682,237open jobs
39,519companies
99,018added this week
Browse all
Salary
$180k – $310k per year (Estimated)
Location
Remote (United States)
Seniority
Architect · 10+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is a Belgian recruitment platform built entirely around remote and flexible work, aggregating openings from thousands of employers that allow work from outside an office. Its matching engine ranks roles against a candidate's skills, seniority and stated preferences on location and flexibility, rather than leaving people to filter a keyword search, and it verifies how genuinely remote each posting is. The company also runs an AI screening layer that shortlists applicants for employers, and publishes research and guidance on distributed work practices alongside the job marketplace itself.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Director of Information Security based in the United States.

As Director of Information Security, you will lead and mature a growing security program at a critical stage of organizational expansion.

You will build on established ISO 27001 and SOC 2 foundations while developing a durable, operational security framework.

The role combines strategic leadership with hands-on ownership across cloud, infrastructure, networks, applications, and security operations.

You will strengthen governance, policies, risk management, compliance, incident response, and secure software development practices.

A key part of the position is partnering closely with Engineering and Product to make security an integrated and practical part of how technology is built.

You will also lead and develop the security team while communicating security risks and priorities clearly to executives and the board.

This is an opportunity to shape a high-impact security function within a rapidly scaling SaaS and technology environment.

Accountabilities:

    As the senior security leader, you will own the information security program end to end, balancing strong governance and risk management with practical security engineering and close partnership across the organization.

    • Own and continuously mature the information security program in alignment with ISO 27001 and SOC 2 requirements, including the transition to SOC 2 Type 2.
    • Develop, formalize, maintain, and operationalize security policies, standards, and procedures covering risk management, access control, incident response, third-party risk, change management, business continuity, and related areas.
    • Manage the internal control environment, including risk assessments, control testing, audit evidence, remediation tracking, and ongoing certification readiness.
    • Build and maintain effective relationships with external auditors, penetration testers, and security and compliance partners.
    • Own security across infrastructure, networks, AWS/GCP cloud environments, endpoints, and applications.
    • Define the strategy and roadmap for identity and access management, cloud and network security, endpoint protection, vulnerability management, logging, monitoring, and incident response.
    • Establish and continuously improve secure SDLC practices, including threat modeling, secure code review, dependency and software supply-chain security, and CI/CD pipeline security.
    • Develop and maintain an effective incident response program, including response plans, tabletop exercises, and leadership during significant incidents.
    • Lead, coach, and develop the security team while establishing clear ownership, workflows, priorities, and operating standards.
    • Build a collaborative security culture that enables engineering teams to work securely without unnecessary friction or delays.
    • Define effective engagement models with Engineering and Product, including embedded reviews, self-service security tooling, and clear service-level expectations.
    • Serve as the primary security partner for Engineering, Product, IT, Legal, and executive leadership.
    • Translate technical security risks into clear business implications and provide pragmatic, risk-based recommendations to leadership and the board.
    • Support customer trust and commercial activities through security questionnaires, customer audits, trust-center initiatives, and related security engagements.
    • Establish measurable success criteria for security operations, including policy adoption, team ownership, audit readiness, incident response effectiveness, and security review efficiency.
    • Requirements:

      The ideal candidate combines deep information security expertise with proven leadership experience in a scaling SaaS environment, along with the ability to operate comfortably between technical teams, compliance stakeholders, and executive leadership.

      • Bachelor’s degree in Information Security, Computer Science, Computer Engineering, or a related field, or equivalent professional experience.
      • 10+ years of experience in information security, including at least 3 years in a leadership role with end-to-end ownership of a security program.
      • Direct operational experience with ISO 27001 and SOC 2, with a strong understanding of what maintaining audit readiness requires on an ongoing basis.
      • Strong technical expertise in cloud security, particularly AWS and/or GCP.
      • Strong understanding of network security and modern application security practices.
      • Experience with secure SDLC, application security tooling, and security practices across development and deployment environments.
      • Experience with container and Kubernetes security is a plus.
      • Proven experience building or rebuilding security policies, procedures, and operating processes within a scaling SaaS organization.
      • Demonstrated ability to build security teams and establish effective, collaborative relationships with Engineering and Product.
      • Strong understanding of how security tooling, automation, communication, and practical processes can drive adoption more effectively than policy alone.
      • Experience managing external auditors, penetration testers, and compliance vendors.
      • Excellent written and verbal communication skills, with the ability to communicate effectively with engineers as well as senior executives and board-level stakeholders.
      • Strong judgment and ability to make pragmatic, risk-based decisions in complex and rapidly changing environments.
      • CISSP, CISM, or a comparable security certification is a plus.
      • Experience with ISO 27701 is a plus.
      • Experience with the NIST Cybersecurity Framework is a plus.
      • Experience working in a post-certification, high-growth technology or SaaS environment is preferred.
      • Benefits:

        • Competitive compensation aligned with experience and qualifications.
        • Remote opportunity within the United States.
        • Opportunity to lead and shape a growing information security function.
        • Strategic and hands-on ownership across governance, cloud security, application security, infrastructure, and security operations.
        • Direct partnership with Engineering, Product, IT, Legal, and executive leadership.
        • Opportunity to influence security strategy and risk decisions at the organizational level.
        • Ability to build and develop a high-performing security team.
        • Opportunity to strengthen established ISO 27001 and SOC 2 programs and lead the path toward SOC 2 Type 2.
        • Collaborative environment focused on making security an effective enabler of technology development.
        • Opportunity to work in a rapidly scaling SaaS and cloud technology environment.
        • Professional growth through exposure to modern cloud, application, infrastructure, compliance, and security challenges.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
682,237 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$36k – $94k per year (Estimated) • Remote • Full-Time • Pune
JavaScript
PHP
PHP
Laravel
Xdebug
Databases
MySQL
PostgreSQL
Apache Kafka
Google BigQuery
Amazon Aurora
BigQuery
AI/ML
Copilot
Gemini
LLM
Frontend
Vue.js
Next.js
React.js
Mobile
React Native
DevOps
CI/CD
AWS
Kubernetes
Platform Engineering
Shift-Left
Amazon EKS
Cybersecurity
ISO 27001
SOC 2
Shift-Left Security
Analytics
Looker
Apply
$28k – $60k per year (Estimated) • In office • 5+ years exp • Bengaluru
Python
Databases
DynamoDB
AI/ML
Hadoop
Spark
AWS Bedrock
DevOps
Terraform
CloudFormation
Prometheus
CI/CD
AWS
Docker
Kubernetes
Grafana
AWS Lambda
Amazon EC2
Incident Management
Amazon S3
Apply
$28k – $64k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Bachelor's Degree • Bengaluru
Java
Java
Spring Boot
Databases
PostgreSQL
Oracle
Cassandra
Apache Kafka
DevOps
GCP
Datadog
Kong
Azure
CI/CD
AWS
Graylog
API Gateway
Apply
Data Engineer 3 4 hours ago
$24k – $57k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
Python
SQL
Scala
Databases
Snowflake
Databricks
Apache Kafka
Google BigQuery
BigQuery
AI/ML
Hadoop
Spark
DevOps
GCP
Azure DevOps
Azure
Git
AWS
Bitbucket
GitHub
Analytics
ETL/ELT
Management
Telegram
WhatsApp
Agile
Scrum
Kanban
Apply
Software Engineer 4 hours ago
$17k – $43k per year (Estimated) • In office • 1+ year exp • Bachelor's Degree • Bengaluru
Python
SQL
Python
Flask
FastAPI
Django
Databases
MySQL
PostgreSQL
DevOps
Rest API
Git
AWS
Apply
Senior Tax Analyst 5 hours ago
$75k – $120k per year • Equity • Remote • Full-Time • Bachelor's Degree
Apply
$200k – $250k per year • Remote • Full-Time • 7+ years exp
Python
Go
Rust
TypeScript
DevOps
Terraform
Helm
GitHub Actions
Istio
CloudFormation
Crossplane
Datadog
Pulumi
CI/CD
ArgoCD
AWS
Kubernetes
Amazon EKS
eBPF
GitHub
IAM
Cybersecurity
Wiz
Least Privilege
Apply
$138k – $246k per year • Remote • Full-Time • 7+ years exp • Bachelor's Degree
Management
Agile
Apply
$115k – $135k per year • Remote • Full-Time • 8+ years exp • Bachelor's Degree
Apply
$38k – $80k per year (Estimated) • Remote • Full-Time • 2+ years exp • High School Diploma
Management
Outlook
Apply
See all jobs
This is one of many
682,237 more open roles from verified company boards, updated every day.