Apply

Director, Security

Posted 2024-10-21

View full description

💎 Seniority level: Director, Minimum of 10 years

📍 Location: US

🔍 Industry: Identity security

🏢 Company: Veza Technologies, Inc.

⏳ Experience: Minimum of 10 years

🪄 Skills: LeadershipCybersecurityMicrosoft AzurePeople ManagementCross-functional Team LeadershipAzureCommunication SkillsAnalytical SkillsCollaboration

Requirements:
  • Bachelor's degree in Computer Science, Cybersecurity, or a related field; Master's degree preferred.
  • Minimum of 10 years of experience in information security, with at least 5 years in a leadership role.
  • Deep understanding of security principles, frameworks, and best practices (e.g., NIST, ISO27001, OWASP).
  • Strong knowledge of identity and access management, data protection, and cloud security.
  • Experience with security audits, risk assessments, and compliance management.
  • Excellent communication and interpersonal skills; ability to engage with diverse stakeholders.
  • Proven track record of building and leading high-performing security teams.
  • Relevant security certifications such as CISSP, CISM, or CISA are highly desirable.
Responsibilities:
  • Collaborate with product and engineering teams to embed security and privacy by design principles.
  • Conduct security audits and assessments of the platform to identify vulnerabilities.
  • Develop and implement internal security policies and ensure ongoing compliance with industry standards.
  • Manage third-party security risks and conduct regular risk assessments.
  • Deliver security training programs and foster a culture of security awareness.
  • Address advanced security-related customer queries and foster customer trust.
  • Ensure resilience of IT systems and monitor security events for potential threats.
Apply

Related Jobs

Apply

📍 United States of America

💸 139203 - 222725 USD per year

🏢 Company: csgcareers

  • Bachelor’s degree in Information Assurance, Computer Science, MIS, or a related field.
  • 10+ years of experience in IT with direct information security experience.
  • 5+ years of IT management experience.
  • 5+ years of governance, risk, and compliance experience.
  • Relevant IT and/or security certifications, including but not limited to CISSP, PCIP, PCI QSA.
  • Expert knowledge of compliance frameworks and regulations applicable to large, complex organizations.

  • Assist the Chief Information Security Officer in implementing the global security strategy.
  • Direct teams supporting Security Governance, Risk and Compliance, Data Privacy Operations, and Identity Security.
  • Provide guidance on security practices and oversee a staff of security professionals.
  • Manage and report enterprise security risk using various approaches.
  • Develop and maintain the information security management system and baseline.
  • Drive the evolution of the Governance, Risk, and Compliance practice.

LeadershipStrategyFinancial ManagementCompliance

Posted 2024-11-20
Apply
Apply

📍 United States

🧭 Full-Time

🔍 Security

🏢 Company: Coretek Services

  • Tenure in IT and security is relevant but not the deciding factor; breadth of experience and advisor mindset are crucial.
  • Experience in building or leading a security practice, designing secure architectures or programs.
  • MSP/MSSP experience preferred.
  • Ability to communicate effectively with IT and cyber security professionals.
  • Operational experience in IT security, including SOC operations or incident response.
  • Experience in compliance frameworks like NIST or ISO.

  • Support the CTO in the growth of the Coretek Security Practice.
  • Function as security evangelist, advisor, and product manager.
  • Advise customer senior leadership on security/risk program implementation.
  • Collaborate with internal SME teams and provide security advisory.
  • Lead MS security design workshops and participate in MSSP design and costing.
  • Manage Solution Architects focusing on security solutions.

LeadershipBusiness DevelopmentProduct ManagementStrategyBusiness developmentCompliance

Posted 2024-11-07
Apply
Apply

📍 United States

🧭 Full-Time

💸 $214,400.00 - $300,000.00 per year

🔍 Residential mortgage market software

🏢 Company: Snapdocs

  • Bachelor's degree in business administration or a technology-related field.
  • Minimum of 8 years of experience in risk management, information security, and managing product security, cybersecurity, IT support, and GRC at a B2B/enterprise software company.
  • 5+ years management experience.
  • Proven experience with SOC 2 and ISO 27001 audits.
  • In-depth understanding of common information security management frameworks (ISO, SOC, NIST).
  • Proficiency in contract and vendor negotiations, including managing services.
  • Experience with Agile software development methodologies.
  • Expertise in Cloud computing security.

