Director of Security Operations
Company | Upshop |
---|---|
Location | Austin, TX, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | Bachelor’s |
Experience Level | Senior, Expert or higher |
Requirements
- Bachelor’s degree in Computer Science, Information Technology, or a related field. Advanced degrees are often preferred
- In-depth knowledge of IT security principles, best practices, and industry standards
- Strong leadership and management skills, with the ability to motivate and inspire a team
- Excellent problem-solving and analytical skills, with the ability to identify and mitigate security risks
- Strong communication and interpersonal skills, with the ability to effectively communicate complex security concepts to both technical and non-technical stakeholders
- Proficiency in conducting risk assessments and vulnerability testing
- Experience with security incident response and management
- Familiarity with security tools and technologies, such as firewalls, intrusion detection and prevention systems, encryption, antivirus software, etc.
- Knowledge of network and system administration
- Understanding of cloud computing security principles and best practices
- Familiarity with regulatory requirements and industry standards related to IT security
- Excellent problem-solving and analytical skills
- Strong communication and collaboration abilities
- Ability to mentor and lead technical teams
Responsibilities
- Implement and manage the organization’s IT security strategy, policies, and procedures
- Guide a team of developers, providing guidance, training, and support to ensure the effective execution of security initiatives
- Conduct regular risk assessments and vulnerability tests to identify potential security threats and develop strategies to mitigate them
- Monitor and analyze security incidents, investigating any breaches or security incidents and implementing corrective actions as necessary
- Stay up to date with the latest industry trends, threats, and technologies to ensure that the organization’s IT security measures are current and effective
- Collaborate with other departments to ensure that security requirements are integrated into the design and implementation of new systems and technologies
- Role out security awareness programs to educate employees about security best practices and promote a culture of security within the organization
- Manage relationships with external vendors and partners to ensure that security controls are effectively implemented and maintained
- Ensure compliance with relevant regulatory requirements and industry standards, such as GDPR, ISO 27001, SOC2. Familiarity with US, Canada, European privacy regulations, California’s Code of Regulations (CCR) etc.
- Prepare regular reports to senior management on the organization’s IT security posture, including insights, recommendations, and metrics
Preferred Qualifications
- Professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CISA (Certified Information Systems Auditor) are highly desirable.