Senior Director of Security
Company | Entrata |
---|---|
Location | Lehi, UT, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | Bachelor’s |
Experience Level | Senior, Expert or higher |
Requirements
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- A minimum of 8 years of experience in Information Security, with at least 3 years in a leadership role.
- Proven experience in building and enhancing application security systems at a SaaS (Software as a Service) company.
- In-depth knowledge of application security best practices and industry standards.
- Demonstrated experience in leading Security Operations teams.
- Strong understanding of infrastructure security principles.
Responsibilities
- Develop and implement a comprehensive application security strategy.
- Oversee the identification and mitigation of vulnerabilities in software and systems.
- Lead and optimize Security Operations (SecOps) to proactively detect and respond to security incidents.
- Establish and enforce security policies and procedures for infrastructure components.
- Lead, mentor, and develop a team of security professionals responsible for Cloud Security, Corporate Security, Application Security and Security Operations.
- Foster a culture of security awareness and accountability within the organization.
- Conduct regular risk assessments to identify and prioritize potential threats.
- Develop and implement risk mitigation strategies in collaboration with key stakeholders.
- Work closely with senior leadership and key stakeholders to align security initiatives with business objectives.
- Communicate effectively with technical and non-technical audiences about security issues and solutions.
Preferred Qualifications
- Advanced degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), or other relevant security certifications.
- Experience working in a SaaS or cloud-based environment.
- Familiarity with threat intelligence and incident response.
- Deep understanding of regulatory compliance requirements, such as SOC2 and PCI-DSS.
- Expertise in cloud security technologies and best practices, such as AWS, GCP, or Azure.
- Profound comprehension of software development methodologies and practices.
- Strong understanding of network security and network architecture.
- Proven experience in leading incident response and business continuity planning.
- Adept in security automation and orchestration tools.