Director, Cybersecurity
Leads LogicGate’s internal security organization, compliance posture, risk management, and customer trust program while serving as Deputy CISO. Requires 7–10 years of information security experience, substantial people leadership, SaaS compliance expertise, and strong technical knowledge of modern security architectures.
About the job
Responsibilities
- Execute the enterprise security roadmap in partnership with the CISO, translating strategic objectives into daily information security and IT security operations.
- Build, lead, and mentor a high-performing security organization while serving as Deputy CISO.
- Own the enterprise compliance posture across SOC 2 Type II, ISO 27001, ISO 42001, FedRAMP, and related frameworks.
- Represent security in enterprise customer engagements, conduct security reviews, and complete customer security questionnaires.
- Evaluate and integrate AI tools, threat detection technologies, and automated workflows into security operations.
- Maintain the security governance framework, including vendor risk assessments, security policies, incident response readiness, and security awareness programs.
- Partner with Engineering, Product, Legal, and Operations to embed security practices into product and operational workflows.
Requirements
- 7–10 years of progressive information security experience, including 4+ years leading security teams and owning security operations, incident response, security engineering, vulnerability management, security architecture, and compliance programs.
- Experience deploying and maintaining security tools and processes aligned with SOC 2 Type II and security governance frameworks in a high-growth SaaS environment.
- Expertise in incident response leadership and CNAPP, EDR, and SASE architectures.
- Ability to communicate technical risks to executives, board members, auditors, and enterprise customer security teams.
- Practical experience using AI tools, automated workflows, or LLM-driven solutions in security operations.
- Willingness to travel for leadership summits, team planning, customer engagements, and auditor engagements.
Nice to Have
- CISSP, CISM, or equivalent senior security certification.
- Experience in a GRC, cybersecurity, or compliance SaaS organization.
- Experience scaling security programs during Series C+ growth, IPO preparation, or enterprise expansion.
- Familiarity with Zscaler, CrowdStrike, GitLab, and Wiz.
Compensation and Benefits
- Base salary: $190,000–$240,000 per year, plus variable compensation, equity, and benefits.
- Benefits include flexible health and wellness benefits, PTO, company holidays, Health Days, Summer Fridays, learning and development programs, mentorship, and paid volunteer hours.
Skills
Information Security, SOC 2, ISO 27001, Iso 42001, FedRAMP, Incident Response, Cnapp, Edr, Sase, Ai Security, Vulnerability Management, Security Architecture, Cissp, Cism, Crowdstrike
Similar jobs
Security Engineering jobsLeads technical security, compliance (SOC 2, GDPR, ISO 42001), vulnerability management, and infrastructure hardening for a fast-growing fintech. Requires 3-7 years in security engineering with hands-on AWS, vuln tooling, and audit experience.
Leads Chronograph’s information security and IT strategy, combining executive leadership with hands-on oversight of cloud, application, AI, corporate, and compliance security. Requires at least seven years of security experience, broad technical depth, assurance-program leadership, and strong executive communication.
Leads GameChanger’s Information Security and Technology strategy, teams, roadmap, and risk decisions, with primary focus on product and application security. Requires 10+ years of security experience, broad security-program leadership, and experience managing technical leaders and partnering with Engineering and executives.
Leads ID.me’s Product Security program and security engineering team, partnering with Product and Engineering to reduce risk through practical, developer-aligned controls. Requires strong technical depth across application and cloud security, outcome-based leadership, and experience building security programs in fast-moving cloud-native environments.
Leads Exa’s company-wide security strategy, architecture, engineering, governance, incident response, and team development across AI infrastructure, cloud, products, and corporate systems. Requires executive-level security accountability and deep technical credibility in a rapidly scaling technology company.