CrawlJobs Logo

Director, Security & Compliance

instabase.com Logo

Instabase

Location Icon

Location:
United States , San Francisco

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

As Director, Security & Compliance, you’ll be responsible for building and managing out our Security and GRC (Governance, Risk and Compliance) program, driving strategy and execution of Instabase security and compliance initiatives.

Job Responsibility:

  • Formulate and drive GRC roadmap, security policies, vendor security reviews and security training
  • Initiate, own and lead new security & compliance programs and audits GDPR, SOC2, HIPAA and ISO 27001
  • Establish and continuously improve standards, processes, tooling and procedures for audit and compliance management
  • Collaborate and work cross-functionally across the company to deliver successful security compliance programs, partnering with Engineering, Product, GTM, Legal and HR teams
  • Work with external auditors to achieve security compliance certifications and reports
  • Regularly report on status, operational metrics and KPI’s, providing transparency to company Leadership and internal stakeholder teams

Requirements:

  • Extensive experience in security compliance, successfully leading compliance projects, risk assessments and audits
  • FedRAMP (NIST 800-53), GDPR, SOC2, HIPAA and ISO 27001 auditing and implementation experience
  • Experience working with Engineering teams within the modern cloud / SaaS technology space
  • Excellent written and verbal communication skills

Nice to have:

  • Past experience at a Big Four consulting firm and/or reputable SaaS provider
  • Engineering or Computer Science background
What we offer:
  • Flexible PTO
  • Instabreak Fridays: Enjoy 6 company-wide Friday breaks scheduled throughout the year
  • Comprehensive Coverage: Top-notch medical, dental, and vision insurance
  • 401(k) with Matching
  • Parental Leave & Fertility Benefits
  • Therapy Sessions Covered: 10 free sessions through Samata Health
  • Wellness Stipend
  • Lunch on Us: Enjoy a lunch credit when you're in the office

Additional Information:

Job Posted:
January 02, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Director, Security & Compliance

Director of Security

Jeeves is looking for a visionary and hands-on Director of Information Security ...
Location
Location
Brazil , São Paulo
Salary
Salary:
Not provided
tryjeeves.com Logo
Jeeves
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Master's degree preferred
  • 10+ years of progressive experience in information security
  • At least 5 years in a leadership or management role, preferably within a B2B SaaS or FinTech environment
  • Proven experience operating in a global organization with a strong understanding of diverse regulatory landscapes across North America, EMEA, and Latin America (Mexico, Colombia, Brazil)
  • Strong understanding of financial industry security regulations and compliance frameworks (e.g., PCI DSS, SOC 2, ISO 27001, NIST Cybersecurity Framework, GDPR, LGPD)
  • Deep technical expertise across a broad range of security domains, including network security, cloud security (AWS, Azure, GCP), application security, data security, identity and access management, and incident response
  • Experience with various security tools and technologies (SIEM, EDR, WAF, DLP, vulnerability scanners, etc.)
  • Excellent communication, interpersonal, and presentation skills, with the ability to articulate complex security concepts to technical and non-technical audiences, including executive leadership
  • Strong analytical and problem-solving skills, with a proactive and pragmatic approach to security
Job Responsibility
Job Responsibility
  • Develop, implement, and maintain a robust global information security strategy aligned with business objectives, regulatory requirements, and industry best practices
  • Lead the evolution of our security roadmap, identifying emerging threats, vulnerabilities, and opportunities for improvement
  • Provide expert guidance and leadership on all aspects of information security to executive management and key stakeholders
  • Oversee the design, implementation, and continuous improvement of security policies, standards, procedures, and guidelines across the organization
  • Manage and mature our security awareness and training programs for all employees, fostering a security-conscious culture
  • Develop and manage the information security budget and resource allocation
  • Establish and maintain an enterprise-wide information security risk management framework, conducting regular risk assessments and managing mitigation plans
  • Ensure compliance with relevant international, regional, and local data privacy and security regulations
  • Lead and coordinate external security audits and assessments, facilitating responses to findings and ensuring timely remediation
  • Oversee security operations, including vulnerability management, penetration testing, security monitoring, and incident detection and response
  • Fulltime
Read More
Arrow Right