  • Collaborate with cross-functional teams to assess and strengthen our overall security posture, ensuring alignment with the company’s priorities across product security, cybersecurity, IT support, and GRC.
  • Product Security: Partner with product and engineering teams to embed security into the design and development of features.
  • Cybersecurity: Lead the cybersecurity efforts to protect our data and infrastructure from emerging threats.
  • IT Support: Oversee the IT support team to ensure secure and efficient operations for internal stakeholders.
  • GRC: Manage governance, risk, and compliance efforts, ensuring the company meets industry regulations and audit standards.

LeadershipSoftware DevelopmentAgileCloud ComputingCybersecurityStrategyCollaborationAgile methodologies

Posted 2024-10-15
Apply
Apply

📍 Canada, US

🧭 Full-Time

💸 $241,000 - $345,000 CAD per year

🔍 Cybersecurity

  • Experience: 8+ years leading cybersecurity, detection and response, and/or corporate security programs including experience securing and/or defending large-scale web/cloud applications and infrastructure.
  • 4+ years experience managing individual contributors as well to include experience managing other managers.
  • Demonstrated experience in security operations teams with significant experience across the entire IR lifecycle, including running incidents, building threat detection capabilities, leveraging SIEM, and incorporating threat intelligence.
  • Passion for fostering psychological safety and stability in high stress environments.
  • Practical experience with common security infrastructure such as log/SIEM analysis systems, firewalls, identity and access management, vulnerability management, etc.
  • Practical experience with common Corporate Security practices endpoint, SaaS, and corporate IAM security.
  • Exposure to different software development life-cycles and product security programs.
  • Demonstrated software development experience with Go, Ruby on Rails, shell scripting, python, or other languages.
  • Exposure to digital forensics and incident response, including system forensics, memory forensics, network analysis, malware analysis, cyber threat intelligence, and log analysis.
  • Exceptional written and verbal communication skills with a strong sense of empathy and the ability to advocate for your team.
  • Experience collaborating across departments such as with internal business or engineering units, external incident response teams, and law enforcement throughout the entire incident lifecycle.
  • Experience working with and briefing executives, legal counsel, and public relations professionals during security incidents.
  • Experience collaborating on Bug Bounty disclosures and triaging reports.

  • Serving as a great people leader for the team, managing both ICs and managers, meeting with members 1-1 on a regular basis, giving guided performance feedback, and helping individuals plan and execute on their career development objectives.
  • Serving as the hiring manager for the team to bring in new engineers and analysts who not only complement the existing team's skills, but who also have new perspectives, ideas, and experiences.
  • Guiding the team's vision, helping build roadmaps, ensuring projects get staffed effectively, and setting priorities that align with both the team and the company's goals.
  • Establishing and maintaining intra-department, cross-department, and management level communications.
  • Provide leadership during and after security incidents both within the security operations team and cross-functionally across the company demonstrating a bias for action and critical prioritization.
  • Being passionate about creating and fostering good security practices and processes throughout the company.
  • Managing team budgets, external consultants, and service provider contracts.
  • Participate in an on-call rotation and contribute to ensuring the incident management process is streamlined and efficient for all of 1Password.
  • Develop and execute blameless mitigation and remediation plans to restore the confidentiality and integrity of compromised resources.
  • Pair with dedicated legal and privacy professionals to assess and mitigate business, technical, and regulatory risk.
  • Closely partner with existing application and product security teams to evaluate application security issues and drive long-term risk reduction through incident remediation.

LeadershipPythonSoftware DevelopmentCybersecurityRubyRuby on RailsGoCommunication Skills

Posted 2024-09-20
Apply