
Senior Director of Cloud Security
Posted Aug 21

Posted Aug 21
This is a fully remote position, open to applicants in Arizona, +2 more states.
• Define and implement the enterprise cloud security strategy that aligns with corporate risk appetite and regulatory obligations.
• Create cloud security reference architectures, guardrails, and design patterns.
• Lead cloud security governance across AWS, Azure, GCP, and selected SaaS providers.
• Manage the cloud security policy framework and control standards.
• Present the cloud risk posture and roadmap to executive leadership and key stakeholders.
• Direct cloud security architecture for landing zones, platform engineering, identity and access management, network security, encryption and key management, container/Kubernetes security, API security, and cloud-native application protection.
• Establish secure-by-design principles and integrate DevSecOps models.
• Advocate for automation-first infrastructure-as-code and policy-as-code strategies.
• Oversee CSPM, CWPP, CNAPP, DSPM, SSPM, CIEM, CASB, and SSE capabilities.
• Collaborate with SOC and Cyber Defense Engineering on cloud threat detection, response integration, and incident response protocols.
• Manage cloud logging, telemetry, and SIEM/SOAR integration.
• Create vulnerability management and misconfiguration remediation pipelines.
• Track and mitigate enterprise cloud risk metrics.
• Secure multi-cloud architectures across AWS, Azure, and GCP.
• Ensure uniform controls across on-premises, private cloud, and SaaS ecosystems.
• Support M&A integrations and divestitures with cloud security assessments and swift control implementations.
• Ensure adherence to HIPAA, GDPR, SOX, and FDA/GxP requirements as applicable.
• Facilitate audit readiness and ongoing control monitoring.
• Collaborate with Legal and Privacy on data residency and cross-border cloud risks.
• Build and lead a global team of cloud security architects and engineers.
• Develop succession planning and technical career pathways.
• Set KPIs, OKRs, and performance dashboards.
• Oversee enterprise financial planning and management.
• Promote collaboration with platform engineering, SRE, and DevOps teams.
• Monitor information security trends and advise company leadership on strategic changes.
• A bachelor's degree in cybersecurity, computer science, information security, information systems, or a related field, or equivalent experience is required.
• 12+ years of directly-related or relevant professional experience.
• 8+ years in a managerial role, preferably within the information security sector.
• Preferred certifications include CCSP, CISSP, CISM, Microsoft Certified: Cybersecurity Architect Expert (SC-100), ITIL, OSCP, and PMP.
• Understanding of IT risk management, IT controls, cyber attack mitigation, enterprise IT management, cloud security, network security, identity and access management, application security, service level maintenance, information security strategy continuity, threat modeling, and security standards such as SOX, ISO 27001/27002, COBIT, ITIL, NIST, and PCI.
• Proficiency in Microsoft Office Suite.
• Familiarity with security tools including CSPM, CWPP, CDR, CNAPP, SIEM, EDR, email security gateways, SOAR, firewalls, antivirus, VPN, IDS/IPS, and proxies.
• Knowledge of both open-source and commercial security testing tools.
• Understanding of threat intelligence tools.
• Familiarity with vulnerability testing tools.
• Medical, dental, and vision care.
• Backup dependent care.
• Adoption assistance.
• Infertility coverage.
• Family building support.
• Behavioral health solutions.
• Paid parental leave.
• Paid caregiver leave.
• Training programs.
• Professional development resources.
• Mentorship programs.
• Employee resource groups.
• Volunteer activities.
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.