Назад
Company hidden
2 часа назад

Head of Information Security (AI)

Формат работы
remote (Global)
Тип работы
fulltime
Грейд
head
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of Information Security (AI/cybersecurity): Own and mature OpenZeppelin's enterprise Information Security Program across AI governance, compliance, privacy, incident response, IT, and infrastructure with an accent on securing agentic systems, managing regulatory obligations, and building enterprise trust. Focus on designing governance frameworks, leading audits and vendor risk, strengthening incident response, and scaling identity, endpoint, and access operations.

Location: Fully remote

Company

hirify.global develops open-source security technology and services for onchain finance, digital assets, and enterprise customers.

What you will do

  • Set the strategy, roadmap, risk posture, OKRs, and technology budget for the Information Security Program.
  • Lead AI security and governance, including approval of AI tools and agentic workflows, least-privilege access, secrets management, monitoring, auditability, and model-provider diligence.
  • Own SOC 2 Type 2, ISO/IEC 27001, penetration testing, internal audits, vendor risk management, and security diligence with enterprise customers and regulators.
  • Maintain data governance and privacy programs covering data mapping, classification, GDPR, CCPA/CPRA, DPAs, subprocessors, and privacy-by-design reviews.
  • Manage incident response, breach-notification coordination, bug bounty programs, and security practices across the software development lifecycle.
  • Oversee identity and access management, onboarding and offboarding, endpoint security, physical security, disaster recovery, business continuity, backups, and scalable IT operations.

Requirements

  • 10+ years of Security and IT experience, including 3+ years leading an IT Security and GRC function in a high-growth technology company.
  • End-to-end ownership of a security program, including strategy, executive or board presentations, and clear justification of implemented controls.
  • Experience securing or governing AI/LLM-enabled products or enterprise AI adoption, including agentic systems and third-party model-provider risk.
  • Ability to apply privacy and data-protection laws and practices, including GDPR and CCPA/CPRA, in AI contexts.
  • Fully remote work arrangement.

Nice to have

  • 5+ years of experience in blockchain or fintech with an enterprise client base, including rigorous third-party security diligence.

Culture & Benefits

  • Fully remote work with opportunities to meet colleagues at company gatherings worldwide.
  • Flexible time off and medical insurance.
  • Paid family leave: 8 weeks for primary caregivers and 4 weeks for secondary caregivers.
  • One-time $3,600 baby bonus and up to $500 for home-office equipment.
  • Learning and development opportunities plus a monthly coworking-space stipend.

Hiring process

  • Recruiter, hiring manager, team, and leadership interviews, each lasting approximately 30 minutes.
  • Paid work test of up to 20 hours followed by reference checks.
  • Interviews take place via Google Meet or Zoom.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →