Director of Cyber Security

Job not on LinkedIn

🔥 2 minutes ago

🇺🇸 United States – Remote

💵 $200k - $245k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 1%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of RAPIDFORT

RAPIDFORT

51 - 200 employees

Founded 2020

💼 Consulting

🎖️ Defense

🏥 Healthcare

Consulting • Defense • Healthcare

RAPIDFORT is a software supply chain security company that delivers a SaaS platform to secure containerized applications from build-time through runtime. It provides curated near-zero‑CVE base images, CI/CD image scanning and execution profiling (SBOM/RBOM), automated CVE remediation, runtime hardening and attack-surface reduction, and compliance automation for standards like FedRAMP, SOC 2 and CMMC. The platform is aimed at enterprise engineering and security teams to automate vulnerability remediation, accelerate secure releases, and maintain continuous protection in production.

📋 Description

• Own RapidFort’s information security posture and enterprise risk position • Set and verify security standards across Cloud Operations, Infrastructure Engineering, and Corporate IT estates • Own the ISO 27001 ISMS and SOC 2 Type 2 program end to end • Lead FedRAMP authorization and CMMC Level 2 programs • Sequence all four compliance frameworks against one control set, shared evidence, and a single calendar • Report current risk to the CIO, executive leadership, and Audit Committee, with authority to escalate unresolved material risk • Own information security policies, control frameworks, technical standards, risk register, exception process, and security architecture reviews • Own security monitoring, SIEM operations, managed detection provider relationships, incident response, post-incident reviews, and exercises • Own vulnerability management, remediation SLAs, penetration testing, red team engagements, and SDLC security testing gates • Own access governance, privileged access policy, access reviews, authentication and session policies • Manage external auditor, certification body, agency sponsor, and estate-owner relationships • Direct the compliance specialist responsible for evidence collection, control testing, POA&M tracking, and audit logistics • Own customer security assurance, questionnaires, audits, trust documentation, contract and DPA security terms, and controlled audit-artifact distribution • Own vendor and SaaS security assessments, vendor contract security requirements, awareness programs, phishing simulations, and role-specific training

🎯 Requirements

• U.S. citizenship required • Extensive experience owning enterprise security, risk, and compliance programs • Experience with ISO 27001 ISMS and SOC 2 Type 2 programs • Experience with FedRAMP authorization and CMMC Level 2 • Knowledge of NIST SP 800-53 and NIST SP 800-171 • Experience with security policy, control frameworks, risk registers, and risk acceptance • Experience with security architecture reviews and technical security standards • Experience with security monitoring, SIEM, managed detection providers, and incident response • Experience with vulnerability management, penetration testing, red team engagements, SAST, dependency scanning, secrets detection, and image scanning • Experience with identity and access governance, privileged access, MFA, conditional access, and device trust • Experience with external auditors, certification bodies, agency sponsors, and customer security assurance • Experience with vendor and SaaS security assessments and security contract requirements • Experience developing security awareness, phishing simulation, and role-specific training programs • Ability to serve as incident commander and direct containment across any estate • Ability to travel periodically for audits, customer engagements, and leadership meetings • Ability to participate in on-call incident commander duties for declared security incidents

🏖️ Benefits

• Annual performance-based bonus • Equity: Stock options in RapidFort • Medical, dental, and vision insurance • 401(k) retirement plan • Paid time off and company holidays • Paid sick leave • Company-provided equipment • Professional development and growth opportunities

Apply Now

Similar Jobs

🔥 2 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Principal AI/ML Security Engineer securing AI systems at DigitalOcean, a scalable cloud platform. Leading adversarial testing, AI governance, threat modeling, and security strategy.

🔥 2 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Principal Engineer securing AI/ML systems and cloud-scale products at DigitalOcean. Leading AI risk, red teaming, governance, and security strategy.

🔥 2 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Principal Engineer securing AI systems and operationalizing ML-powered security at DigitalOcean, a scalable cloud platform. Leading AI security strategy, red teaming, governance, and cloud-scale risk management.

🔥 2 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Principal Engineer securing DigitalOcean’s cloud-scale AI/ML systems. Leading adversarial testing, AI governance, threat modeling, and security strategy for customer-facing products.

🔥 2 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Principal Engineer securing AI systems and operationalizing ML-powered security at DigitalOcean. Leading AI risk governance, red teaming, architecture reviews, and cloud-scale security strategy.