← All roles
CISO

Chief Information Security Officer

Wolfspeed · Manufacturing · 5,001-10,000 employees

Durham, NC · Onsite · full_time

CLI Career Level

Enterprise CISO

Moderate confidence

Opportunity Score

93/100

Exceptional

Moderate confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Aug 17, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — CISO (US)

CLI Take

Scope matches the title

CLI reads this as an Enterprise CISO mandate, consistent with how the employer has titled it. CLI's analysis of the posting describes a strategic build or transformation mandate, and it carries board-level exposure and carries CMMC and NIST 800-171 accountability. The reporting line, total compensation and team size are not disclosed and remain the main open questions before pursuing it.

Why this role scores the way it does

93/100 — exceptional opportunity quality. CLI reads this as an Enterprise CISO mandate. Strongest signal: CLI's analysis of the posting describes a strategic build or transformation mandate. 4 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

Enterprise CISO — The employer lists this as “Chief Information Security Officer”. CLI reads it as Enterprise CISO because the role shows global responsibility; responsibility across business units, board-level exposure expected, 5,001-10,000 employee organization.

Moderate confidence

What makes it attractive

  • CLI's analysis of the posting describes a strategic build or transformation mandate.
  • Board-level exposure is expected in the role.
  • The role carries more scope than the employer's title suggests.
  • Employer profile: 5,001-10,000 employee organization, publicly traded, revenue 250m 1b.

What to probe before applying

  • No material concerns identified in the posting.

Scoring components · Exceptional

Compensation versus comparable rolesNot disclosed · excluded from the score

Compensation is not disclosed and there is no comparable set to place it against.

Reporting levelNot disclosed · excluded from the score

Reporting line: not disclosed.

Functional and geographic scope64 · weight 12%

Scope language covers global responsibility; responsibility across business units.

Quality of the mandate100 · weight 12%

CLI's analysis of the posting describes a strategic build or transformation mandate.

Executive and board exposure100 · weight 10%

Board-level exposure is expected in the role.

Role authority versus title100 · weight 10%

The role carries more scope than the employer's title suggests.

Company scale and trajectory100 · weight 10%

Employer profile: 5,001-10,000 employee organization, publicly traded, revenue 250m 1b.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals100 · weight 5%

No adverse signals identified in the posting.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

No compensation disclosed and insufficient comparable data to estimate.

Sample size not yet sufficient for a market comparison

The CISO is responsible for developing, managing, and adopting cost-effective expense strategies for information security budgets.

See the full benchmark bands by level and region

The mandate

Lead the global enterprise information security and IT risk management program, specifically focused on protecting intellectual property and semiconductor designs. The CISO will establish a 'security-first' culture, manage the security organization, and report on risks to the Board and Executive Management.

Global remit covering IT risk, IP protection, and incident management; reports risk status to the Board and Executive Management. Responsibility includes hiring and mentoring the security team and managing third-party/managed service providers.

Scope

  • Board-level exposure expected

Domains and regulation

  • Enterprise Security
  • Cyber Defense
  • GRC
  • Third-Party Risk
  • Incident Response
  • Resilience
  • Infrastructure Security
  • CMMC
  • NIST 800-171
  • SOC 2

Requirements

Must have

  • 15+ years of experience in risk management, information security, and IT jobs.
  • 10+ years in a senior leadership role.
  • Professional certification such as CISSP or CISM.
  • Experience with NIST 800-171, ISO 27001, and CMMC frameworks.
  • Understanding of semiconductor industry threats and export control regulations.
  • Proven track record in High Tech or Semiconductor manufacturing environments.

Preferred / bonus

  • Nothing listed as optional.

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

Not stated in the posting: Specific reporting line (title of direct supervisor) is not stated.; Compensation range and benefits package not disclosed.; Size of the existing security team and specific budget figures are absent..

