Director Cybersecurity

Location: United States - Minneapolis, MN

Pay: $172,100 - $275,600

Director of Cybersecurity

Organization Summary:

Tennant is a recognized leader in designing, manufacturing and marketing solutions for industrial and commercial markets, with more than $1 billion in annual revenues. With a vision to become a global leader in water-based sustainable cleaning and other technologies, Tennant creates innovative solutions, such as our ec-H2O products, that are changing how the world cleans.

Tennant employees work to create a cleaner, safer, healthier world. Tennant is a company that cares about what it's doing, and the sustainability of its products, and works every day to develop new solutions that clean exceptionally well, but don't damage the environment. Employees of Tennant Company work with a spirit of Stewardship. Very simply, Stewardship is a filter for our actions and decision-making, as we strive to leave things in better condition than when we found them.

Position Summary

Tennant is seeking an experienced, strategic and business-oriented Director of Cybersecurity to lead the enterprise cybersecurity program and advance Tennant’s global security posture. This role is accountable for setting cybersecurity vision, strategy, governance and operating priorities across the enterprise, ensuring Tennant’s people, data, systems, products and operations are protected from evolving cyber threats. This position reports directly to the CIO.

The Director of Cybersecurity serves as a senior enterprise leader, trusted advisor and primary representative for cybersecurity across IT, business functions, risk management, internal audit, legal, business continuity, executive leadership, and, as needed, Board-level forums. This leader translates cybersecurity risk into business terms, influences cross-functional action and drives measurable maturity across governance, risk and compliance, security operations, incident response, data protection, third-party risk and security culture.

Responsibilities:

  • Set the enterprise cybersecurity vision, strategy, operating model and multi-year roadmap aligned with business objectives, risk tolerance, regulatory expectations and industry frameworks such as NIST CSF and ISO 27001.
  • Provide enterprise leadership for cybersecurity governance, risk management, compliance, security operations, security architecture, vulnerability management, third-party risk, data protection and incident response capabilities.
  • Establish and mature cybersecurity governance forums, decision rights, risk acceptance processes, exception management, policies, standards, metrics and reporting mechanisms that strengthen accountability across the organization.
  • Advise executive leadership on cybersecurity risks, emerging threats, regulatory obligations, incident readiness, investment priorities and program maturity using clear, business-oriented communication.
  • Lead cybersecurity planning and execution across global business units and regions, balancing risk reduction, operational resilience, business enablement, product security and customer trust.
  • Oversee cybersecurity operations and partner with managed service providers, technology vendors, infrastructure teams, application teams and business leaders to ensure effective protection, detection, response and recovery capabilities.
  • Champion risk-based remediation of audit findings, control gaps, vulnerabilities and security exceptions through influence, prioritization, structured execution and sustained follow-through.
  • Develop and lead a high-performing cybersecurity team, including coaching, talent development, resource planning, vendor management and the effective use of external partners where appropriate.
  • Drive cybersecurity awareness and culture change across the enterprise by embedding security into business processes, technology decisions, employee behaviors and leadership routines.
  • Represent cybersecurity in strategic initiatives involving cloud, digital products, robotics, IoT, identity, network segmentation, data loss prevention, third-party assurance and evolving regulatory requirements.

Expectations:

  • Owns the enterprise cybersecurity program with accountability for cybersecurity strategy, maturity, risk reduction, regulatory readiness, operational resilience and measurable business outcomes.
  • Operates as an enterprise leader with the credibility, judgment and executive presence to influence senior leaders, business stakeholders, technology teams, external partners and governance bodies.
  • Serves as a primary point of escalation and decision support for significant cybersecurity risks, incidents, control gaps, exceptions, audit findings and regulatory matters.
  • Shapes long-term cybersecurity strategy, investment priorities, operating capabilities, and maturity goals in partnership with IT and business leadership.
  • Navigates complex, ambiguous and resistant organizational environments with persistence, diplomacy, structured remediation and strong change leadership.

Qualifications:

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Risk Management, or a related field required; advanced degree preferred.
  • Advanced cybersecurity, risk, or governance certifications such as CISSP, CISM, CISA, CRISC, GIAC, or equivalent preferred.
  • Deep knowledge of cybersecurity strategy, governance, risk management, security operations, incident response, privacy, regulatory compliance and enterprise technology risk across global environments.
  • Strong understanding of security frameworks, standards and regulatory expectations, including NIST CSF, ISO 27001, CIS Controls, PCI DSS, GDPR, SOX and industrial or connected-product security considerations.

Experience:

  • 10+ years of progressive experience in cybersecurity, information security, technology risk, IT infrastructure, or related disciplines, including significant leadership experience.
  • Demonstrated success leading or materially advancing enterprise cybersecurity programs, including strategy, governance, operations, risk management, incident response and compliance capabilities.
  • Experience presenting cybersecurity risks, program maturity, incident readiness, investment priorities, and key performance or risk indicators to senior executives and governance forums.
  • Experience leading teams directly and indirectly, including coaching technical and non-technical contributors, influencing cross-functional stakeholders, and managing vendors or managed security service providers.
  • Experience with enterprise security platforms and services such as EDR/XDR, MDR/SIEM/SOC, vulnerability management, identity and access management, email security, network security, data loss prevention and GRC tooling.
  • Experience in manufacturing, industrial technology, IoT, robotics, connected products, or similarly complex global operating environments preferred.

Additional Knowledge & Skills

  • Executive-level written, verbal and interpersonal communication skills, including the ability to translate complex cyber risk into concise business language.
  • Strong executive presence, judgment and credibility with senior leaders, business stakeholders, auditors, regulators, customers and external partners.
  • Ability to influence without direct authority and drive action across complex, matrixed, and globally distributed teams.
  • Strong business acumen with the ability to balance cybersecurity, risk reduction, investment discipline, business enablement and operational resilience.
  • Demonstrated ability to build structure, governance, metrics and sustainable processes in developing or maturing cybersecurity functions.
  • Ability to prioritize and execute in a high-pressure environment while maintaining focus on long-term strategy, talent development, continuous improvement and enterprise partnership.

Total Compensation = Pay range + Benefits

Posted salary ranges are made in good faith. Tennant Co. reserves the right to adjust ranges depending on the experience/qualifications of the selected candidate as well as internal and external equity. The salary range reflects both entry into the role and future growth. Total Compensation = Base Salary + Benefits

Benefits = A comprehensive benefits package including multiple medical plan options, 401(k) with a 100% match up to 6%, paid vacation time, 8 paid company holidays and 3 personal holidays dental and vision coverage, wellness rewards, robust family support programs, company‑paid disability and life insurance, and a full Employee Assistance Program.

Defining Our Employee Value Proposition

At Tennant Company, we…

Discover fulfilling work with opportunities for growth and meaningful recognition.
Drive the quality and innovation our customers rely on in our products and services.
Connect with people who care about each other, our brands and our communities.

These are the principles that define how our employees experience Tennant Company, make Tennant a great place to grow your career, and are at the core of our legacy and future. Together, they serve as guideposts for working with our customers, our partners and one another.

Begin your journey with us. Let's reinvent how the world cleans.

Equal Opportunity Employer

Tennant Company is an equal opportunity employer. Employment decisions are made on the basis of individual skill, ability, reliability, productivity, and other factors important to performance. We do not discriminate on the basis of race, color, creed, religion, sex, national origin, physical or mental disability, age, veteran status, pregnancy, sexual orientation, genetic information, gender identity, or any other basis protected by state or federal law or local ordinance.

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available