Director, Security Architecture – Vulnerability Management and Response

🕒 il y a 23 jours

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Omnissa

Omnissa

1001 - 5000 employés

🤖 Intelligence artificielle

🏢 Entreprise

🏥 Santé

Artificial Intelligence • Enterprise • Healthcare

Omnissa est une entreprise technologique qui propose une plateforme de travail numérique pilotée par l'IA, conçue pour améliorer l'expérience des employés et rationaliser les opérations informatiques. Leurs solutions incluent la gestion unifiée des terminaux, les bureaux et applications virtuels, et la conformité en matière de sécurité, avec pour objectif de favoriser une main-d'œuvre productive dans divers secteurs tels que la santé, les services financiers et le commerce de détail. L'approche innovante d'Omnissa offre des solutions sécurisées et natives dans le cloud qui s'adaptent aux besoins évolutifs des entreprises et de leurs employés.

Description

• Set the multi-year strategy and roadmap aligned to Omnissa's risk appetite and business objectives. • Lead, mentor, and grow a globally distributed team of senior security engineers and architects across AMER and APAC. • Serve as the senior escalation point for design conflicts and remediation prioritization decisions, and for security incidents surfaced through the vulnerability response (PSIRT) process. • Represent the function to executive leadership, translating technical risk into business terms and reporting on posture, progress, and investment needs. • Partner with all lines of business to establish security standards, perform architecture and design reviews, and embed security into every stage of design and implementation. • Drive security framework development, hardening standards, and policy adherence across the enterprise. • Conduct risk assessments and requirements gathering for new infrastructure, products, and services, ensuring controls are defined before deployment. • Partner closely with Product Security and engineering to define security architecture requirements across the SDLC and CI/CD ecosystem, including threat modeling, architecture standards, SAST, DAST, software composition analysis, secrets detection, and artifact/image signing, ensuring security controls are built into development and deployment workflows from design through release. • Drive secure-by-design practices across the enterprise, reference architectures, secure design patterns, and paved-road templates that make the secure path the default path for engineering teams, reducing reliance on after-the-fact review. • Own the end-to-end Exposure Management program, the tooling, scanners, processes, and SLAs that identify, prioritize, and remediate risk across all environments. • Own the enterprise PSIRT strategy, partnering with the team on intake, triage, and coordinated response for vulnerabilities in Omnissa products and services.

🎯 Exigences

• 10+ years in information security, including 5+ years leading technical security teams (engineering, architecture, and/or Exposure/Vulnerability Management), preferably at global SaaS companies. • Experience building and operating enterprise identity security strategy, including IAM/PAM architecture, authentication standards, and identity threat detection. • Deep hands-on background across multiple domains: cloud and network security, endpoint/workload protection, Exposure/Vulnerability Management, and Product Security/SDLC. • Working knowledge of data governance principles (classification, residency, retention) and major compliance/regulatory frameworks — including GDPR, CCPA, and CMMC alongside those listed above; AI risk frameworks a plus. • Proven track record partnering with engineering teams at a global SaaS company to drive security outcomes through influence and collaboration rather than mandate. • Experience with the full risk lifecycle: risk assessment, requirements gathering, control design, tool selection, vendor negotiation, and remediation oversight. • Strong communication skills with the ability to influence executives and engineers alike. • Hands-on experience partnering with Product/Application Security teams to integrate security into SDLC and CI/CD pipelines • Practical experience with threat modeling methodologies and driving secure-by-design outcomes at the architecture stage, before code is written. • Experience operating across a globally distributed team and supporting 24x7 service models.

🏖️ Avantages

• employee ownership • health insurance • 401k with matching contributions • disability insurance • paid-time off • growth opportunities • more

Postuler Maintenant

Emplois Similaires

🕒 il y a 23 jours

Red River

501 - 1000

💼 Conseil

📦 Logistique

Cybersecurity Subject Matter Expert managing cybersecurity solutions at Red River for clients. Collaborating with teams to enhance security practices and client satisfaction.

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

Firewalls

🕒 il y a 26 jours

Filevine

201 - 500

☁️ SaaS

⚖️ Juridique

🤖 Intelligence artificielle

Head of Trust and Security overseeing compliance and security initiatives at a leading Legal AI company. Leading FedRAMP and internal compliance efforts across multiple teams.

🇺🇸 États-Unis – Télétravail

💵 $190 000 - $210 000 / an

💰 €108 000 000 Series D en 2022-04

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 26 jours

Logicalis GmbH

201 - 500

💼 Conseil

📦 Logistique

🏥 Santé

Professional Services Consultant responsible for delivering network solutions to enterprise clients using Fortinet products. Engaging with PMO and RMO to ensure project success while maintaining client satisfaction.

🇺🇸 États-Unis – Télétravail

💵 $90 000 - $122 000 / an

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 26 jours

Confluent

1001 - 5000

🤖 Intelligence artificielle

☁️ SaaS

Join Confluent as a Staff Security Risk & Compliance Program Manager overseeing access management. Lead strategic direction and enforce security protocols for the data streaming platform.

🇺🇸 États-Unis – Télétravail

💵 $222 100 - $261 000 / an

💰 Secondary Market en 2021-06

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 26 jours

C Cubed Capital Partners, LLC

1 - 10

💸 Finance

💳 Fintech

⚖️ Juridique

Director of IT & Cybersecurity leading enterprise IT operations and cybersecurity for C Speed, LLC. Managing IT staff, overseeing projects, and ensuring compliance with security standards.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Azure

Cloud

Cyber Security

DNS

Firewalls