Dynata logo
Dynata

The world’s largest first-party data company for insights, activation & measurement

VP, Security & Compliance

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 5,001-10,000H1B SponsorCompany SiteLinkedIn

Location

Texas

Posted

6 days ago

Salary

$200K - $220K / year

Seniority

Lead

Bachelor Degree15 yrs expEnglishAWSAzureCloudCyber SecurityGoogle Cloud Platform

Job Description

VP, Security & Compliance

Dynata

• Own Dynata's enterprise security strategy — define the roadmap, prioritize investment, and align security controls with business objectives across cloud, corporate applications, and data platforms. • Establish and maintain a Zero Trust security architecture spanning AWS, Azure, and GCP environments. • Oversee threat intelligence, vulnerability management, and incident response programs. • Manage Dynata's Security Operations Center (SOC) — including 24/7 monitoring coverage, alert triage, escalation protocols, and continuous improvement of detection and response capabilities.

Job Requirements

  • Bachelor's degree in computer science, Information Technology/Systems, Cybersecurity or related field
  • 15 years of progressive experience in Information Security, Cybersecurity, or a related discipline.
  • 5+ years in a people-management role leading security and/or compliance teams of 6 or more.
  • Proven track record building or maturing security programs at a Fortune 500, PE-backed, or highly regulated company.
  • Hands-on AI/ML security experience.
  • Deep cloud security expertise across AWS, Azure, and/or GCP.
  • Strong compliance program ownership: SOC 2, ISO 27001, GDPR, CCPA.

Benefits

  • A collaborative, inclusive culture that values expertise, curiosity, and ownership.
  • The chance to make a measurable impact on how insights are created and trusted.
  • Competitive compensation, benefits, and opportunities for growth.

Related Categories

Related Job Pages

More Security Engineer Jobs

DDN logo

Staff Security Engineer

DDN

World’s leading Data Intelligence Platform supercharging over 500,000 GPUs across all data workloads

Full TimeRemoteTeam 1,001-5,000Since 1998H1B Sponsor

Role Description DDN is seeking a highly experienced Sr. Staff Security Architect to lead the design and implementation of end-to-end security architecture across distributed storage platforms, including S3-compatible systems, POSIX-compliant file systems, and KV cache–based data services. This is an architecture role focused on working closely with engineering teams across the data path, control plane, and ecosystem/protocol domains to ensure security is deeply embedded across all layers of the platform. You will collaborate with protocol teams, storage engineers, and platform architects to define secure-by-design systems that support high-performance, multi-tenant, and AI-driven workloads. The ideal candidate brings deep expertise in distributed systems security, cryptography, identity frameworks, and storage architectures, with a strong ability to influence engineering design and guide implementation at scale. Key Responsibilities - Lead the design and implementation of end-to-end security architecture for distributed storage platforms, including S3-compatible systems, POSIX-compliant file systems, and KV cache–based data services. - Partner closely with Data Path engineering teams to ensure secure, high-performance data movement across storage tiers, including encryption, integrity validation, and secure I/O handling. - Lead threat modeling, security reviews, and Secure Software Development Lifecycle (SSDLC) practices across the platform. - Define identity and access management (IAM) integrating enterprise identity providers such as LDAP, Active Directory, OIDC, and Keycloak, supporting SSO, MFA, and federation. - Architect fine-grained authorization models using RBAC and ABAC across tenants, datasets, and resources. - Design multi-tenant isolation mechanisms across namespaces, policies, encryption boundaries, and resource quotas, enforcing least privilege and segregation of duties. - Collaborate with Control Plane teams to define secure APIs, authentication and authorization workflows, policy enforcement, and tenant lifecycle management. - Work with Protocol and Ecosystem teams to secure S3 and POSIX/NFS interfaces, including request signing, session management, and endpoint security. - Define and enforce encryption strategies for data at rest and in transit, including tenant-specific keys and dataset-level encryption policies. - Drive observability and monitoring strategies to detect anomalous behavior, abnormal access patterns, and potential data exfiltration across the platform. - Provide technical leadership and mentorship across cross-functional engineering teams, guiding secure design and implementation practices. Qualifications - Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field. - 12+ years of experience in security architecture, infrastructure security, or distributed systems. - Proven experience designing security for large-scale distributed systems or storage platforms. - Strong understanding of data path vs. control plane architectures and their security implications. - Deep expertise in encryption technologies, key management systems, and cryptographic frameworks. - Experience integrating with external KMS solutions using KMIP or similar protocols. - Strong knowledge of identity and access management (IAM), including RBAC, ABAC, SSO, MFA, and federation. - Experience working with enterprise identity providers such as LDAP, Active Directory, and OIDC. - Familiarity with secure API design, TLS 1.3, mutual TLS, and request signing mechanisms (e.g., SigV4). - Experience designing multi-tenant systems with strong isolation and policy enforcement. - Knowledge of logging, auditing, and SIEM integration for security monitoring and compliance. - Ability to collaborate effectively with protocol, storage, and platform engineering teams. Preferred Skills - Experience working with S3, POSIX/NFS, or similar storage protocols from a security architecture perspective. - Familiarity with KV cache systems, memory tiering, or AI/ML data infrastructure security considerations. - Hands-on experience with BYOK models and tenant-scoped key management. - Experience implementing ABAC using metadata, tags, and classification attributes. - Background in zero trust architecture and distributed system security design. - Experience with secure deletion techniques, including cryptographic erasure. - Knowledge of compliance frameworks such as SOC 2, ISO 27001, NIST, or FedRAMP. - Experience designing security for high-performance, low-latency distributed systems. - Familiarity with anomaly detection, security analytics, and alerting systems. What You’ll Work On - Defining and driving security architecture across data path, control plane, and protocol layers of distributed storage systems. - Partnering with engineering teams to embed security into S3, POSIX, and KV cache data services. - Building scalable encryption, identity, and access control frameworks for multi-tenant environments. - Strengthening tenant isolation, auditability, and compliance across the platform. - Ensuring secure integration across ecosystem components and external services. - Leading cross-team security initiatives that influence system design, implementation, and long-term platform evolution.

