
Director of IT – Security
Posted Jul 27

Posted Jul 27
This is a fully remote position, open to applicants in Poland, +5 more states.
• Ajaia is looking for a Director of IT & Security to oversee the entire spectrum of internal IT operations, information security, and compliance within a multi-cloud, multi-country organization.
• This role demands hands-on leadership.
• You will develop and maintain the systems, policies, and infrastructure necessary for secure company operations while promoting automation wherever feasible.
• You will be responsible for internal IT (devices, access, onboarding), security posture (policies, monitoring, incident response), and compliance (HIPAA, SOC 2, vendor risk).
• The environment is characterized by multi-cloud (GCP and Azure), rapid pace, and an AI-first approach.
• You are expected to leverage AI tools to automate routine tasks, enhance monitoring, and boost your own productivity.
• Initially, this role will function as an individual contributor, with the possibility of building a small team as the company expands.
• We anticipate that candidates will integrate AI into their daily workflows, including research, ideation, drafting, design iteration, quality assurance, and acceleration of delivery. Proficiency in AI is a fundamental requirement, not merely an optional tool.
• A bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field.
• A minimum of 8 years of experience in one or more of the following domains:
• - IT operations and infrastructure management
• - Information security and security operations
• - Cloud administration and security (GCP, Azure, or multi-cloud environments)
• - Compliance and audit management (HIPAA, SOC 2, or similar frameworks)
• Practical experience managing multi-cloud environments (GCP and Azure are required).
• Solid understanding of HIPAA and SOC 2 compliance, including direct experience with external audits.
• Experience in developing and enforcing security policies, access controls, and incident response procedures.
• Strong grasp of identity management (SSO, MFA, RBAC), endpoint management, and foundational network security.
• Proficient in AI tools and experienced in employing automation to alleviate operational burdens.
• Exceptional documentation and communication skills, with the ability to convey security concepts to non-technical stakeholders.
• Ability to work independently in a dynamic, fully remote, distributed environment.
• Preferred Qualifications:
• Relevant certifications: CISSP, CISM, CCSP, CompTIA Security+, or equivalent.
• Experience with DevSecOps practices, CI/CD pipeline security, or infrastructure-as-code (Terraform, Pulumi, or similar).
• Background in vendor risk management and third-party security assessments.
• Experience supporting healthcare or financial services clients with regulated data requirements.
• Familiarity with GDPR, DPDPA, or other regional data protection frameworks.
• Experience with GRC platforms such as Vanta, Drata, or similar tools.
• Experience with SIEM platforms, vulnerability management tools, or coordination of penetration testing.
• Base salary: Approximately $35,000 USD per year (adjusted for target regions).
• Performance bonus: Potential to earn up to 100% of base salary through performance-based incentives.
• Salary and overall compensation are contingent upon experience, location, and demonstrated performance during the recruitment process.
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.