Role Overview
We are seeking a senior‑level leader to oversee and advance our security engineering initiatives, leveraging AI responsibly to improve productivity, enhance security operations, and scale team effectiveness. The role involves guiding a team of security engineers, collaborating across the organization, and driving best practices for safe AI adoption.
Responsibilities
- Lead, hire, develop, and manage a team of security engineers through coaching, performance management, and career development.
- Develop and execute the security engineering roadmap, balancing risk reduction, operational effectiveness, and business objectives.
- Maintain security engineering services and controls that align with business objectives and industry best practices.
- Recommend improvements to security policies, standards, and procedures, including emerging AI‑related risks.
- Work closely with leadership and cross‑functional teams to align on security roadmap, plans, and vision.
- Guide technical decisions related to cloud security, application security, identity management, and emerging technologies.
- Lead risk assessments, threat modeling, incident response, and security investigations for production systems, cloud infrastructure, and new product initiatives.
- Build and nurture security vendor relationships to ensure effective supplier performance.
- Partner with Security, Compliance, Engineering, and IT stakeholders to support security awareness initiatives and promote secure engineering practices.
- Collaborate with Compliance and Audit teams to support security controls, audit readiness, evidence collection, and remediation activities.
- Drive adoption of DevSecOps practices, security automation, vulnerability management, secure‑by‑default engineering patterns, and secure code review processes.
- Establish operational metrics and reporting to measure the effectiveness of security controls, detection capabilities, and team performance.
Required Technical and Professional Expertise
- 8+ years of experience in cybersecurity, cloud security, application security, infrastructure security, or related domains.
- Bachelor's degree in Computer Science, Information Systems, or related field (or equivalent practical experience).
- Experience with modern programming or scripting languages (Python, Go, Java, Rust, Bash, or similar).
- Strong familiarity with SDLC processes and source control technologies.
- Deep understanding of DevSecOps, application security principles, secure software development practices, and modern software delivery environments.
- Ability to create scalable, repeatable, secure, and maintainable solutions.
- Experience with risk assessment & analysis, emergency preparedness, and investigations/incident management.
- Excellent communication and team relationship skills.
- Experience with SIEM, security monitoring, threat detection, incident response, and observability platforms in cloud environments.
- Experience securing cloud‑native environments, containerized workloads, Kubernetes platforms, CI/CD pipelines, and associated controls (vulnerability management, secrets management, workload protection).
- Experience with identity and access management technologies such as Okta, SAML, OAuth, Descope, and OIDC.
- Experience securing cloud platforms such as AWS and/or GCP, including IAM, network security, logging, monitoring, and native security services.
- Experience managing security programs and frameworks.
- Experience implementing security controls aligned with NIST CSF, SOC 2, HITRUST, ISO 27001, or CIS Controls.
- Certifications such as CISSP and/or CISM are a plus.
Compensation and Benefits
Pay ranges are determined by work location:
- San Francisco and Seattle: $202,000 – $323,000
- New York: $185,000 – $296,000
- Santa Monica: $168,000 – $269,000
- Other locations: $151,000 – $242,000
Additional compensation includes annual cash bonuses or commissions, equity grants for most positions, and generous benefits such as medical, dental, vision, 401(k) with match, ESPP, unlimited vacation, 13 paid holidays, 72 hours of sick leave, mental and financial wellness programs, fertility benefits, generous parental leave, pet insurance, supplemental life insurance, and company‑paid short‑term and long‑term disability.
EEO Statement
We’re committed to growing and empowering an inclusive community within our company and industry. The company hires diverse teams from all backgrounds, experiences, and perspectives. Women, people of color, LGBTQ+ community members, individuals with disabilities, and veterans are encouraged to apply even if they do not meet 100% of the criteria. All reasonable accommodations are provided for candidates with disabilities during recruitment.
Candidate Safety
Please be aware that all official communication will only come from company.com or addresses.
#J-18808-Ljbffr