Назад
Company hidden
4 дня назад

Information Security Director (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Director (AI): Building and scaling foundational information security and information systems capabilities with an accent on security operations, compliance, IAM, and risk management. Focus on leading incident response, coordinating SOC 2 and ISO audits, automating security processes, and building a dedicated security team.

Location: Boston, MA, United States; work format: Hybrid

Company

hirify.global is establishing foundational information security and information systems capabilities for a fast-paced organization.

What you will do

  • Lead the implementation and continuous improvement of information security practices, tools, policies, standards, and procedures.
  • Monitor internal systems for vulnerabilities and breaches, and lead incident response when needed.
  • Lead compliance initiatives for SOC 2, ISO 27001, ISO 42001, GDPR, and related frameworks.
  • Conduct risk assessments, coordinate third-party audits, and oversee remediation of findings.
  • Manage IAM and least-privilege access, vendor and cloud-service security assessments, and employee security awareness programs.
  • Collaborate with engineering, IT, and platform teams to embed security best practices, drive automation, and build a dedicated security team.

Requirements

  • 7+ years of hands-on experience in information security, IT security, or a related field.
  • Familiarity with security and compliance frameworks, including SOC 2, ISO 27001, NIST, and GDPR.
  • Strong understanding of modern IT infrastructure, cloud services, SaaS, access controls, and security architecture.
  • Experience managing teams and driving cross-functional projects.
  • Excellent communication skills, including the ability to explain complex security concepts to non-technical teams.
  • Experience in security operations or incident response.

Nice to have

  • Experience in a startup or small-company environment.
  • Relevant certifications such as CISSP, CISM, CompTIA Security+, or ISO 27001 Lead Implementer.
  • Exposure to DevSecOps and secure software development life-cycle practices.

Culture & Benefits

  • Foundational role with the opportunity to shape security systems, policies, and processes.
  • Cross-functional collaboration across engineering, IT, platform, and other organizational teams.
  • Focus on automation and increasing security maturity across product and information security.
  • Hybrid work environment in Boston, Massachusetts.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →