429,021open jobs
14,503companies
63,779added this week
Browse all
Salary
$182k – $354k per year (Estimated)
Location
Remote (United States)
Seniority
Architect · 12+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match

ZIP

Zip is the AI platform for enterprise procurement, built for humans and agents working together. AI procurement orchestration, from intake to pay.

About Zip

Zip is the AI platform for enterprise procurement - built for humans and agents working together. By orchestrating procurement across teams, tools, and suppliers with the help of AI agents, companies can secure the resources they need to innovate faster than ever before.

The world’s most influential enterprises trust Zip, including T-Mobile, OpenAI, AMD, Mars, Dollar Tree, and more. Together they’ve saved over $8 billion and processed over $500 billion in spend. Zip’s team includes product leaders from Apple, Airbnb, and Meta, as well as former procurement leaders from United Health, Sanofi, MGM Resorts, Discover, and NASA.

Backed by Adams Street, Alkeon, BOND, CRV, DST, Tiger Global, and Y Combinator, Zip has raised $371 million, most recently at a $2.2 billion valuation and has been recognized by Forbes Fintech 50, Fast Company's Most Innovative Companies, Inc. Best in Business, and LinkedIn Top Startups.

Your Role

You will build and lead the enterprise security and IT operations system for Zip at a pivotal stage of scale. Zip operates a mission-critical enterprise SaaS platform, is rapidly expanding operations globally, and is building the governance and controls required for its next phase.

You will own a practical, engineering-oriented program spanning enterprise security governance, corporate security, detection and incident response, compliance and customer trust, and reliable employee technology. You will partner closely with Product and Engineering leaders responsible for the platform, and with Business Technology and Internal AI leaders building the systems and automations that run Zip.

Your first mandate is to make accountability unambiguous: understand the current program, agree boundaries with existing product/infrastructure security leadership, stabilize IT operations, and turn fragmented risks and services into one measurable operating model. You will lead by doing, while hiring and developing the team.

What you'll do

  • Own the enterprise security program. Establish strategy, risk appetite, policies, control framework, roadmap, metrics, executive reporting, and decision rights.
  • Clarify and operate the product/corporate boundary. Partner with Product Security to define who owns application security, cloud/production security, identity engineering, vulnerability management, detection/response, customer trust, and remediation.
  • Lead IT Operations and Engineering. Build a high-quality global service model across support, identity, endpoint, SaaS, collaboration, office/network, automation, asset lifecycle, and resilience. Separate frontline support from systems engineering and drive secure self-service.
  • Build detection and response. Define priority threats and crown jewels, improve telemetry and detection coverage, establish 24/7 response, run incidents and exercises, and ensure corrective actions prevent recurrence.
  • Own GRC, assurance, and customer trust. Maintain and streamline processes for SOC 1, SOC 2, ISO 27001, and IS 42001, prepare for future SOX/public-company controls, manage audits and findings, and enable fast, accurate customer security responses.
  • Secure AI and internal tools. Partner with internal teams to define the risk tolerance, framework, and infrastructure to securely deploy AI and business apps built in-house.
  • Drive EIAM and data protection. Mature joiner/mover/leaver, privileged access, service identities, access reviews, data classification, DLP, encryption/key management, retention/deletion, and sensitive-data controls.
  • Manage third-party and resilience risk. Mature TPRM by risk-tiering vendors, ensuring contractual and operational controls, defining service criticality/RTO/RPO, and maintaining crisis readiness.
  • Build the team and culture. Assess roles and capability gaps, hire selectively, develop leaders, create security/IT champions, and make the safe path the easy path.

