VP, Cybersecurity
Fannie Mae
- Location
- Washington, DC
- Work model
- On-Site
- Level
- Staff
- Posted
- Sep 3, 2026
Skills
About this role
Playing an essential role in the U.S. economy, Fannie Mae is foundational to housing finance. Here, your expertise can help fuel purpose-driven innovation that expands access to homeownership and affordable rental housing across the country. Join Fannie Mae to grow your career and help people find a place to call home.
Job Description
THE IMPACT YOU WILL MAKE The Vice President, Cybersecurity is a senior cybersecurity executive responsible for helping define and execute Fannie Mae's enterprise cybersecurity strategy. This leader will oversee a broad portfolio of cybersecurity capabilities and programs designed to protect the organization's information assets, technology platforms, business operations, customers, and reputation. The VP will provide strategic leadership across cybersecurity domains, which may include security architecture, engineering, operations, cyber risk management, governance, data protection, cloud security, vulnerability management, and emerging security technologies. The role is responsible for ensuring cybersecurity capabilities remain effective, scalable, resilient, and aligned with business objectives in a complex on-premises, cloud, and hybrid technology environment. This executive will partner closely with business, technology, and risk leaders to strengthen the organization's security posture, drive modernization initiatives, enhance cyber resilience, and ensure compliance with applicable regulatory and industry requirements. The VP will foster a culture of security, operational excellence, innovation, and continuous improvement while leveraging data, automation, and emerging technologies to improve cybersecurity outcomes across the enterprise. Lead and develop high-performing cybersecurity teams responsible for the strategy, design, implementation, operation, and continuous improvement of enterprise cybersecurity capabilities. Establish and execute enterprise cybersecurity strategies, roadmaps, and programs that align with organizational priorities, business objectives, and evolving threat landscapes. Provide cross-functional leadership across multiple cybersecurity disciplines, which may include security engineering, cyber risk management, governance, security architecture, data protection, cloud security and vulnerability management. Provide executive leadership for emerging cyber risks, including those associated with AI, automation, and advanced digital technologies, ensuring the organization's security posture evolves to address changing threats and business opportunities. Partner with technology and business leaders to integrate security into enterprise initiatives, digital transformation efforts, and emerging technology strategies. Oversee the development, implementation, and maturity of cybersecurity capabilities that protect enterprise infrastructure, applications, data, users, and cloud environments. Ensure effective cyber threat monitoring, intelligence, detection, incident response, crisis management, and recovery capabilities across the organization. Drive cyber resilience and operational readiness through proactive risk management, security assessments, testing, and continuous improvement programs. Lead the development and execution of cybersecurity governance frameworks, standards, policies, and operating models that support regulatory, compliance, and business requirements. Provide executive oversight of cybersecurity risk management activities, audits, assessments, and remediation efforts, ensuring timely resolution of identified issues. Partner with enterprise risk, compliance, legal, and audit functions to maintain alignment on cybersecurity priorities, controls, and regulatory obligations. Oversee cybersecurity metrics, reporting, analytics, and data-driven decision-making capabilities that enable effective monitoring of security performance and risk. Promote the adoption of innovative technologies, automation, and modern security practices to improve operational