Director of Security/GRC

2 weeks, 5 days ago
Full-time
Executive
Cybersecurity
Censys

Censys

Censys provides security teams with a comprehensive and accurate mapping of the internet, enabling them to effectively defend against attack surfaces and proactively hunt for threats.

IT Services
51-250
Founded 2017
$53M raised

Description

  • Own, build, and scale Censys’ corporate security infrastructure and systems.
  • Manage the Security team and delegate day-to-day work while maintaining coverage for critical functions.
  • Own the endpoint lifecycle, including provisioning, application deployment, security controls, and asset retirement.
  • Manage and secure cloud environments and coordinate the security configuration of software and tools.
  • Develop and deliver security awareness training for internal users.
  • Design, implement, and manage the company’s Data Loss Prevention program across endpoints, cloud, and email.
  • Own and operate the insider threat program, including monitoring, investigations, and coordination with Legal, HR, and leadership.
  • Partner with engineering and infrastructure teams to ensure security telemetry and logging coverage meets operational and compliance needs.
  • Lead compliance strategy and maintain alignment with ISO 27001, SOC 2 Type 2, UK NCSC Cyber Essentials+, and CMMC.
  • Develop and update organizational policies, procedures, control libraries, and process documentation, and support security questionnaires, legal requests, procurement reviews, and risk assessments.

Requirements

  • 10+ years of progressive experience in cybersecurity, including at least 3 years in a senior leadership or Director-level role.
  • Demonstrated experience owning enterprise security programs, including DLP, insider threat, and detection and response.
  • Deep familiarity with compliance frameworks including ISO 27001, SOC 2 Type 2, CMMC, NIST, and GDPR.
  • Experience building and managing security telemetry, SIEM, and detection engineering programs.
  • Strong understanding of cloud security across AWS, GCP, or Azure, plus endpoint security and identity and access management.
  • Proven ability to lead, mentor, and grow a high-performing security team.
  • Excellent written and verbal communication skills for executive leadership, legal, and non-technical stakeholders.
  • Experience managing security incident response and coordinating across Legal, HR, and executive leadership.
  • Background in security program development within a high-growth or scale-up environment.
  • Remote work eligibility within the continental United States.

Benefits

  • Salary range of $206,000-$237,000 in high cost of living areas or $180,000-$220,000 in other U.S. locations.
  • Bonus eligibility and equity.
  • Benefits effective on day one.
  • 401(k) match.
  • Health, vision, and dental coverage.
  • Remote work across the continental U.S.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

DevSecOps Engineer

INflow Federal 51-250 Aerospace & Defense

INflow Federal is seeking a fully remote DevSecOps Engineer to support an enterprise case management solution for Department of Defense mission partners by securing and automating cloud-based CI/CD and infrastructure operations in AWS GovCloud.

Agile AWS Bash CI/CD CloudFormation Docker ELK Stack Git GitLab CI Helm Jenkins Kubernetes PowerShell Prometheus Python Terraform
1 hour, 11 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter security.

AWS Azure Cloudflare CrowdStrike GCP OAuth Secrets Management Terraform Vercel
1 hour, 51 minutes ago

Security Business Partner, Frontier Systems

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is seeking a Security Business Partner to embed strategic security support within its Frontier Systems Division, enabling classified defense programs and business growth across Department of War and Intelligence Community customers.

SAP
2 hours, 38 minutes ago

Senior Detection and Response Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Detection and Response Engineer to build and operate defensive security controls that protect the infrastructure supporting its defense technology products.

AWS Azure CI/CD CloudFormation Docker GitHub Go Kubernetes Network Security Python Rust SQL Terraform
3 hours, 32 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers