Position: Director SecOps Engineer
Location: Hybrid San Francisco
Duration: 3-6 months with strong possibility for CTH
The client is looking for a hands-on technical leader to join our Infrastructure organization as Director of Security Operations (SecOps). In this role you will lead a talented team of Security Operations and Identity & Access Management (IAM) Engineers who protect the clients critical infrastructure and ensure a secure environment for our customers and employees.
Our Infrastructure team (Production Operations) is made up of talented and enthusiastic individuals who have a huge amount of experience in the running managing and scaling of large-scale web operations and systems administration. The team works closely with the rest of our Engineering and InfoSec organizations to ensure that the platform powering the client remains reliable performant and secure 24x7.
You will be the deep technical resource guiding the SecOps team and influencing security best practices across our Technical Operations organization. Youll set the vision for Infrastructure Security and IAM deliver scalable solutions across cloud and enterprise environments and act as a trusted partner to teams company-wide. If you thrive on solving complex security challenges building high-performing teams and driving impact at scale - wed love to talk.
What Youll Do
- Define and execute the vision for Infrastructure Security IAM PAM vulnerability management asset management and red team efforts.
- Lead and grow a high-performing team of Security Operations & IAM Engineers.
- Provide technical expertise in designing implementing and operating security solutions that scale with our business.
- Engage with 2nd line stakeholders to constructively debate and challenge technical requirements and risk assessments ensuring that the scope is well-defined measurable and executable.
What Were Looking For
- 7 years in security leadership roles driving enterprise-wide initiatives.
- Direct experience working in FinTech or highly regulated financial services environments.
- Hands-on experience implementing NIST Cybersecurity Framework and related best practices.
- 5 years of hands-on AWS Infrastructure and Security experience including:
- AWS Identity & Access Management (IAM) Organizations Control Tower and SCP governance
- VPC security design security groups and network segmentation
- Security monitoring and threat detection (GuardDuty Security Hub CloudTrail CloudWatch)
- Key management and data protection (KMS Secrets Manager Certificate Manager)
- Infrastructure hardening patching and vulnerability management in AWS environments
- Proven expertise in vulnerability management including hands-on experience evaluating and deploying tools (e.g. Qualys Wiz Orca Upwind).
- Deep IAM/PAM expertise with enterprise tools including:
- Active Directory (Self hosted & AWS Managed AD)
- Okta (SSO MFA federation)
- SailPoint IdentityNow (IAM governance & provisioning)
- Delinea (secrets vaulting and least privilege enforcement)
- Experience with cloud-native security (AWS Kubernetes Serverless GitOps).
- Asset management experience leveraging tools such as Axonius and BigID to maintain visibility compliance and control over infrastructure and application assets.
- Proven track record running pen-testing programs and incident response.
- Familiarity with compliance frameworks (SOC GDPR ISO27001 FedRAMP etc.).
- A passion for building secure systems scaling high-performing teams and leading with integrity.