Remote job
Director of Security Operations and Engineering
Job details
About this role
Role overview This is a senior leadership role that unifies security operations and security engineering under a single mandate: building a function that detects threats, responds to incidents, and increasingly prevents them from happening in the first place. Reporting to the CISO as part of the security leadership team, the position owns the people, platforms, and playbooks across detection, response, and the engineering work that makes those capabilities scale. The organization is expanding into more cloud, more products, and more acquired environments, so this is fundamentally a scaling role where the leader decides what to build, what to automate, and where to add headcount.
Responsibilities - Run incident response end to end, including intake, severity triage, partnership with Legal on investigations, after-action reviews, and continuous improvement. - Lead detection engineering, threat hunting, and the SIEM, EDR, SOAR, and cloud security platforms that support them. - Set and deliver the security engineering strategy focused on preventive controls, least privilege, and identity assurance across employees, contractors, and build systems. - Build and operate the insider threat program in partnership with HR, Legal, and IT. - Apply automation and agentic AI to extend analyst capacity while keeping analyst ownership of decisions. - Integrate acquired companies and new environments into a common security standard, partnering with IT and Product leadership to embed preventive controls into their platforms and roadmaps. - Define org design, operating rhythms, roadmap, budget, and vendor strategy so coverage grows with the business without growing linearly with headcount.
Requirements - 5+ years of management experience leading security teams. - 7+ years of hands-on experience in security operations, incident response, detection, or security engineering. - A track record of scaling a security function during rapid growth through hiring, automation, and operating discipline. - Strategic thinking that extends beyond the immediate role scope. - The ability to translate technical risk into business impact for executives, legal, customers, IT, and Product counterparts. - Comfort in a global, remote-first environment with flexible schedules and on-call responsibilities.
Nice to have - Hands-on scripting or automation experience in languages such as Python or Go. - Experience applying AI or agent-based automation to security workflows. - Cloud security experience and prior M&A security integration work. - Experience building an insider threat or identity assurance program.
Benefits and work setup Remote-first culture with access to an employee assistance program for health and wellness support, scheduled Wellness Fridays running through December 2026, and a benefits package designed to support work-life balance. Additional region-specific perks are available.