Senior Director, Information Security

🔥 19 hours ago

⛰️ Colorado – Remote

infoinfo

💵 $225k - $275k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of EverCommerce

EverCommerce

1001 - 5000 employees

☁️ SaaS

🤝 B2B

📣 Marketing

💰 Private equity on 2019-08

SaaS • B2B • Marketing

EverCommerce is a provider of industry-tailored software that powers the service economy. It builds SaaS products to digitally transform daily operations for service professionals, including business management, electronic billing and mobile payments, omni-channel marketing, and customer engagement tools. EverCommerce focuses on verticalized solutions—not mass-market software—designed to modernize operations, marketing, and customer interactions for businesses that provide services.

📋 Description

• Report to the Chief Information Security Officer • Mature a scalable, business-aligned security program supporting dozens of SaaS products across multiple vertical business units • Partner with Product Development, Legal, Compliance, the People Team, and senior leadership • Enforce security baselines, Terraform modules, and AWS Control Tower account isolation • Embed SAST, DAST, SCA, dependency analysis, and TruffleHog scanning into GitHub CI/CD pipelines • Establish signing, scanning, and approval pipelines for the Central Golden Container Registry • Mandate AWS Secrets Manager and Vault architectures with automated secret rotation • Direct modernization of the SOC, SIEM telemetry, and SOAR automation • Leverage eBPF and OpenTelemetry telemetry for infrastructure observability • Lead incident response, digital forensics, root cause analysis, and executive crisis communications • Direct red-team penetration testing, CTF exercises, and threat modeling across HIPAA, PCI, and proprietary SaaS platforms • Transition GRC to API-driven, continuous control validation • Maintain an auditable, real-time enterprise Risk Register • Standardize vendor risk management and provide automated security assurance documentation • Deploy and lead embedded Security Engineering spokes in Vertical Business Units • Establish security and cloud training guilds • Develop multi-year cybersecurity plans and roadmaps, align investments with business priorities, support M&A and divestitures, and drive AI and automation

🎯 Requirements

• Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical discipline (or equivalent practical experience) • 12+ years of progressive leadership with significant focus across multiple information security domains, including cloud security, software platform security, security strategy, architecture, engineering, controls, testing, vulnerability management, incident response, and cyber resiliency • 6+ years of direct people leadership experience leading multi-disciplinary teams in high-growth, public SaaS or enterprise technology companies • Hands-on engineering background in AWS cloud infrastructure, Infrastructure-as-Code (Terraform/CloudFormation), and container orchestration (ECS, EKS, Docker) • Experience building or modernizing SIEM/SOAR pipelines, automated detection engineering, and incident response operations • Experience designing and executing continuous compliance programs under SOX 404(b), HIPAA, PCI DSS, or SEC reporting frameworks • Ability to translate complex security risks into clear business metrics for C-suite executives and Board Audit Committees • Strong collaborative acumen to lead through influence in a decentralized, multi-business unit operating model • Strong knowledge of enterprise security architecture, security GRC programs, cyber threat landscapes, and attacker TTPs • Must be eligible to work without sponsorship • Preferred: security due diligence and post-merger integration experience; modern security tools; CISSP, CISM, CISA, GMON, CCSP, or AWS Certified Security Specialty; SaaS product-team experience; distributed and remote team experience

🏖️ Benefits

• Flexibility to work where/how you want within your country of employment – in-office, remote, or hybrid • Day 1 access to a robust health and wellness benefits, including an annual wellness stipend • 401k with up to a 4% match and immediate vesting • Flexible and generous (FTO) time-off • Employee Stock Purchase Program

Apply Now

Similar Jobs

🔥 19 hours ago

Quisitive

501 - 1000

🏥 Healthcare

🏭 Manufacturing

📦 Logistics

Microsoft Security Coach guiding Quisitive customers through Microsoft security posture, compliance, and roadmap improvements. Advising on Copilot, AI workloads, and agent governance.

🔥 23 hours ago

Exp Federal

51 - 200

🏗️ Construction

💼 Consulting

📦 Logistics

Cybersecurity Engineer implementing DoD RMF and NIST controls for Exp Federal’s federal architecture and engineering projects. Assessing systems, managing POA&Ms, and supporting secure infrastructure.

🕒 Yesterday

CACI International Inc

10,000+ employees

🎖️ Defense

🏛️ Government

🔒 Cybersecurity

Information Systems Security Officer managing DoD system authorization and RMF compliance at CACI. Developing ATO packages, SSPs, POA&Ms, and continuous monitoring programs.

🇺🇸 United States – Remote

💵 $75.2k - $158.1k / year

🔥 Funding within the last year

💰 $500M Post-IPO Debt on 2026-02

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 Yesterday

Veeam Software

1001 - 5000

💼 Consulting

📦 Logistics

☁️ SaaS

Sales Specialist driving Securiti AI security software growth for Veeam Software. Closing enterprise deals, expanding accounts, and developing channel partnerships.

🕒 Yesterday

Inviso

201 - 500

💼 Consulting

📣 Marketing

☁️ SaaS

Security and Identity Engineer securing enterprise AI platforms for Inviso’s transportation and operational technology clients. Designing identity, tenant isolation, threat modeling, and compliance-by-design foundations.