Crunchbase logo
Crunchbase

Crunchbase.ai is here! The NEW Crunchbase delivers predictive intelligence to help you stay ahead of the market.

Director of IT – Cybersecurity

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 51-200Since 2007H1B SponsorCompany SiteLinkedIn

Location

California + 16 moreAll locations: California | Colorado | Florida | Illinois | Maine | Nevada | New Jersey | New York | North Carolina | Oregon | Massachusetts | Missouri | Pennsylvania | South Carolina | Texas | Virginia | Washington

Posted

15 days ago

Salary

$206K - $242K / year

Seniority

Lead

Bachelor Degree10 yrs expEnglishCyber Security

Job Description

Director of IT – Cybersecurity

Crunchbase

• Define and lead the company’s IT strategy, ensuring internal systems, infrastructure, and technology operations operate efficiently and scale effectively • Establish long-term operational roadmaps for enterprise systems, endpoint management, networking, collaboration platforms, and employee technology experience • Drive modernization and optimization of internal technology ecosystems through automation, integration, and operational design • Lead strategic planning for IT architecture, business continuity, disaster recovery, and operational resilience • Establish operational standards, governance models, and lifecycle management practices across enterprise technology systems • Oversee enterprise technology vendors, procurement strategy, and platform investments to ensure operational efficiency, scalability, and cost effectiveness • Ensure internal technology operations support organizational productivity, security, and long-term business objectives • Define and lead the company’s enterprise cybersecurity and risk management strategy • Establish scalable security governance frameworks, policies, and operational controls that protect company systems, data, and users • Oversee enterprise compliance and certification programs and other applicable security and regulatory standards • Partner with executive leadership to proactively identify, assess, and mitigate operational and cybersecurity risks • Lead organizational security strategy across identity management, endpoint security, access governance, incident response, and third-party risk management • Ensure the company maintains audit readiness and operational compliance through scalable controls, processes, and documentation practices • Drive company-wide security awareness and risk management practices that strengthen organizational resilience • Define and lead the company’s enterprise AI enablement strategy, driving adoption of AI technologies across business functions to improve operational scale, efficiency, and decision-making • Partner with executive leadership to identify high-impact opportunities for AI, automation, and intelligent workflow transformation across the organization • Establish governance frameworks, operational standards, and best practices for responsible and secure AI usage • Drive modernization of internal systems and workflows through AI-powered tooling, automation, and process redesign • Evaluate and implement emerging technologies that improve organizational effectiveness and reduce operational friction • Partner cross-functionally to ensure AI initiatives align with business priorities, security standards, and long-term operational strategy • Promote organization-wide AI fluency and enablement through tooling, education, and operational guidance • Define the strategy for employee technology experience across a distributed workforce, ensuring scalable, secure, and efficient operational support • Oversee initiatives that improve employee productivity, onboarding experiences, collaboration, and operational enablement through technology and automation • Oversee operational support for remote employees and a small onsite office environment, ensuring alignment with company standards and business continuity needs • Define the strategic roadmap for enterprise technology, cybersecurity, and internal operational systems • Serve as a key cross-functional leader partnering with Product, Engineering, Finance, Legal, People, and executive leadership to align technology investments with company priorities • Lead organizational planning for enterprise systems, operational scalability, security posture, and AI transformation initiatives • Build, mentor, and develop high-performing teams while fostering a culture of innovation, accountability, and operational excellence

Job Requirements

  • 10+ years of progressive experience in IT, cybersecurity, enterprise systems, or related functions
  • 5+ years of experience leading technical, operational, or security organizations
  • Demonstrated experience leading enterprise technology strategy, operational transformation, or organization-wide AI enablement initiatives
  • Experience owning cybersecurity, compliance, and risk management programs in a SaaS or technology environment
  • Experience partnering with executive leadership on operational planning, technology strategy, and organizational scaling initiatives
  • Relevant certifications (e.g., CISSP, CISM, ITIL, Security+, or similar) preferred
  • Demonstrated ability to lead enterprise technology strategy and organizational transformation initiatives
  • Strong understanding of enterprise AI adoption, automation strategy, and operational enablement practices
  • Experience establishing governance models and risk frameworks for security, compliance, and emerging technologies
  • Ability to influence executive stakeholders and drive cross-functional alignment across business and technical organizations
  • Proven ability to scale operational systems, processes, and teams in high-growth or evolving environments
  • Ability to balance strategic planning with hands-on operational leadership
  • Experience managing budgets, vendors, and cross-functional operational initiatives.

