# Director of Security & Compliance

**Company:** [Anvilogic](https://hotfix.jobs/companies/anvilogic)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 10+ years
**Skills:** Cloud Security, AWS, identity and access management, Application Security, SOC 2, ISO 27001, Vulnerability Management, Incident Response, detection engineering, threat detection, audit management
**Posted:** 2026-08-12

> Leads customer-facing security reviews and the company’s internal security and compliance program, including SOC 2 Type II, ISO 27001, cloud security, IT operations, and a small technical team. Requires 10+ years of security experience and management experience.

## Job Description

## Responsibilities
- Serve as the security point of contact for prospects and customers, leading trust and security reviews across the sales cycle and customer lifecycle.
- Own security questionnaires, RFP security sections, and audit-support requests for enterprise security teams.
- Own and mature the internal security program across cloud infrastructure, applications, corporate systems, and data, including vulnerability management, monitoring, and incident response.
- Maintain SOC 2 Type II and ISO 27001 compliance, including control management, audit coordination, and continuous evidence collection.
- Lead and grow a team spanning security engineering and compliance, and own the security roadmap and priorities.
- Oversee IT operations, including identity and access, endpoint management, and SaaS administration.

## Requirements
- 10+ years in security or security engineering, including 3+ years in a customer-facing or GRC capacity such as trust reviews, questionnaires, or audits.
- 2+ years managing security engineers or a comparable technical team.
- Strong grounding in cloud security, preferably AWS, including infrastructure, identity and access, and application security.
- Ability to represent a security posture credibly to enterprise security teams, CISOs, and auditors, and translate technical controls into clear assurances.
- Sound judgment when prioritizing security work against real risk at a fast-moving company.

## Nice-to-haves
- Experience at a security vendor or a company selling to enterprise security teams.
- Familiarity with security operations tooling, SIEM, detection engineering, threat detection, and modern SOC teams.
- Experience owning or overseeing IT in a growing company.
- Experience scaling a security program from an early- or mid-stage company.

## Compensation & Benefits
- Competitive salary with equity in the company.
- Comprehensive medical, dental, and vision insurance.
- Unlimited paid time off.
- 401(k) retirement plan with company match.
- Monthly stipend for home internet and cell phone expenses.
- Final compensation depends on experience, qualifications, and location.

## Similar roles

- [Head of IT & Security](https://hotfix.jobs/jobs/9d80b823-e1b2-4da6-8807-713816b09be9) - NexHealth - San Francisco, CA - $160k – $200k/yr
- [Director, Information Security & Technology](https://hotfix.jobs/jobs/206a3607-4d09-42a8-8ff7-ff8d9b3096f3) - GameChanger - Remote - $220k – $240k/yr
- [Director, Security Engineering](https://hotfix.jobs/jobs/121737e7-8a7c-4c2e-a7ba-806e477a9491) - Virta Health - Remote - $162k – $209k/yr
- [Director, Trust & Safety Detection and Intelligence](https://hotfix.jobs/jobs/1f7e0b07-06b8-4f92-9bb2-cd2b6d396d03) - Fetch - Remote - $176k – $207k/yr
- [Head of Security](https://hotfix.jobs/jobs/8a538acb-2df4-42ab-aee3-c65fe08fbab3) - Tremendous - Remote - $250k – $330k/yr

**Apply:** https://hotfix.jobs/jobs/969092f3-4fc3-4400-98f9-4babfad7d7a8
**Canonical:** https://hotfix.jobs/jobs/969092f3-4fc3-4400-98f9-4babfad7d7a8