Job Closed
This listing is no longer active.
Go Beyond Pentest Management and Reporting
Director, Security & Reliability Engineering
Location
Idaho
Posted
130 days ago
Salary
$175K - $240K / year
Seniority
Lead
Job Description
Director, Security & Reliability Engineering
PlexTrac
• Own and evolve the company’s security strategy, ensuring it directly supports our GTM motion and customer trust requirements • Lead and manage a SecOps team of ~5, setting clear priorities, processes, and development plans • Drive and maintain SOC 2 and ISO 27001 compliance (and prepare for additional frameworks as needed, e.g., GDPR support, customer security reviews) • Act as the primary security partner for Sales, Customer Success, and Product—supporting security questionnaires, audits, and customer conversations • Design, implement, and monitor cloud infrastructure, applications, and internal systems • Lead incident response planning, tabletop exercises, and real-world response when needed • Own internal IT responsibilities as they arise, including identity/access management, endpoint security, tooling, and vendor relationships • Establish scalable policies, documentation, and risk management practices appropriate for a fast-growing startup • Stay pragmatic: balance strong security with speed, usability, and business impact
Job Requirements
- 8+ years of experience in cloud and security operations, with prior leadership experience
- Proven ownership of SOC2, ISO 27001 compliance in a SaaS environment (from readiness through audits and ongoing maintenance)
- Experience building or scaling security programs in small to mid-sized tech companies or startups
- Strong understanding of cloud (AWS/GCP/Azure), SaaS architectures, and modern DevOps environments
- Strong grasp on Terraform, Kubernetes, SLA, SLOs
- Comfortable managing both people and programs—able to zoom out strategically and dive in when needed
- Experience partnering with GTM teams and supporting customer-facing security needs
- Solid working knowledge of IT operations, identity management, and endpoint security
- Clear communicator who can explain risk and tradeoffs to technical and non-technical audiences alike.
Benefits
- Competitive wellness benefits including Medical, Dental, Vision, Disability and Life
- 401(k)
- Paid Parental Leave
- Flexible work schedule - WFH, WFO
- Flexible Time Off
- World Class Culture
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
DevOps Engineer, OpenStack
Sigma Software GroupWe support enterprises, product houses, and startups with custom software solutions development and IT consulting.
• Configure, implement, and automate CI/CD pipelines for software delivery, including test automation frameworks • Continuously improve speed, efficiency, scalability, and stability of integration systems and environments • Capture demand and trends from development teams into IT processes
• Design, build, and maintain scalable cloud infrastructure • Implement and improve CI/CD pipelines for faster, safer deployments • Ensure platform reliability through monitoring, alerting, and observability • Manage incident response, root cause analysis, and postmortems • Improve system performance, uptime, and disaster recovery readiness • Automate infrastructure provisioning using Infrastructure-as-Code tools • Partner with Engineering teams to improve security and operational best practices
• Own backend delivery, execution quality, and roadmap alignment • Translate product and business priorities into clear technical plans • Improve test coverage, deployment confidence, and production quality • Partner closely with DevOps to reduce incidents and improve system reliability • Drive continuous improvement in uptime, performance, and operational maturity • Conduct regular 1:1s with backend engineers to identify gaps, risks, and growth opportunities
Site Reliability Engineer
ICFFounded in 1969, ICF is a global advisory and technology services company headquartered in Reston, Virginia. It delivers data-driven solutions across energy, en
• Define and maintain SLIs, SLOs, and SLAs for the Internet-based Quality Improvement and Evaluation System (iQIES) application • Performance tuning that will model load scenarios, forecasting capacity, and optimize scaling strategies • Design and optimize the observability stack through New Relic, CloudWatch, and Jenkins CI/CD pipelines • Participate in root cause analysis for operational issues and improve incident response process • Participate in creating, monitoring, and optimizing actionable alerts to respond to issues in a timely manner • Develop tools and scripts • Develop and maintain Jenkins CI/CD pipelines, using declarative Jenkinsfiles and foundational Groovy for pipeline logic and enhancements • Deploy services to Fargate, EKS, Lambda, Airflow, Databases • Manage security groups and access controls • Thoroughly understand fundamentals like security groups, IAM, managing RDS • Apply patch management and hardening practices • Align with DevOps and Technical Leads to ensure overall strategy • Actively participate in releases and product launches with expectation of being online during release windows