Benefits

  • Competitive compensation and equity — rewarding you for your contributions and ownership mindset
  • Remote-first flexibility — work primarily from home within our list of approved states, with opportunities for in-person collaboration
  • Comprehensive health benefits for you and your family, including medical, dental, and vision coverage (PPO, HDHP, and HMO options)
  • Continuous learning support through generous reimbursement for professional development and skills growth
  • 401(k) and Roth plans with an annual financial adviser check-in to help you plan your future
  • Wellness resources — including a monthly stipend to support physical and mental health
  • Work-from-home enablement — internet stipend and home office setup allowance
  • Charitable giving match through our Town Hall awards and community impact initiatives

Related Categories

Related Job Pages

More Security Engineer Jobs

Baringa logo

Senior Cyber Security Engineer

Baringa

Putting people first. Creating impact that lasts.

Full TimeRemoteTeam 1,001-5,000Since 2000H1B No Sponsor

• Design, implement and review security solutions for Azure and M365 environments. • Design, develop, maintain and assess security architecture artifacts (e.g., models, templates, standards, and procedures). • Oversee the development and implementation of security engineering best practices and standards. • Identify & implement automation opportunities, particularly across cloud provisioning, CI/CD pipelines, and policy enforcement. • Coordinate and manage Cyber engineering projects, ensuring timely delivery and quality. • Manage and prioritise an engineering backlog using Agile methodologies. • Maintain accurate documentation and team processes.

United Kingdom
Label Your Data – Data Annotation & Labeling logo

Head of Security

Label Your Data – Data Annotation & Labeling

Data annotation & labeling for Computer Vision, NLP & LLMs. Bringing high quality performance for ML teams & datasets.

Full TimeRemoteTeam 201-500Since 2020H1B No Sponsor

Role Description At Label Your Data, we are looking for a Head of Security who will build and lead the company’s dedicated security direction from the ground up. This is a high-impact role for someone who enjoys building, shaping, and owning security environments in fast-growing tech businesses. You will become the first dedicated security leader within the company, define the security roadmap, establish processes and standards, participate in technical decision-making, and gradually build your own team. As the company and security function continue to scale, this role has a clear path toward evolving into a CISO-level position based on impact, ownership, and achieved results. - Build and develop the company’s security function from the ground up; - Define and implement security processes, policies, and operational standards; - Partner with the group-level security department while establishing independent security ownership within Label Your Data; - Participate in security audits, client security reviews, DPA processes, questionnaires, and compliance-related activities; - Establish and improve access management and security monitoring practices; - Participate in infrastructure and application security initiatives together with technical teams; - Oversee and improve the company’s security stack (EDR, SIEM, VPN/ZTNA, DLP, NGFW, etc.); - Investigate security gaps, operational weaknesses, and incident-related risks; - Validate technical solutions from a security perspective; - Create SOPs, internal security procedures, and operational frameworks; - Own security-related documentation and internal processes; - Shape the future security team, starting with Security Operations / Application Security; - Contribute to long-term security strategy and overall security maturity growth of the company. Qualifications - 2-3+ years of experience in Information Security, Cybersecurity, Infrastructure Security, or related areas; - Mandatory experience working within IT / tech / B2B environments; - Strong hands-on understanding of modern security practices and technologies; - Ability to operate both strategically and hands-on; - Strong ownership mindset and ability to work autonomously; - Experience working with security tooling such as EDR, SIEM, NGFW, VPN/ZTNA, DLP, IAM, or related systems; - Experience participating in security audits, compliance processes, or enterprise security reviews; - Understanding of security governance, access management, and risk management principles; - Experience building or improving security processes in growing environments. Requirements - Strong technical background and ability to independently deep-dive into technical implementation details; - Experience building security functions or teams from scratch; - Previous leadership or mentoring experience. Benefits - Competitive compensation in USD; - Flexible remote-first environment; - Greenhouse conditions for professional growth and self-development; - Opportunity to build a strong and scalable security unit within the company; - A role with real impact, ownership, and visibility.

