
AVP, Platform Security
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Arizona.
• Define and take ownership of the enterprise platform security strategy, roadmap, and policy framework for cloud, container, and AI security.
• Establish consistent technical standards and architecture across cloud, container, and AI platforms.
• Develop and enhance the AI Security operating model.
• Provide guidance to senior technology, security, and business executives regarding platform security risks and best practices.
• Promote ongoing program improvement through KPIs, executive reporting, benchmarking, and innovation.
• Own the strategy, architecture, and operational standards for enterprise cloud security.
• Define and oversee security for containers and Kubernetes within both cloud and on-premises environments.
• Advocate for preventive guardrails, policy enforcement, infrastructure-as-code controls, and self-service remediation.
• Influence the platform security tooling portfolio while managing vendor strategies, platform health, roadmap alignment, and adoption.
• Establish accountability, governance, standards, and controls for AI security.
• Take charge of AI gateway and guardrail security requirements.
• Implement agentic security controls for identity, authorization, tool governance, monitoring, and runtime protections.
• Lead security architecture initiatives for AI models and platforms, including scanning, provenance, visibility, adversarial testing, and red teaming.
• Collaborate with Cyber Defense on AI monitoring, detection, incident response, audit logging, and telemetry.
• Maintain platform security policies, standards, reference architectures, and operational procedures.
• Ensure compliance with HIPAA, PCI-DSS, ISO/IEC 42001, NIST AI RMF, NIST CSF, MITRE ATLAS, OWASP guidelines, and cloud security best practices.
• Provide executive reporting and governance dashboards.
• Establish risk-based processes for vulnerability and misconfiguration management.
• Collaborate with Legal, Compliance, Privacy, TPRM, Data Protection, and AI Governance teams.
• Build, lead, and nurture a high-performing security organization.
• Lead through both direct and matrixed influence across security, infrastructure, architecture, and business technology teams.
• Partner with senior security and technology leaders on priorities, OKRs, investments, and delivery commitments.
• Engage with cloud providers, security tooling vendors, AI platform providers, and industry standards groups.
• Promote secure-by-default platform engineering while enabling measured business growth.
• Report directly to the Vice President of Security Engineering and Platforms.
• Over 12 years of progressive experience in information security, cybersecurity engineering, cloud security, infrastructure security, platform security, or related technology leadership roles.
• At least 5 years of senior leadership experience in building, leading, and scaling cross-functional security engineering teams within large, complex enterprise settings.
• Extensive technical expertise in cloud security architecture and operations across major cloud platforms.
• Proficiency in cloud posture management, identity and access controls, network segmentation, encryption, logging, vulnerability management, and policy enforcement.
• Strong understanding of container and Kubernetes security, including image scanning, workload protection, runtime controls, secrets management, cluster hardening, CI/CD integration, and vulnerability remediation.
• Experience in defining technical security standards, reference architectures, control frameworks, and engineering guardrails for enterprise-scale platforms.
• Familiarity with AI, GenAI, or emerging technology security programs.
• Knowledge of security posture management, vulnerability management, threat modeling, risk-based prioritization, and executive-level risk reporting.
• Ability to influence engineering culture, platform governance, security control adoption, and strategic investment decisions.
• Experience working in highly regulated environments.
• Exceptional communication and presentation skills.
• Preferred: Advanced degree in Computer Science, Information Security, Cybersecurity, Engineering, AI/ML, or a related field.
• Preferred: Certifications such as CISSP, CISM, CCSP, AWS Security Specialty, Azure Security Engineer, Google Professional Cloud Security Engineer, Kubernetes Security Specialist, or equivalent.
• Preferred: Familiarity with ISO/IEC 42001, NIST AI RMF, MITRE ATLAS, OWASP guidance, NIST CSF, and cloud security frameworks.
• Preferred: Experience with CNAPP, CSPM, CWPP, container security, API gateway, model gateway, AI guardrail, SSPM/AISPM, and security data platform technologies.
• CVS Health bonus, commission or short-term incentive program.
• Equity award program.
• Medical coverage.
• Dental coverage.
• Vision coverage.
• Paid time off.
• Retirement savings options.
• Wellness programs.
• Other resources supporting physical, emotional, and financial well-being.
Cisco
Arctiq
Cotiviti
Twilio
Get handpicked remote jobs straight to your inbox weekly.