# Director, Security Engineering

**Company:** [Virta Health](https://hotfix.jobs/companies/virta-health)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $162k – $209k/yr
**Experience:** 10+ years
**Skills:** GCP, Cloud Security, zero trust architecture, security operations, Incident Response, mdr, soc, SIEM, edr, xdr, micro-segmentation, workload identity, CI/CD, GitHub, Vulnerability Management
**Posted:** 2026-08-05

> Leads enterprise security engineering and SecOps, directing a security team, outsourced MDR/SOC operations, incident response, and a Zero Trust transformation. Requires 10+ years in cybersecurity or cloud infrastructure security, leadership experience, and deep GCP, micro-segmentation, workload identity, and CI/CD expertise.

## Job Description

## Responsibilities

### Hands-on Engineering & Operational Leadership
- Direct, mentor, and grow a high-performing team of security engineers.
- Conduct technical sprint planning, alignment, and coaching while maintaining the technical depth to dive into configurations alongside the team.

### Zero Trust Strategy
- Lead the enterprise-wide transition to Zero Trust Architecture (ZTA) across IT, corporate platforms, and cloud engineering infrastructure.
- Establish identity as the perimeter, inhibit lateral movement, and prioritize data survivability.

### Security Operations
- Own monitoring, detection engineering, and incident response operations.
- Manage outsourced MDR/SOC vendor relationships, telemetry pipelines, alert triage, and threat containment.

### Blast Radius Reduction
- Design, deploy, and maintain blast-radius reduction solutions.
- Implement micro-segmentation boundaries, including GCP VPC Service Controls.
- Enforce ephemeral Workload Identity protocols using temporary tokens instead of static passwords.

### Threat Defense and Containment
- Maintain the Data Topology Map, Cyber Asset Attack Surface (CAA) Matrix, Workload Ledger, and technical Containment Playbooks.

### Risk-Based Vulnerability Management
- Evaluate legacy stacks and cloud services against the Zero Trust Maturity Model (ZTMM).
- Define patching and remediation SLAs.
- Partner with IT and Foundations Engineering on targeted mitigation.

### Cross-Functional Collaboration
- Coordinate with GRC, IT, and Product teams to integrate security policies into code pipelines.
- Apply context-aware guardrails to enterprise AI tools.

## 90-Day Plan

- **First 30 days:** Deep dive into GCP infrastructure and IT security tools, establish relationships with engineering, IT, GRC, and MDR partners, and assess Zero Trust Maturity Model status.
- **Days 30–60:** Deliver the baseline Data Topology Map and CAA Matrix, audit MDR ingestion pipelines, tune high-priority alert workflows, integrate security alerting into team communication channels, and expand automated secrets detection in GitHub pipelines.
- **Days 60–90:** Finalize the Workload Ledger, pilot micro-segmentation guardrails including GCP VPC Service Controls, standardize technical Containment Playbooks, and present Security Operations and ZTA maturity metrics to executive leadership.

## Requirements

- 10+ years of dedicated experience in cybersecurity, cloud infrastructure security, or SecOps.
- At least 3+ years managing, leading, or mentoring high-performing security teams.
- Experience overseeing incident response programs and managing external vendors, including outsourced MDR/SOC partners, SIEM platforms, and EDR/XDR toolsets.
- Deep technical expertise in cloud security architecture, ideally GCP.
- Hands-on experience building micro-segmentation models, establishing ephemeral workload identity controls, and securing CI/CD pipelines.
- Ability to map systemic relationships, formulate risk-prioritization frameworks, and apply Zero Trust Maturity Models.
- Experience architecting durable AI systems or automation workflows that solve cross-functional challenges and improve operational efficiency.
- Exceptional communication skills for conveying complex security strategies to non-technical business leaders and external stakeholders.
- Experience designing and implementing repeatable AI-enabled workflows that address team bottlenecks and improve efficiency.

## Compensation and Benefits

- Compensation range: **$161,500–$209,000**.
- Benefits information is available on the company’s Careers page.
- This is a remote-first role with office hubs in Denver and San Francisco.

## Similar roles

- [Head of IT & Security](https://hotfix.jobs/jobs/9d80b823-e1b2-4da6-8807-713816b09be9) - NexHealth - San Francisco, CA - $160k – $200k/yr
- [Director, Trust & Safety Detection and Intelligence](https://hotfix.jobs/jobs/1f7e0b07-06b8-4f92-9bb2-cd2b6d396d03) - Fetch - Remote - $176k – $207k/yr
- [Head of Security & Compliance](https://hotfix.jobs/jobs/0c31140a-05ba-40ab-a5aa-12713d69cde4) - Casca - San Francisco, CA - $200k – $255k/yr
- [Head of Security](https://hotfix.jobs/jobs/f857e28d-567e-4a7a-8dfd-56496a7b4fa9) - Tatari - New York, NY - $200k – $250k/yr
- [Director, Corporate Security](https://hotfix.jobs/jobs/7837c97d-5d29-4ed2-ba76-f6b2161f84cd) - Komodo Health - $206k – $290k/yr

**Apply:** https://hotfix.jobs/jobs/121737e7-8a7c-4c2e-a7ba-806e477a9491
**Canonical:** https://hotfix.jobs/jobs/121737e7-8a7c-4c2e-a7ba-806e477a9491