Senior Associate Vice President, Cyber Security (Remote)
The Opportunity
Hyatt Hotels Corporation seeks an AVP, Cyber Security to join our Cybersecurity organization. Reporting to the SVP and Chief Information Security Officer, you will work across Technology, Legal, Privacy, Risk, Human Resources, Compliance, hotel operations, franchisees, hotel owners, and strategic service providers to strengthen Hyatt’s global cyber defense capabilities. Chicago is the preferred work location; remote candidates may be considered for the right fit, with regular travel to Chicago and additional domestic or international travel as business needs require. You will be part of a team that is passionate about our purpose, committed to nurturing curiosity and new skills, and building connections across the organization with colleagues, customers, and guests.
Who We Are
At Hyatt, we believe in the power of belonging and creating a culture of care, where our colleagues become family. Since 1957, our colleagues and our guests have been at the heart of our business and helped Hyatt become one of the best and fastest-growing hospitality brands in the world. Our transformative growth and the addition of new hotels, brands, and business lines can open the door for exciting career and growth opportunities for our colleagues.
As we continue to grow, we never lose sight of what’s most important: People. We turn trips into journeys, encounters into experiences, and jobs into careers.
Why Now?
This is an exciting time to be at Hyatt. We are growing rapidly and are looking for passionate changemakers to be a part of our journey. The hospitality industry is resilient and continues to offer dynamic opportunities for upward mobility, and Hyatt is no exception.
How We Care for Our People
What sets us apart is our purpose—to care for people so they can be their best. Every business decision is made through the lens of our purpose, and it informs how we have and will continue to support each other as members of the Hyatt family. Our care for our colleagues is the key to our success. We’re proud to have earned a place on Fortune’s prestigious 100 Best Companies to Work For® list since 2013. This recognition is a testament to the tremendous way our Hyatt family continues to come together to care for one another, our commitment to a culture of inclusivity, empathy, and respect, and making sure everyone feels like they belong.
We’re proud to offer exceptional corporate benefits which include:
· Annual allotment of free hotel stays at Hyatt hotels globally
· Flexible work schedule
· Work-life benefits including wellbeing initiatives such as a complimentary Headspace subscription, and a discount at the on-site fitness center
· A global family assistance policy with paid time off following the birth or adoption of a child as well as financial assistance for adoption
· Paid Time Off, Medical, Dental, Vision, 401K with company match
Who You Are
As our ideal candidate, you understand the power and purpose of our culture of care, and embody our core values of Empathy, Inclusion, Integrity, Experimentation, Respect, and Wellbeing. You enjoy working with others, are results-driven, and are looking for a variety of opportunities to develop personally and professionally.
The Role
The AVP, Cyber Securitiy will translate cyber strategy into coordinated execution and lead an intelligence-driven, risk-informed threat-response model spanning threat intelligence, security operations and incident response, insider threat program development, exposure management, security automation, and the evolution toward an AI-enabled Security Operations Center.
· Serve as the CISO’s deputy and provide leadership continuity, translating cybersecurity strategy into priorities, roadmaps, operating rhythms, and measurable outcomes.
· Lead an integrated threat-response strategy connecting threat intelligence, security monitoring, incident response, insider threat, exposure management, automation, and AI-enabled defense.
· Lead Hyatt’s global Security Operations Center and supporting service-provider relationships while establishing the strategy, operating model, and roadmap for AI-enabled, agentic Security Operations.
· Establish responsible AI and agent for security operations, including human-in-the-loop controls, explainability, access boundaries, auditability, testing, escalation, and accountable response authority.
· Lead preparation for and response to material cyber incidents, bringing confident judgment, pace, accountability, and clear executive communication to incident response.
· Advance threat intelligence so insights directly inform detections, AI-assisted investigations, threat hunting, exposure prioritization, and business decisions around the clock.
· Build and mature a cross-functional insider threat program in partnership with Legal, Human Resources, Privacy, Compliance, Risk, Technology, and business leaders.
· Evolve vulnerability management into comprehensive exposure management across infrastructure, applications, cloud, SaaS, identities, externally facing assets, and third parties.
· Build a high-performing, inclusive leadership team; develop technical and leadership talent; and prepare the workforce for effective human-agent collaboration.
· Establish outcome-driven metrics for threat coverage, response performance, automation quality, agent effectiveness, analyst capacity, exposure reduction, resilience, and readiness.
· Support critical incidents outside standard business hours and travel as business needs require.
Experience Required
· Substantial proactive cybersecurity leadership experience in complex enterprise environments.
· At least five years of leadership experience in a Security Operations Center and cyber incident response.
· Demonstrated experience leading significant cyber incidents, investigations, containment, recovery, and post-incident improvements.
· Broad knowledge across threat intelligence, detection and response, exposure management, cloud, applications, identity, security engineering, cyber risk, and responsible AI-enabled security operations.
· Experience building or materially maturing security operations, operating models, processes, metrics, and teams, with the ability to lead a practical transition from traditional SOC operations toward AI-assisted and agentic workflows.
· Strong executive presence and the ability to communicate clearly with senior leaders, technical teams, business stakeholders, regulators, franchisees, hotel owners, and external partners.
· Demonstrated people leadership, including developing leaders, building succession depth, and leading organizational change.
· Ability and willingness to support critical incidents outside standard business hours and travel as business needs require.
Experience Preferred:
· Cybersecurity leadership experience in hospitality, travel, retail, financial services, or another global, consumer-facing industry.
· Experience in a global enterprise with distributed operations, franchise, affiliate, partner, or non-managed technology environments.
· Experience protecting loyalty platforms, payment ecosystems, digital commerce, consumer identities, or other high-value customer services.
· Experience evolving vulnerability management into enterprise exposure management, including offensive validation and attack-surface practices.
· Experience designing or introducing security automation, orchestration, advanced analytics, AI-assisted investigations, autonomous or semi-autonomous security agents, or an agentic SOC operating model.
· Experience establishing governance, performance measures, and safe adoption patterns for AI agents used in security operations.
· Bachelor’s degree in cybersecurity, information technology, engineering, business, risk management, or a related discipline, or an equivalent combination of education and relevant experience.
· Advanced degree is welcomed but not required.
· Relevant professional certifications such as CISSP, CISM, GIAC, or equivalent are preferred but not required for a highly qualified candidate.
These experiences are differentiators, not prerequisites. A candidate with strong enterprise cyber leadership and demonstrated learning agility can acquire Hyatt-specific context and emerging agentic SOC experience.
The position responsibilities outlined above are in no way to be construed as all-encompassing. Other duties, responsibilities, and qualifications may be required and/or assigned as necessary.
We welcome you:
Research shows that individuals tend to apply to jobs only if they meet all the listed job qualifications. Unsure if you check every box, but feeling inspired to enhance your career? Apply. We’d love to consider your unique experiences and how you could make Hyatt even better.
We value our relationships with recruitment partners and require that agencies contact us first before submitting any candidates. Hyatt will not be responsible for any fees and obligations associated with unsolicited submissions unless a formal agreement is in place.
The salary range for this position is $185,000 to $230,000. This position is also eligible to earn incentive awards and an annual bonus. The final pay rate/salary offered to the successful candidate will depend on experience, skill level and other qualifications for the role, as well as the location of the performance of work. Pay for the successful candidate will meet local requirements, including the local minimum wage rate.
Required Languages
🇬🇧 English