Director of Information Security

Jeeves is looking for a visionary and hands-on Director of Information Security ...
Location
Location
Mexico , Mexico City
Salary
Salary:
Not provided
tryjeeves.com Logo
Jeeves
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Master's degree preferred
  • 10+ years of progressive experience in information security
  • At least 5 years in a leadership or management role, preferably within a B2B SaaS or FinTech environment
  • Proven experience operating in a global organization with a strong understanding of diverse regulatory landscapes across North America, EMEA, and Latin America (Mexico, Colombia, Brazil)
  • Strong understanding of financial industry security regulations and compliance frameworks (e.g., PCI DSS, SOC 2, ISO 27001, NIST Cybersecurity Framework, GDPR, LGPD)
  • Deep technical expertise across a broad range of security domains, including network security, cloud security (AWS, Azure, GCP), application security, data security, identity and access management, and incident response
  • Experience with various security tools and technologies (SIEM, EDR, WAF, DLP, vulnerability scanners, etc.)
  • Excellent communication, interpersonal, and presentation skills, with the ability to articulate complex security concepts to technical and non-technical audiences, including executive leadership
  • Strong analytical and problem-solving skills, with a proactive and pragmatic approach to security
Job Responsibility
Job Responsibility
  • Develop, implement, and maintain a robust global information security strategy aligned with business objectives, regulatory requirements, and industry best practices
  • Lead the evolution of our security roadmap, identifying emerging threats, vulnerabilities, and opportunities for improvement
  • Provide expert guidance and leadership on all aspects of information security to executive management and key stakeholders
  • Oversee the design, implementation, and continuous improvement of security policies, standards, procedures, and guidelines across the organization
  • Manage and mature our security awareness and training programs for all employees
  • Develop and manage the information security budget and resource allocation
  • Establish and maintain an enterprise-wide information security risk management framework, conducting regular risk assessments and managing mitigation plans
  • Ensure compliance with relevant international, regional, and local data privacy and security regulations
  • Lead and coordinate external security audits and assessments
  • Oversee security operations, including vulnerability management, penetration testing, security monitoring, and incident detection and response
  • Fulltime
Read More
Arrow Right

Director, Global Security

The Director, Global Security leads the development and execution of a comprehen...
Location
Location
United States
Salary
Salary:
180000.00 - 220000.00 USD / Year
avanos.com Logo
Avanos
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree or its non-U.S. equivalent
  • Minimum 10 years of experience in corporate and/or government security (law enforcement or other relevant experience) with a preference for experience in a global multinational corporation
  • Experience in international security operations, especially the US-Mexico Border
  • English language fluency required
  • Travel: 25–50% global travel, often on short notice
  • Must be available 24/7 for emergencies and business continuity needs
Job Responsibility
Job Responsibility
  • Strategic Leadership - Develop and implement a global security strategy aligned with corporate objectives
  • Security Management - Lead a high-performing global security team, including internal staff and co-sourced partners
  • Brand Ambassador - Establish and maintain a world-class security culture, awareness, and training program
  • Fiscal Responsibility - Develop and manage the global security budget, ensuring efficiency and productivity
  • Risk Assessment - Conduct global risk assessments to identify threats to people, property, and reputation
  • Site Leadership - Direct site security operations globally, ensuring optimal use of personnel and technology
  • Crisis Management - Co-lead Crisis Management and Business Continuity programs, including training and preparedness exercises
  • Executive Protection - Oversee executive protection and security for Board meetings and corporate events
  • Global Events and Activities - Manage international travel security and advance operations
  • International Compliance - Lead compliance with Customs-Trade Partnership Against Terrorism (C-TPAT) and Authorized Economic Operator (AEO) programs
What we offer
What we offer
  • Incentive compensation program
  • Benefits on day 1
  • Free onsite gym
  • Onsite cafeteria
  • HQ region voted 'best place to live' by USA Today
  • Uncapped sales commissions
  • Generous 401(k) employer match of 100% of each pretax dollar you contribute on the first 4% and 50% of the next 2% of pay contributed with immediate vesting
  • Fulltime
Read More
Arrow Right

Director - Governance, Risk and Compliance

We are a fast-growing fintech company seeking a proactive and highly organized G...
Location
Location
United States , New York
Salary
Salary:
175000.00 - 200000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries
Job Responsibility
Job Responsibility
  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Director, Product Security

