
Director of Cybersecurity, Architecture and Engineering
Posted Jul 27

Posted Jul 27
This is a fully remote position, open to applicants in United States.
• Lead, mentor, and cultivate a team of security engineers tasked with perimeter and endpoint security, detection and monitoring, and vulnerability management engineering.
• Act as a hands-on technical resource across the team's tool domains (firewall, EDR, SIEM, WAF, vulnerability management, and security awareness platforms), ready to step in during absences or transitions.
• Manage the strategic relationship with our managed security services provider (MSSP), encompassing SLAs, escalation processes, contract performance, and renewal.
• Serve as the Tier 2/3 escalation point for security incidents reported by the MSSP, exercising decision authority on containment, access, and asset-criticality assessments.
• Function as the primary technical liaison between the security engineering team and the GRC team, ensuring that technical controls required for CMMC, NIST SP 800-171, and other relevant frameworks are designed, implemented, and maintained.
• Design and uphold security architecture standards for network segmentation, system hardening baselines, and identity and access boundaries, collaborating with the IAM team.
• Develop and continuously enhance the security engineering roadmap and technical standards to align with the evolving threat landscape and business risk tolerance.
• Establish OKRs, metrics, and scorecards for the security engineering function, and report on team health and risk posture to executive leadership.
• Collaborate with development and infrastructure teams to identify and address application- and infrastructure-level vulnerabilities.
• Oversee workforce planning for the team, which includes current team development and future headcount growth.
• Ensure that the team keeps up-to-date documentation regarding tool ownership, backup coverage, and operational runbooks.
• Monitor advancements in the digital business and threat landscape to ensure they are incorporated into security strategy and architecture.
• Over 10 years of progressive experience in information security, including hands-on tool engineering and team leadership.
• Bachelor's degree in Computer Science, Information Systems, or a related field.
• Proven experience managing or technically collaborating with a managed security services provider (MSSP) for SOC/NOC functions.
• Experience supporting CMMC and/or NIST SP 800-171 / 800-53 control implementation in partnership with a GRC or compliance function.
• Extensive technical knowledge across essential security tooling categories: next-generation firewalls, EDR, SIEM, WAF, vulnerability management platforms, and security awareness platforms.
• Strong understanding of network architecture, segmentation, and security concepts within large-scale environments.
• Proven ability to build, mentor, and retain a small, high-performing technical team.
• Knowledge of federal cybersecurity and data privacy laws, regulations, and policies relevant to a federal contractor.
• Strong understanding of the cybersecurity threat lifecycle, attack vectors, and intrusion set tactics, techniques, and procedures (TTPs).
• Exceptional cross-functional communication skills, with the capacity to translate technical risk for executive audiences.
• Annual bonus (15 %)
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.