Director of Security/GRC

2 weeks, 1 day ago
Full-time
Executive
Cybersecurity
Censys

Censys

Censys provides security teams with a comprehensive and accurate mapping of the internet, enabling them to effectively defend against attack surfaces and proactively hunt for threats.

IT Services
51-250
Founded 2017
$53M raised

Description

  • Own, build, and scale Censys’ corporate security infrastructure and systems.
  • Manage the Security team and delegate day-to-day work while maintaining coverage for critical functions.
  • Own the endpoint lifecycle, including provisioning, application deployment, security controls, and asset retirement.
  • Manage and secure cloud environments and coordinate the security configuration of software and tools.
  • Develop and deliver security awareness training for internal users.
  • Design, implement, and manage the company’s Data Loss Prevention program across endpoints, cloud, and email.
  • Own and operate the insider threat program, including monitoring, investigations, and coordination with Legal, HR, and leadership.
  • Partner with engineering and infrastructure teams to ensure security telemetry and logging coverage meets operational and compliance needs.
  • Lead compliance strategy and maintain alignment with ISO 27001, SOC 2 Type 2, UK NCSC Cyber Essentials+, and CMMC.
  • Develop and update organizational policies, procedures, control libraries, and process documentation, and support security questionnaires, legal requests, procurement reviews, and risk assessments.

Requirements

  • 10+ years of progressive experience in cybersecurity, including at least 3 years in a senior leadership or Director-level role.
  • Demonstrated experience owning enterprise security programs, including DLP, insider threat, and detection and response.
  • Deep familiarity with compliance frameworks including ISO 27001, SOC 2 Type 2, CMMC, NIST, and GDPR.
  • Experience building and managing security telemetry, SIEM, and detection engineering programs.
  • Strong understanding of cloud security across AWS, GCP, or Azure, plus endpoint security and identity and access management.
  • Proven ability to lead, mentor, and grow a high-performing security team.
  • Excellent written and verbal communication skills for executive leadership, legal, and non-technical stakeholders.
  • Experience managing security incident response and coordinating across Legal, HR, and executive leadership.
  • Background in security program development within a high-growth or scale-up environment.
  • Remote work eligibility within the continental United States.

Benefits

  • Salary range of $206,000-$237,000 in high cost of living areas or $180,000-$220,000 in other U.S. locations.
  • Bonus eligibility and equity.
  • Benefits effective on day one.
  • 401(k) match.
  • Health, vision, and dental coverage.
  • Remote work across the continental U.S.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Infosec - Offensive Security Intern

Rubrik 1K-5K IT Services

Rubrik is seeking an Offensive Security Intern to support real-world attack simulations, vulnerability research, and security testing across cloud and emerging AI attack surfaces.

AWS Azure Burp Suite Cybersecurity DNS GCP Go HTTP Java JavaScript Linux Metasploit Network Security Nmap Node.js Penetration Testing Python TCP/IP
1 hour, 19 minutes ago

DevSecOps Engineer (Remote)

FPMarkets 11-50 Capital Markets

FP Markets Group is seeking a remote Full-time DevSecOps Engineer to design, build, and own secure cloud and network infrastructure end to end for its multi-regulated trading platform.

Ansible AWS Bash CI/CD CrowdStrike DevSecOps Docker GitLab CI Grafana HashiCorp Vault Jenkins Kubernetes Prometheus Python SIEM Splunk Terraform
2 hours, 56 minutes ago

SAP Basis Support Specialist

SAP Fioneer 1K-5K Internet Software & Services

SAP Fioneer is seeking an experienced SAP Basis Engineer to support in-house product development with a scrum team, ensuring reliable, secure, and high-performing SAP systems for financial services solutions.

Scrum
3 hours, 57 minutes ago

DevSecOps Engineer

INflow Federal 51-250 Aerospace & Defense

INflow Federal is seeking a fully remote DevSecOps Engineer to support an enterprise case management solution for Department of Defense mission partners by securing and automating cloud-based CI/CD and infrastructure operations in AWS GovCloud.

Agile AWS Bash CI/CD CloudFormation Docker ELK Stack Git GitLab CI Helm Jenkins Kubernetes PowerShell Prometheus Python Terraform
6 hours, 11 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers