security Engineering», and other variations. Our sophisticated search architecture anticipates these variations, ensuring that inquiries using related terms will seamlessly yield the exact roles you desire.

Chanel

Chanel Group Director, Cyber Risk & Security Engineering

New York, USA

Continue to the application.