United States
Full TimeRemoteTeam 1,001-5,000Since 1973H1B No Sponsor

• Act as strategic bridge between technical security controls and enterprise compliance • Automate, design, configure, and sustain scalable IRM capabilities • Translate regulatory, risk, audit, and compliance requirements into platform configurations • Monitor and evaluate control, regulatory, and security processes • Collaborate with compliance, security, and risk professionals on related projects • Develop and administer training and awareness campaigns • Facilitate incoming audits and assessments • Participate in the development of policies, standards, controls, and procedures

Missouri
$89.3K - $134.9K / year
Full TimeRemoteTeam 501-1,000H1B No Sponsor

Role Description The Director of Security is responsible for designing, implementing, and leading a comprehensive physical security program for a multi-site corporate environment, with alignment and collaboration with Information Security for corporate offices and critical spaces. The primary focus is protecting employees, executives, facilities, and physical assets through robust policies, technologies, and daily operational practices, while partnering with IT to safeguard systems housed in corporate spaces. Essential Functions - Design, implement, and oversee physical security systems for offices and campuses, including access control, CCTV, intrusion detection, duress systems, and visitor management platforms. - Participate in the development and implementation of the enterprise security architecture and supporting security standards to ensure compliance with corporate policies, and relevant legislative and regulatory requirements. - Manage the day-to-day activities of the team to include the hiring and training of new team members, coaching employees and monitoring performance. - Review and determine risks within the environment and recommend security products and/or processes to assist in mitigating risks. - Monitor information systems for security incidents and vulnerabilities including the development of monitoring and visibility capabilities, report on incidents, vulnerabilities, and trends. - Respond to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches including interacting and collaborating with third-party incident responders. - Administer authentication and access controls, including provisioning, changes, and deprovisioning of user and system accounts, security/access roles, and access permissions to information assets. - Analyze trends, news and changes in threat and compliance environment with respect to organizational risk and advise management and develop and execute plans for compliance and mitigation of risk. - Perform risk and compliance self-assessments and engages and coordinates third-party risk and compliance assessments. - Perform comprehensive threat/risk assessments and business impact analysis of current system, data, application and technology environments to determine possible internal and external threats to information assets and identify security measures required to counter such threats. - Create, edit and adhere to Standard Operating Procedures (SOPs), process improvements, and standardization of templates. - Perform ad-hoc and cross-functional duties and/or projects assigned to support business needs and provide developmental opportunities. Qualifications - Bachelor’s degree in information technology or related field with 10+ years of industry related experience is required; OR High School Diploma with 14+ years of industry related experience is required. - 10+ years of experience with computer hardware for storage, desktops, and servers is required. - 10+ years of experience with Routers, Firewalls, Switches, DNS, and DHCP is required. - 10+ years of experience with access control systems, CCTV including installation, configuration, and best practices are required. Knowledge, Skills, & Abilities - Knowledge of data analysis, correlation, anomaly detection, and threat hunting (red, purple, blue team). - Strong knowledge of security best practices. - Deep understanding of information security best practices. - Knowledge of basic computer hardware for both desktops and servers. - Knowledge of Palo Alto or Cisco firewall technologies. - Knowledge of Routers, Firewalls, Switches, DNS, and DHCP. - Strong understanding of TCP/IP, subnetting, routing, access control lists, firewalls, Site-to-Site and Client VPN, NAT and network traffic analysis, and edge configurations. - Strong Knowledge of routing protocols such as OSPF, BGP and static routes. - Ability to work in a dynamic and demanding environment and make decisions quickly. Working Environment / Physical Environment - The position will work onsite or remote based on the candidate’s geographic location. - Regular work schedule is Monday – Friday, within standard business hours. Flexibility is available with manager approval. - Must possess mobility to work in a standard office setting and to use standard office equipment, including a computer. - Lift and carry materials weighing up to 20 pounds. Benefits - Medical, Dental and Vision Plan Options. - Health and Financial Wellness Programs. - Employer Assistance Program (EAP). - Company Paid and Voluntary Life/AD&D, Short-Term and Long-Term Disability. - Healthcare and Dependent Care Flexible Spending Accounts. - 401(k) Retirement Plan with Company Match. - 529 Education Savings Program. - Voluntary Legal Services, Identity Theft Protection, Pet Insurance and Employee Discounts, Rewards and Perks. - Paid Time Off (PTO) includes: 11 Holidays. - Exempt Employees are eligible for Unlimited PTO. - Non-Exempt Employees are eligible for 10 Vacation Days, 56 Hours of Health Pay, 2 Personal Days and 1 Cultural Day.

