
Director, Security Engineering
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Lead the Enterprise Security Engineering and Security Operations teams at Virta as a player-coach.
• Mentor and develop a high-performing security engineering team.
• Facilitate technical sprint planning, alignment, and coaching while maintaining hands-on technical expertise.
• Spearhead the transition to Zero Trust Architecture across IT, corporate platforms, and cloud engineering infrastructure.
• Oversee monitoring, detection engineering, incident response, and manage 24/7 MDR/SOC vendor relationships.
• Ensure the effective operation of telemetry pipelines, alert triage, and threat containment.
• Design and sustain blast-radius reduction solutions, including micro-segmentation and ephemeral Workload Identity controls.
• Curate essential documents such as the Data Topology Map, CAA Matrix, Workload Ledger, and technical Containment Playbooks.
• Implement risk-based vulnerability management and establish patching and remediation SLAs.
• Collaborate with GRC, IT, and Product teams to embed security into CI/CD processes and apply guardrails to enterprise AI tools.
• Within 90 days, evaluate ZTMM maturity, deliver baseline topology and attack-surface artifacts, audit MDR pipelines, secure GitHub configurations, pilot GCP VPC-SC boundaries, standardize containment playbooks, and present security operations and ZTA metrics to executives.
• Over 10 years of focused experience in cybersecurity, cloud infrastructure security, or SecOps.
• A minimum of 3 years managing, leading, or mentoring high-performing security teams.
• Proven experience in overseeing incident response programs and managing external vendors, including outsourced MDR/SOC partners, SIEM platforms, and EDR/XDR toolsets.
• In-depth technical knowledge of cloud security architecture, preferably with GCP.
• Practical experience in developing micro-segmentation models, implementing ephemeral workload identity controls, and securing CI/CD pipelines.
• Outstanding analytical skills for systemic mapping, risk prioritization frameworks, RBVM, and Zero Trust Maturity Models.
• Demonstrated ability to architect robust AI systems or automation workflows that address cross-functional challenges and enhance business efficiency.
• Experience in designing and executing repeatable AI-enabled workflows that alleviate team bottlenecks and boost efficiency.
• Excellent communication skills for articulating complex security strategies to non-technical leaders and external stakeholders.
• Ability to adhere to Virta's security and privacy procedures regarding HIPAA-governed patient information.
• Legally authorized to work in the United States.
• Must indicate whether employment-visa sponsorship will be necessary.
• Location-based compensation structure
• Remote-first work arrangement
• Access to office hubs in Denver and San Francisco
• Security and privacy training
• Benefits information available on Virta’s Careers page
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.