What we're looking for

  • 12+ years across information security, security engineering, IT engineering/operations, risk, or related disciplines, including 5+ years leading teams in a high-growth B2B SaaS company.
  • Experience owning a broad enterprise security program and partnering deeply with Product/Engineering; credible across both corporate and product risk.
  • Demonstrated leadership of major incidents, detection/response, vulnerability management, identity, endpoint/SaaS, cloud and secure SDLC programs.
  • Practical experience with SOC 1/2, ISO 27001, privacy obligations, customer assurance, and audit remediation. SOX/public-company and ISO 42001 experience are valuable.
  • Strong technical judgment: can review architecture, challenge IAM and cloud decisions, understand application/data flows, and distinguish control evidence from real risk reduction.
  • History of scaling IT service delivery and systems engineering through automation, self-service, clear SLOs, and excellent employee experience.
  • Ability to create clear decision rights in a federated environment and influence executives and engineering leaders without relying on hierarchy.
  • Excellent written and incident communication; calm under pressure; high integrity and discretion.
  • AI-forward and hands-on: understands LLM/agent risks, MCP/tool access, prompt injection, data leakage, excessive agency, evaluations, and governance.

Nice to have

  • Experience at a procurement, fintech/payments, enterprise workflow, or data-sensitive SaaS company.
  • CISSP/CISM, cloud security, incident response, ISO lead implementer/auditor, or similar evidence of depth-certifications are not substitutes for outcomes.
  • Experience building an internal audit/SOX readiness program or operating through an IPO.
  • Experience integrating or consolidating security and IT organizations after leadership change.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
429,021 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
San Francisco
IT Manager 2 days ago
$88k – $256k per year (Estimated) • Remote/Hybrid • Full-Time • Tel Aviv
AI/ML
Model Context Protocol
LLM
Human-in-the-Loop
DevOps
Rest API
GitHub
Cybersecurity
Okta
ISO 27001
SOC 2
Zero Trust
Management
Linear
Slack
Notion
Google Workspace
Apply
$49k per year • In office • Full-Time • Gdańsk
AI/ML
Prompt Engineering
AI Agents
LLM
Apply
$80k – $138k per year (Estimated) • Equity • Remote/Hybrid • Munich
Python
SQL
AI/ML
AI Agents
Robotics
Digital Twin
Apply
$78k – $164k per year (Estimated) • Equity • Remote/Hybrid • Munich
Python
SQL
AI/ML
AI Agents
Robotics
Digital Twin
Apply
$80k – $203k per year (Estimated) • In office • Full-Time • Sydney
DevOps
Splunk
Azure
Cybersecurity
Microsoft Sentinel
ISO 27001
Apply
$75k – $90k per year • Remote/Hybrid • Full-Time • San Francisco
AI/ML
AI Agents
OpenAI
Marketing
LinkedIn
Apply
$300k – $350k per year • Remote/Hybrid • Full-Time • 8+ years exp
AI/ML
AI Agents
OpenAI
Marketing
Salesforce
LinkedIn
Apply
$300k – $350k per year • Remote • Full-Time • 8+ years exp
AI/ML
AI Agents
OpenAI
Marketing
Salesforce
LinkedIn
Apply
$185k – $260k per year • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • San Francisco
AI/ML
AI Agents
OpenAI
DevOps
Jenkins
Docker
Buildkite
GitHub
GitLab
Apply
$170k – $230k per year • Remote/Hybrid • Full-Time • 8+ years exp • San Francisco
AI/ML
AI Agents
OpenAI
Apply
$255k – $330k per year • In office • Full-Time • 15+ years exp • Bachelor's Degree • San Francisco
AI/ML
Supervision
Apply
$260k – $302k per year • Remote/Hybrid • Full-Time • 7+ years exp • San Francisco
Python
AI/ML
LLM
OpenAI
Apply
$401k – $445k per year • In office • Full-Time • San Francisco
AI/ML
ChatGPT
OpenAI
Post-training
LLM Guardrails
DevOps
Platform Engineering
Apply
$82k – $123k per year • In office • Full-Time • 2+ years exp • PhD • San Francisco • Chicago • New York
AI/ML
Claude
Claude Code
AI Agents
Agentforce
Apply
$82k – $123k per year • In office • Full-Time • 2+ years exp • PhD • San Francisco • Chicago • Boston • New York • Denver
AI/ML
Claude
AI Agents
OpenAI
Agentforce
Analytics
Tableau
Management
Slack
Google Workspace
Google Sheets
Apply
See all jobs
This is one of many
429,021 more open roles from verified company boards, updated every day.