United States
Job Closed
ICF logo

Senior Cyber Security Specialist

ICF

Founded in 1969, ICF is a global advisory and technology services company headquartered in Reston, Virginia. It delivers data-driven solutions across energy, en

Role Description ICF is seeking a Senior Cyber Security Specialist to support a secure federal ServiceNow program with multiple mission workstreams. This role is responsible for helping maintain the security posture of the platform and supporting the security activities that keep development, testing, release, and sustainment efforts aligned to federal cybersecurity requirements. The ideal candidate is an experienced security professional who can work across infrastructure, application, data, and development teams to support vulnerability management, access control, system authorization, and continuous monitoring. You will help ensure security is built into the lifecycle of the solution, not added after the fact, while also supporting operational workflows, release readiness, and compliance tracking in a fast-paced Agile environment. Job Location: - Remote work is authorized. - Must support US Eastern time zone working hours. - Preference to candidates who live in the Washington DC metro area. If you accept this position, you should note that ICF does monitor employee work locations, blocks access from foreign locations/foreign IP addresses, and prohibits personal VPN connections. What You Will Do - Support the security posture of enterprise ServiceNow systems and related applications. - Assist with security governance, system authorization, and continuous monitoring activities. - Develop, maintain, and update security documentation and artifacts such as SSPs, POA&Ms, risk registers, and related compliance materials. - Support ATO efforts, security assessments, evidence gathering, and control validation. - Track and remediate vulnerabilities, scan findings, and security issues through closure. - Coordinate with developers, administrators, testers, and program stakeholders to ensure security findings are understood and addressed. - Support access control reviews, role-based permissions, least-privilege practices, and secure user administration. - Help evaluate security implications of workflow changes, data integrations, releases, and configuration updates. - Support audit preparation, findings response, and ongoing compliance reporting. - Monitor and document security process changes, configuration updates, and remediation actions. - Contribute to secure release practices, including validation of fixes and scan remediation before deployment. - Support incident and issue triage from a security perspective when needed. Qualifications - Must be a U.S. citizen and possess an active Top Secret security clearance, as required by the federal contract. - Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field. - 6+ years of relevant experience in information security, cybersecurity, or system security roles. - 6+ years of experience supporting federal security frameworks such as FISMA, NIST RMF, or similar. Requirements - 4+ years of experience supporting ATO processes, security documentation, and continuous monitoring. - 4+ years of experience with vulnerability management, security scanning tools, or remediation workflows. - 3+ years of experience conducting risk assessments, security analysis, or compliance reviews. - 3+ years of experience supporting cloud or enterprise system security. - Experience supporting federal ServiceNow environments or other enterprise workflow platforms. - Familiarity with RMF artifacts, ATO packages, POA&M tracking, and continuous monitoring programs. - Experience with identity and access management, role governance, or least-privilege design. - Experience supporting secure release practices, scan remediation, or DevSecOps workflows. - Familiarity with vulnerability tools, static/dynamic analysis, or cloud security controls. - Experience supporting audit response, corrective action tracking, or security governance meetings. - Relevant cybersecurity certification such as Security+, CISSP, or equivalent. Professional Skills - Demonstrated ability to communicate security issues clearly to technical and non-technical stakeholders. - Strong organizational skills and attention to detail for compliance tracking and evidence management. Pay Range The pay range for this position based on full-time employment is: $89,649.00 - $152,404.00.

United States
$89.6K - $152.4K / year