Ukraine

Role Description We are hiring a Business Development Representative to support outbound sales efforts in the cybersecurity and SaaS sector. This is a remote sales job for a proactive SDR/BDR with strong lead sourcing, cold calling, qualification, and pipeline management skills. You will be responsible for: - Identifying target accounts - Engaging prospects - Qualifying opportunities - Booking meetings with enterprise and mid-market buyers Qualifications - 2+ years of previous SDR, BDR, or outbound sales experience - Demonstrable success metrics in appointment setting, lead generation, or qualified meetings booked - Experience in cybersecurity sales required - Strong cold calling and lead qualification skills - Experience with lead sourcing, territory planning, and pipeline management - Proficiency with Microsoft Office - Experience using LinkedIn Sales Navigator - Apollo experience is a plus - Excellent spoken and written English - Comfortable working in a fast-paced, target-driven sales environment Requirements - Source and qualify leads across target territories and account lists - Conduct high-volume outbound calling using a dialing platform - Make 100–300 calls per day to generate qualified opportunities - Book a minimum of 7 qualified meetings per week - Achieve around 20 qualified, completed meetings per month - Use LinkedIn Sales Navigator to identify decision-makers and build prospect lists - Manage outreach activity, follow-ups, and prospect data accurately - Support territory planning and pipeline development - Write clear, professional prospecting messages and follow-up emails - Collaborate with the sales team to improve messaging, targeting, and conversion rates Benefits - 🌎 Fully remote role with flexible working hours - 🚀 Work with high-growth international companies - 📈 Clear career progression to Account Executive and beyond - 🎯 Performance-based bonuses and incentives - 🤝 Direct hire with global clients (not outsourced) - 🧠 Ongoing training, mentorship, and sales development support

Worldwide
Full TimeRemoteTeam 11-50

Role Description The role involves owning the cryptographic core of the Company’s custody platform: - Scheme ownership: Select, justify, and evolve the MPC / TSS scheme family we run in production (CGGMP21, FROST, GG18 / GG20, lattice variants, future post-quantum threshold schemes). - Protocol reviews: Author and shepherd scheme-review documents. Sit in audit conversations with Trail of Bits, NCC Group, Zellic, or equivalent. - Production implementation: Read and write Rust and Go cryptographic code. Pair with the custody engineering team on signing-service performance, share generation, key rotation, and recovery flows. - Incident response: When a paper, advisory, or competitor disclosure changes our threat model, you write the response and propose the fix. - External representation: Speak at IACR venues, RWC, Real World MPC, ZKProof. Publish work that the company allows you to publish. - Internal teaching: Lift the cryptographic literacy of the engineering organization. Run paper-reading sessions. Mentor IC engineers who want to grow into cryptographic specializations. You are not the entire cryptography team. You are the first dedicated cryptographer. Inside 18 to 24 months we expect to grow this function to a small team and you will hire the next people. Qualifications - 8-plus years of applied cryptography practice, with at least 4 years on threshold signing, MPC, secret sharing, or related primitives shipped in production at a regulated entity. - Hands-on with at least one of: GG18, GG20, FROST, CGGMP21, DKLs23, BLS threshold, lattice-based threshold (Raccoon, Sparkle, equivalent), or a comparable scheme family. You have implemented it, not just read the paper. - Production code in Rust or Go. Not just research code. Mainline branches that hold real customer assets. - Public technical artifact. At minimum one of: an IACR ePrint, RWC / CRYPTO / EUROCRYPT / ASIACRYPT talk, a maintainer role on an open-source MPC library (cggmp21, multi-party-ecdsa, ZKP libraries, lattice libraries, equivalent), or a public scheme-review writeup. - Has been through one regulated-audit cycle as the cryptography-side owner. SOC 2, NYDFS DFS Part 500, FCA, MAS, VARA, OCC, FINMA, or equivalent. - Communicates research clearly to engineers who are not cryptographers. You can write a one-page explainer of a primitive that a Senior IC will internalize in 30 minutes. - English fluency. Written and verbal. Requirements - PhD in cryptography from a recognized program. - Co-authorship on a paper that has been cited by a deployed system you can point to. - Experience reviewing or contributing to NIST submissions (post-quantum signature competition, multi-party threshold cryptography call). - Open-source maintainer credentials on cggmp21, multi-party-ecdsa, libthreshold, mpc-lib, FRESCO, sl crypto, dkls23, or equivalent. - Has co-designed a scheme that was implemented by a third party. - Comfort with lattice cryptography and post-quantum threshold variants. This is not the right role if - "Blockchain engineer" with no published cryptography work. Wrong specialism. - ZK-only background with no MPC / TSS experience. We touch ZK in narrow places but the core function is threshold signing. - Hash-and-sign Solidity developer with no protocol-level cryptography depth. - Founder of a failed Layer-1 chain looking for a Chief Scientist seat. - Currently subject to a non-compete that blocks custody / MPC work for more than 6 months.

UTC-5 to UTC-3 + 1 moreAll locations: UTC-5 to UTC-3 | GMT to GMT+4