Director of Security

Emploi pas sur LinkedIn

🕒 il y a 5 mois

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of OneStudyTeam

OneStudyTeam

201 - 500 employés

⚕️ Assurance santé

🧬 Biotechnologie

💊 Pharmaceutique

Healthcare Insurance • Biotechnology • Pharmaceuticals

OneStudyTeam est une entreprise qui propose la plateforme StudyTeam, une solution basée sur le cloud conçue pour faciliter le processus des essais cliniques pour les sites de recherche et les promoteurs. La plateforme améliore la gestion de l'inscription des patients en rationalisant les flux de travail des sites et en offrant des informations en temps réel sur les données de recrutement et d'inscription. Utilisée mondialement par plus de 10 000 sites de recherche et approuvée par les principaux promoteurs biopharmaceutiques, OneStudyTeam vise à améliorer l'efficacité des essais cliniques et à réduire la charge sur les sites de recherche.

Description

• Lead and manage the GRC and Security Engineering teams, including strategy, objectives, staffing, coaching, and performance management. • Own governance, risk, and compliance programs. Maintain ISO 27001 and related controls. Drive audit readiness for HIPAA and other frameworks. Coordinate policy lifecycle management and control testing. • Run vendor assessment and qualification program. Oversee third party risk management, due diligence, contractual security requirements, and continuous monitoring. • Provide AI related security assessments and guidance. Establish acceptable use guardrails for AI, assess model and data risks, and advise on controls for AI enabled solutions. • Oversee security architecture for cloud environments and enterprise platforms. Partner with engineering on secure design for AWS, Azure, identity, network, and data protection. • Direct security engineering operations. Manage EDR and threat detection with CrowdStrike, SIEM operations, CSPM posture management, vulnerability management, and SOAR automation. • Lead incident response readiness and execution. Run tabletop exercises, coordinate investigations, and deliver root cause and lessons learned. • Own and manage security budgets, multiyear planning, vendor contracts, and cost optimization while meeting control objectives. • Report program status and risk posture to executives and the board. Define and track KPIs and KRIs. Communicate clearly with technical and non technical stakeholders. • Establish and enforce secure software development practices and SDLC controls with engineering leadership. • Maintain a current security roadmap and maturity plan aligned to business priorities. • Oversee metrics, dashboards, and reporting for program performance and risk reduction. • Coordinate with Legal, Privacy, and Compliance on regulatory obligations and customer security assessments. • Champion security awareness training and culture, sponsor targeted training for engineering and high risk roles. • Evaluate, select, and manage strategic security vendors and platforms, drive successful implementations and integrations. • Represent security in customer meetings and due diligence, provide credible technical and compliance answers.

🎯 Exigences

• 15+ years of progressive experience in information security or related fields. • 10+ years of management experience leading security teams, including people leadership and program ownership. • Bachelor's degree in Computer Science, Engineering, Information Security, or related field. • Relevant certifications strongly preferred. Examples include CISSP and CISM. • Proven leadership of security programs at enterprise scale. Ability to set strategy, drive execution, and deliver measurable outcomes. • Demonstrated expertise in governance, risk, and compliance programs, including driving the implementation of ISO27001, SOC2, or HITRUST certification. • Experience with AI security risk management, data protection for AI use cases, and acceptable use guardrails for AI and large language models. • Strong background in secure software development, application security, and SDLC controls, including threat modeling and secure coding practices. • Hands-on knowledge of cloud security for AWS and Azure, identity and access management, network security, data protection, and key management.

🏖️ Avantages

• We value diversity and believe the unique contributions each of us brings drives our success. We do not discriminate on the basis of race, sex, religion, color, national origin, gender identity, age, marital status, veteran status, or disability status. • As a condition of employment, you will abide by all organizational security and privacy policies. • This organization participates in E-Verify (E-Verify's Right to Work guidance can be found here).

Postuler Maintenant

Emplois Similaires

🕒 il y a 6 mois

Aledade, Inc.

501 - 1000

⚕️ Assurance santé

🏢 Entreprise

Staff Security Engineer responsible for designing, implementing, and maintaining security services at Aledade. Collaborating across teams to secure the digital landscape while actively employing data and automation.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 6 mois

Vanta

201 - 500

📋 Conformité

🔐 Sécurité

☁️ SaaS

🇺🇸 États-Unis – Télétravail

💵 $398 000 - $468 000 / an

💰 €40 000 000 Series B en 2022-10

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 6 mois

3M Consultancy

1 - 10

🤝 B2B

🎯 Recrutement

Security Engineer ensuring compliance with federal cybersecurity frameworks in a remote role. Implementing security controls and assessing vulnerabilities in federal government environments.

🇺🇸 États-Unis – Télétravail

💵 $110 000 - $120 000 / an

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 6 mois

RAIC Labs (formerly Synthetaic)

11 - 50

🤖 Intelligence artificielle

🌾 Agriculture

⚡ Énergie

Federal Business Development Director responsible for identifying and closing federal business opportunities to drive growth at RAIC Labs. Must have extensive federal business development experience and a security clearance.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 6 mois

Included Health

1001 - 5000

☁️ SaaS

🤝 B2B

👥 RH Tech

Cloud Security Engineer designing security solutions and automating controls in AWS and GCP environments at Included Health. Driving a culture of security by design to prevent unauthorized access.

🗣️🇺🇸🇬🇧 Anglais requis