We are a global team of innovators and pioneers dedicated to shaping the future ...
Location
Location
United States , Portland
Salary
Salary:
224000.00 - 280000.00 USD / Year
newrelic.com Logo
New Relic
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of technical hands-on security experience or security program management
  • Deep Engineering Background: Substantial, hands-on experience in software engineering and development roles prior to, or integrated with, security leadership
  • Demonstrated ability leading multiple managers and teams
  • SaaS Product Delivery Experience: Proven track record of securing rapidly scaling SaaS products delivered on cloud platforms
  • Strong product security program planning, project management, and execution skills
  • DevSecOps Mastery: Extensive, practical experience designing and implementing advanced DevSecOps toolchains and methodologies
  • A background involving open-source security, vulnerability disclosure, SaaS cloud security technologies, product incident response, and a deep understanding of risk and threat assessments
  • Experience identifying and resolving potential security issues involving compliance, mergers and acquisitions, and regulatory issues as related to Software as a Service (SaaS)
  • Demonstrated communication skills with detailed, technical information in a manner comprehensible by individuals at varying degrees of experience and skill level
Job Responsibility
Job Responsibility
  • Work closely with the CISO to provide leadership for product security strategy execution, product security architecture, and the secure engineering ecosystem
  • Help build and deliver on the CISO's vision for the growth of information security programs such as SDLC, audit logging, product security standards, security testing, and bug bounties
  • Own and Execute the Product Security Strategy, defining a clear, actionable roadmap that aligns with business goals and reduces organizational risk
  • Act as the principal security advisor to Engineering and Product leadership, translating high-level product strategy into technical security requirements and engineering practices
  • Drive DevSecOps Adoption by architecting and leading the implementation of our DevSecOps program, integrating security testing, validation, and controls seamlessly into the CI/CD pipeline
  • Leverage deep experience with a broad range of development, build, and deploy systems (e.g., Jenkins, GitLab CI, Kubernetes) to identify and eliminate security friction points
  • Design, implement, and run an effective Product Vulnerability Management lifecycle, from automated scanning and triage to developer remediation and verification
  • Work directly with development teams to improve and scale secure coding practices, focusing on developer experience and automation
  • Feed and grow a global security organization that motivates team members to face challenges and deliver significant work
  • Coach and mentor managers and team members by understanding their career goals and providing opportunities for professional growth
What we offer
What we offer
  • Corporate bonus plan
  • Healthcare
  • Dental
  • Vision
  • Parental leave and planning
  • Mental health benefits
  • 401(k) plan and match
  • Flex time-off
  • 11 paid holidays
  • Volunteer time-off
  • Fulltime
Read More
Arrow Right

Director, Deputy Corporate Compliance & Operations

Aledade's Compliance & Ethics organization is seeking a tenured and strategic he...
Location
Location
United States , Arlington; Austin; Durham; Novi; Bethesda
Salary
Salary:
Not provided
aledade.com Logo
Aledade, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or equivalent combination of education and experience
  • +12 years of experience, with a minimum of 8 years of progressive experience in healthcare compliance, with a strong focus on corporate compliance operations
  • Experience leading compliance operations teams
  • Experience presenting and reporting to the Board of Directors
  • Strong knowledge of HIPAA, fraud, waste, and abuse laws (Stark Law, Anti-Kickback Statute, False Claims Act)
  • Excellent analytical, problem-solving, and critical thinking skills
  • Exceptional written and verbal communication skills, with the ability to translate complex data findings into clear and actionable guidance
  • Strong interpersonal skills and the ability to collaborate effectively with diverse teams
Job Responsibility
Job Responsibility
  • Deputize for the VP, Head of Compliance in providing leadership, oversight and representation for the Compliance Department
  • Prepare and present compliance reports to senior leadership, Compliance Committee, and the Board of Directors
  • Oversee and continually enhance Aledade’s Corporate Compliance Program, ensuring alignment with OIG compliance program guidance, industry best practices, and Aledade’s strategic objectives
  • Establish and maintain a strong compliance governance framework, including policy standards, committee structures, and reporting mechanisms
  • Develop and manage compliance training and education programs to ensure business relevant and effective programs
  • Lead and manage compliance the day-to-day operations, including policy governance, reporting & investigations, conflict of interest, exclusion screening, training & education, and compliance communications
  • Oversee the intake, internal investigations, and resolution of compliance concerns and reports to ensure consistent application of policies, procedures, and corrective actions
  • Partner with Legal, Privacy, Security, and People teams to ensure coordinated approaches to compliance risks
  • Lead special projects on behalf of the VP, Head of Compliance, including compliance program optimization, technology enablement, and corporate transaction readiness
  • Supervise and mentor compliance team members, fostering professional growth and operational excellence
What we offer
What we offer
  • Flexible work schedules and the ability to work remotely are available for many roles
  • Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
  • Robust time-off plan (21 days of PTO in your first year)
  • Two paid volunteer days and 11 paid holidays
  • 12 weeks paid parental leave for all new parents
  • Six weeks paid sabbatical after six years of service
  • Educational Assistant Program and Clinical Employee Reimbursement Program
  • 401(k) with up to 4% match
  • Stock options
  • Fulltime
Read More
Arrow Right