About Wolfspeed

Wolfspeed is a semiconductor manufacturer specializing in Silicon Carbide (SiC) and Gallium Nitride (GaN) technologies. The company supplies power and radio frequency (RF) components to the automotive, industrial, and defense sectors. It operates significant fabrication facilities in the United States and is currently expanding capacity to support the global electric vehicle market.

Industry
Manufacturing
Headcount
5,001-10,000 employees
Headquarters
Durham, NC
Founded
1987
Ownership
Public company · NYSE:WOLF
Funding
Publicly traded
Revenue
$250M – $1B

Full company profile for Wolfspeed →

View original job description
We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting our intellectual property, customer data, and digital assets from cyber threats. The CISO needs to build a strong “security-first” culture across the organization to ensure that security is at the centre of all products and services.This position requires a strong understanding of the semiconductor industry, strategic capabilities that can align our cybersecurity strategy and practices with our business model, objectives, and the risk universe we operate within globally.The role requires a blend of innovative thinking to lead our company staying ahead of the ever-evolving threat landscape, along with strategic planning, technical expertise, and leadership – to ensure our information security posture is robust and resilient against evolving cyber risks. The ideal candidate will have a proven track record in developing and implementing comprehensive security programs in High Tech or Semiconductor manufacturing environments.Key ResponsibilitiesDevelop, implement, and monitor a strategic, comprehensive enterprise information security and IT risk management program at a global scale – to ensure the integrity, confidentiality, and availability of information owned, controlled, or processed by the organization, including secrets, patents, and proprietary designsLead the enterprise's information security organization, including hiring, training, and mentoring a team of security professionals.Identify, evaluate, and report on information security risks timely, and in a manner that meets Executive Management and the Board’s expectations, meets the compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise.Design and implement protective measures for securing proprietary designs, patents, and other sensitive corporate information, considering the unique risks present in the semiconductor industry, given innovation and IP contributes materially to our company’s competitive advantage.Work directly with the business units to facilitate risk assessment and risk management processes, and work with stakeholders throughout the enterprise on identifying acceptable levels of residual risk.Ensure cybersecurity policies are in alignment with Enterprise business policies, IT policies and the global Enterprise Risk Management framework for Wolfspeed.Develop and manage information security budgets and adopt cost-effective expense strategies and practices – to reduce and mitigate identified risks.Establish and oversee the implementation of a cybersecurity incident management program that includes incident detection, response, mitigation, and recovery processes.Effectively align cybersecurity practices with overall crisis management and incident response strategies, test plans and tabletop exercises – to ensure business continuity for Wolfspeed in the event of a worst-case disaster scenario, whether or not triggered by a security incident.Liaise with external agencies, such as law enforcement and other advisory bodies as necessary, to ensure that the organization maintains a strong security posture against external threats.Conduct regular security audits, risk assessments, support annual financial and IT audit objectives, and ensure compliance with industry standards and regulatory requirements specific to the semiconductor industry.Champion cybersecurity awareness and training programs globally, across all levels of the organization.Ideal QualificationsBachelor's or Master's degree in Information Security, Computer Science, or related field.Professional security management certification, such as a CISSP, CISM, or similar.15+ years of experience in a combination of risk management, information security, and IT jobs, with at least 10 years in a senior leadership role.Experience with NIST (800-171) and ISO (27001) frameworks Experience with CMMC (Cybersecurity Maturity Model Certification) for USGOV Deep understanding of the evolving cybersecurity threats facing the semiconductor industry and experience in crafting strategies to mitigate these risks.Knowledge of relevant legal and regulatory requirements, including export controlsExperience with contract and vendor negotiations and management including managed services.Strong leadership skills and the ability to work effectively with business managers, IT engineering and IT operations staff, Wolfspeed’s vendors and suppliers.Excellent verbal and written communication skills, including the ability to explain technical concepts and technologies to business leaders, and business concepts to the IT workforce.This role may require additional duties and/or assignments as designated by management.We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.