Director, Security
Accountabilities Security Strategy and Leadership: Define and execute the organization's security strategy across cloud security, application security, security operations, and governance, risk, and compliance (GRC), ensuring consistent execution and measurable results.
Compliance and Risk Management: Lead initiatives to achieve and maintain certifications and frameworks such as SOC 2, ISO 27001, and HIPAA. Collaborate with Legal and commercial teams to translate regulatory requirements into actionable technical controls and business outcomes.
Team Building and Development: Recruit, mentor, and develop security managers and senior individual contributors while fostering a culture of accountability, technical excellence, collaboration, and continuous improvement across distributed teams.
Secure Product Development: Integrate security into the software development lifecycle through threat modeling, architecture reviews, secure development practices, and automated vulnerability scanning, enabling teams to innovate without unnecessary delivery bottlenecks.
Threat Detection and Incident Response: Strengthen monitoring, logging, alerting, and incident response capabilities. Establish operational metrics and improve mean time to detect (MTTD), mean time to respond (MTTR), and overall platform resilience.
Customer Trust and Vendor Risk: Represent security at the executive level in strategic customer discussions, support security due diligence, and oversee third-party vendor risk assessments to reinforce customer confidence.
Security Automation and Tooling: Expand security automation by integrating testing, policy enforcement, and security controls into CI/CD pipelines and deployment workflows.
Infrastructure Security: Provide architectural oversight across GPU clusters, network boundaries, identity and access management, backend services, and cloud infrastructure, applying zero-trust principles while supporting scalability and high availability.
Cross-Functional Collaboration: Partner with Infrastructure and Site Reliability Engineering teams to coordinate secure provisioning, network isolation, operational resilience, and infrastructure dependencies.
Performance Measurement: Establish and monitor security metrics, including patching service-level agreements, defect escape rates, and remediation progress, using data to guide prioritization and continuous improvement.
Requirements
Security Leadership Experience: At least 7 years of experience leading security teams, including managers and/or multiple squads, with a demonstrated ability to scale security organizations and deliver complex initiatives.
Cloud and Infrastructure Security: At least 8 years of experience building and securing SaaS, cloud platforms, or infrastructure products, with deep knowledge of cloud-native architectures, Kubernetes, Linux security, networking, and virtualization.
Strategic Program Management: Proven ability to take complex security initiatives from concept through execution while balancing risk, scope, timelines, and business priorities.
Remote Leadership: Experience building team culture, accountability, and execution momentum in a remote-first or distributed working environment.
Security Operations and Metrics: Strong understanding of operational security metrics, incident response, vulnerability management, and continuous improvement of security practices.
Communication and Stakeholder Management: Excellent written and verbal communication skills, with the ability to translate complex technical risks into clear business recommendations for executives and cross-functional stakeholders.
Technical Judgment: Ability to provide security guidance across infrastructure and product architecture while enabling engineering teams to move quickly and independently.
Preferred Cloud and Platform Expertise: Experience securing developer platforms, distributed computing environments, cloud infrastructure, or bare-metal systems used by technical customers.
Preferred AI Security Knowledge: Familiarity with AI/ML security challenges, including model protection, GPU cluster tenant isolation, and secure data pipelines.
Preferred Compliance and Startup Experience: A track record of scaling security teams and compliance programs in high-growth technology companies, particularly across SOC 2 and ISO 27001.
Additional Qualifications: Contributions to open-source security projects or recognized security research are advantageous. Successful completion of a background check is required.
Work Authorization: Candidates must be eligible to work in the United States. Employment visa sponsorship is not currently available.
Benefits
Competitive Salary: Annual base salary ranging from $125,000 to $220,000 , depending on experience, qualifications, location, and level. The final range will be determined during the interview process.
Equity Ownership: Stock options for every team member, providing an opportunity to share in the company's long-term growth.
Healthcare Coverage: Medical, dental, and vision insurance plans.
Flexible Time Off: Flexible paid time off to support rest, personal commitments, and work-life balance.
Remote-First Work Environment: Flexible remote working arrangements, supported by an inclusive and collaborative team culture.
Home Office Support: A $1,200 home office and equipment stipend to help establish a productive remote workspace.
Professional Growth: Opportunities to develop leadership capabilities, expand technical expertise, and contribute to the evolution of AI infrastructure security.
Innovation and Ownership: The opportunity to lead security strategy at a growing AI infrastructure company, with meaningful influence over platform resilience, customer trust, and organizational development.
How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1