What's Happening?
Kia America is actively recruiting for a National Manager, Information Security, a key leadership role focused on strengthening the company's cybersecurity posture across North America. This position is responsible for leading the Governance, Risk, Compliance
(GRC), Cyber Resilience, Security Awareness, and Security Program Management activities. The National Manager will maintain Information Security policies, standards, procedures, and guidelines, manage the Information Security Management System (ISMS), and coordinate activities for the Information Security Management Committee (ISMC). A critical aspect of the role involves ensuring ongoing ISO27001 certification readiness and managing internal and external security audit activities, including the coordination of remediation efforts for any audit findings. The role also entails monitoring regulatory and compliance requirements impacting cybersecurity programs and owning the enterprise cybersecurity risk management program, facilitating periodic risk assessments and treatment planning.
Why It's Important?
This hiring initiative underscores Kia America's commitment to robust cybersecurity in an increasingly digital and interconnected automotive industry. The National Manager will play a pivotal role in protecting sensitive data, intellectual property, and operational systems from cyber threats, which is crucial for maintaining consumer trust and business continuity. Effective cybersecurity governance, risk management, and compliance are essential to navigate complex regulatory landscapes and mitigate financial and reputational damage from security breaches. The focus on ISO27001 certification readiness highlights an adherence to international best practices in information security, which can enhance Kia's standing as a reliable and secure brand. Furthermore, managing third-party risk and developing cyber resilience programs are vital for safeguarding the entire supply chain and ensuring the company's ability to recover from cyber incidents, thereby protecting its U.S. operations and customer data.
What's Next?
The selected National Manager will be tasked with leading the execution of strategic cybersecurity initiatives, coordinating North America Information Security Workshops, and facilitating collaboration among Kia's security teams across the U.S., Canada, Georgia, and Mexico. They will drive regional security maturity improvement initiatives and manage key cybersecurity program milestones and deliverables. The role also involves developing and managing the Cyber Resilience Program, including leading Executive Cyber Table Top Exercises and coordinating cyber incident response simulations. Additionally, the National Manager will lead enterprise Security Awareness programs, manage new-hire security training, and develop executive cybersecurity dashboards and KPI reporting. This comprehensive approach aims to continuously enhance Kia America's cybersecurity defenses and ensure compliance with evolving security standards and regulations.
Beyond the Headlines
The creation of such a high-level cybersecurity position reflects a broader trend across industries, particularly in automotive, where vehicles are becoming increasingly software-defined and connected. This connectivity introduces new vulnerabilities, making advanced cybersecurity measures indispensable. The emphasis on governance, risk, and compliance (GRC) indicates a shift from reactive security measures to a proactive, integrated approach that embeds security into the organizational fabric. The role's responsibility for third-party risk management is particularly significant, as supply chain attacks have become a major vector for cybercriminals. By strengthening its internal security leadership, Kia America is not only protecting its own assets but also contributing to the overall security of the automotive ecosystem, potentially influencing industry standards and best practices for cybersecurity in vehicle manufacturing and connected services.