Director, Security Operations Center

The Director of the Security Operations Center (SOC) is responsible for leading ...
Location
Location
United States , Houston
Salary
Salary:
Not provided
sysco.com Logo
Sysco
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Technology, or a related field
  • 10+ years of experience in cybersecurity, with at least 5 years in a leadership role within a SOC or similar environment
  • CISSP, CISM, GIAC, CEH, or equivalent
  • Deep understanding of cybersecurity principles, threat intelligence, and incident response
  • Strong leadership and team management skills
  • Experience with security technologies (e.g., Sentinel, QRadar, Palo Alto, CrowdStrike)
  • Excellent communication and stakeholder management abilities
  • Ability to work under pressure and manage multiple priorities in a fast-paced environment
Job Responsibility
Job Responsibility
  • Lead day-to-day SOC operations including monitoring, detection, analysis, and incident response
  • Develop and maintain SOC policies, procedures, and playbooks aligned with frameworks like NIST, MITRE ATT&CK
  • Oversee deployment, tuning, and optimization of SIEM, SOAR, IDS/IPS, EDR, and threat intel platforms
  • Coordinate cross-functional incident response and lead post-incident reviews
  • Work with IT, legal, compliance, and business units to align with risk management goals
  • Monitor emerging threats and adjust defenses and strategies proactively
  • Recruit, mentor, and develop SOC staff, fostering continuous improvement
  • Prepare and present SOC performance, threat landscape, and risk posture to executives
  • Ensure SOC operations meet standards like GDPR, HIPAA, PCI-DSS, ISO 27001
  • Fulltime
Read More
Arrow Right

Director Engineering- Security Service Edge (SSE)

Join HPE’s Security Service Edge (SSE) organization as a senior engineering lead...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science or a related field in a known university
  • advanced degree preferred
  • 15+ years of experience in engineering, with 10+ years in leadership roles managing large-scale teams
  • Demonstrated expertise in cloud-native operations (AWS, Azure, or GCP), infrastructure-as-code, observability, and incident management
  • Strong background in data engineering platforms (Snowflake, Airflow, etc.), data governance, and analytics delivery
  • Experience overseeing security operations, including cloud security architecture, compliance, and access controls
  • Proven ability to drive high-scale, reliable, and efficient SaaS operations
  • Strong business and operational judgment with a track record of cross-functional impact
  • Excellent communication skills, comfortable engaging technical and executive audiences alike
Job Responsibility
Job Responsibility
  • Provide strategic and technical leadership for Ops, Data Engineering and Management teams supporting the SSE platform
  • Lead and grow high-performing, geographically distributed engineering teams
  • Define organizational goals aligned with business and technology roadmaps
  • drive execution against measurable outcomes
  • Champion engineering excellence through DevOps, automation, security-by-design, and modern development practices
  • Collaborate with product, architecture, customer success, and executive leadership to drive technical and business success
  • Foster a culture of innovation, operational excellence, and continuous improvement
  • Provide coaching, career development, and succession planning for leaders and senior engineers
What we offer
What we offer
  • A competitive salary and extensive social benefits
  • Diverse and dynamic work environment
  • Work-life balance and support for career development
  • An amazing life inside the element
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right