Назад
Company hidden
6 дней назад

Principal Information Security - Identity and Data Security

243 200 - 304 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Information Security - Identity and Data Security (Identity Security/GRC): Developing enterprise identity and data security strategies, governance, and controls across human, non-human, and AI-enabled identities with an accent on IAM, IGA, privileged access, data governance, and regulatory compliance. Focus on building multi-year security roadmaps, strengthening SSO/MFA and access workflows, assessing control weaknesses, and protecting sensitive data across product, corporate, third-party, and AI environments.

Location: Remote-first role associated with Draper, Utah, and San Jose, California, United States

Salary: $243,200–$304,000 USD annually for San Jose; $206,700–$258,400 USD OTE for Draper, Utah

Company

hirify.global develops financial automation tools that help businesses manage payments, spending, and operational processes.

What you will do

  • Develop identity security strategy, governance, and multi-year roadmaps for workforce, privileged, non-human, and AI-enabled identities.
  • Oversee identity governance and administration processes for hires, transfers, terminations, and least-privilege access.
  • Manage SSO, MFA, adaptive access, privileged access, and service-account security controls.
  • Provide security guidance for customer-facing authentication, registration, profile management, and federated or social login capabilities.
  • Assess data security risks and improve discovery, inventory, classification, retention, DLP, and protection controls.
  • Partner with IT, Privacy, Legal, Internal Audit, Engineering, HR, and Finance to remediate control weaknesses and meet regulatory and contractual requirements.

Requirements

  • Bachelor’s degree in cybersecurity or a related field, or equivalent experience.
  • 10–15 years of information security experience with significant identity security and/or data security expertise.
  • Strong knowledge of enterprise identity lifecycle management, identity governance, modern access control, data security, and governance.
  • Experience assessing security risks, control effectiveness, risk scoring, GRC programs, and multi-year security strategies.
  • Deep knowledge of NIST, ISO 27001, and regional or industry-specific regulations.
  • Experience with AWS, Okta, Active Directory, Microsoft Azure, Lumos, and access-management workflows.

Nice to have

  • CISSP, CISM, or GIAC certification.

Culture & Benefits

  • Remote-first environment with offices in San Jose and Draper for in-person collaboration.
  • Medical, dental, and vision plans with HMO, PPO, and HDHP options.
  • HSA and FSA accounts, life insurance, and short- and long-term disability coverage.
  • Flexible time off, wellness days, and 11+ observed holidays.
  • Employee stock purchase program, wellness initiatives, employee assistance, and recognition programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →