Director of DevOps, Security & IT

After School Matters, Inc.
United States
12 days ago
Apply on jrni.applytojob.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$165,000.0 - $185,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Software as a Service Cloud Computing Cyber Security Continuous Integration DevOps Disaster Recovery Identity and Access Management Information Security Management PCI Data Security Standards Queue Management Systems
+11 more
Release Management Site Reliability Engineering Practices Security Information and Event Management Software Vulnerability Management Software Security Mttr Containerization Kubernetes Terraform Devsecops Vulnerability Analysis

Job description

You’re the person who keeps that platform fast, reliable, and secure. As Director of DevOps, Security & IT, you’ll own how jrni builds, runs, and protects its infrastructure - reporting directly to the CTO and leading three connected functions: DevOps & platform engineering first, then security & compliance, then IT.

Most of your week lives in cloud infrastructure, automation, and production reliability across AWS and GCP. From there, you’ll own the security program that keeps enterprise customers confident (ISO 27001, SOC 2), and the internal IT that keeps the company moving. It’s a rare full-stack operational remit with real ownership, a direct line to the CTO, and room to grow as we scale.

We’d love to hear from an automation-minded engineering leader who has run production SaaS at scale and wants to shape all three functions - not just keep the lights on.

You don’t need to tick every box. If you meet most of what’s below and you’re excited about the role, apply anyway - we’d genuinely like to hear from you.

What you’ll do

DevOps & platform engineering

  • Own and optimize jrni’s production cloud infrastructure (AWS, GCP) for scale, reliability, performance, and cost.
  • Partner with Engineering / SRE on CI/CD, release management, and production stability.
  • Lead infrastructure-as-code and automation to streamline workflows and remove toil.
  • Own monitoring, alerting, and observability so issues get caught and resolved proactively.
  • Implement and test disaster recovery and business continuity plans.
  • Lead vulnerability management, patching, and hardening across the estate.

Security & compliance

  • Set the direction for jrni’s Information Security program against ISO 27001 and SOC 2.
  • Own and improve operational controls satisfying ISO 27001, SOC 2, GDPR, and other frameworks.
  • Own jrni’s AI security policy and governance standards (aligned with NIST AI RMF and ISO 42001).
  • Lead AI Operations - using AI to improve efficiency while governing AI systems for privacy and security risk.
  • Own security and operational incident response; run tabletop exercises; serve as incident commander for Sev-1/Sev-2 events; lead blameless post-incident reviews and track remediation to closure.
  • Coordinate breach notification with Legal and the DPO where applicable.
  • Maintain a risk register and lead periodic enterprise risk assessments.
  • Own third-party / vendor risk management - vendor reviews, DPAs, sub-processor oversight.
  • Partner with Legal and external auditors on audits, evidence collection, and certification renewals.
  • Build and support a culture of security awareness, data protection, and compliance, including training.

IT

  • Oversee IAM across corporate (SSO, MFA, SCIM) and production (least-privilege, JIT access, break-glass), with access reviews and joiner/mover/leaver processes.
  • Manage corporate IT, endpoint management, and SaaS administration.
  • Improve processes for productivity, scalability, and audit readiness.
  • Develop and manage the operational budget across people, technology, and vendors.
  • Manage jrni’s cyber insurance relationship and renewals.
  • Work with Customer Success to ensure smooth service delivery and operational excellence.

Team leadership & customer trust

  • Build, mentor, and retain effective, engaged DevOps, security, and IT teams.
  • Define clear career paths, performance objectives, and development plans.
  • Foster a blameless, learning-oriented culture.
  • Manage on-call rotations and keep workloads sustainable and healthy.
  • Collaborate across Sales, Customer Success, Product, and Engineering.
  • Own responses to customer security questionnaires (SIG, CAIQ), RFPs, and audit requests; maintain a customer-facing trust center.
  • Act as security executive sponsor in enterprise sales cycles.
  • Partner with Legal and Product on data residency, classification, retention/deletion, and DSAR fulfillment.
  • Establish KPIs (uptime, MTTD/MTTR, audit closure, remediation SLAs, CSAT) and report to execs and the Board.

Requirements

  • Significant experience leading DevOps, platform, or infrastructure engineering for production SaaS at scale, including leading multiple teams.
  • Operating production SaaS infrastructure at scale on AWS and GCP - infrastructure-as-code, CI/CD, and automation; strong cloud, network, and application security, and DevSecOps.
  • Experience with SRE practices - monitoring, observability, reliability, and incident response in production SaaS.
  • Leading SOC 2 Type II and ISO 27001 audits end-to-end.
  • Hands-on with SIEM, EDR, vulnerability scanners, and CSPM platforms.
  • Experience running corporate IT and identity (SSO, MFA, SCIM, endpoint management).
  • Clear executive communication - comfortable with the Board, customers, and auditors.
  • Bachelor’s in CS, Engineering, or a related field - or equivalent professional experience.

Nice to have

  • Certifications such as AWS Solutions Architect / DevOps Engineer, Terraform Associate, CKA/CKAD (Kubernetes), CISSP, CISM, CISA, AWS Security Specialty, or ISO 27001 Lead Auditor/Implementer.
  • Experience with Kubernetes and containerized workloads.
  • Scaling platform, infrastructure, or InfoSec at a high-growth B2B SaaS company.
  • HIPAA, PCI-DSS, or FedRAMP experience.
  • AI/ML governance (NIST AI RMF, ISO 42001) and securing AI-enabled products.
  • Defining and operating customer-facing trust programs.

Benefits & conditions

  • Own the whole stack. DevOps, security, and IT under one remit, with a direct line to the CTO and real decision-making from day one.
  • Work at real scale. Infrastructure trusted by the world’s leading enterprises, across five continents and 30+ languages.
  • Build, don’t just maintain. Shape platform, security, and AI governance as jrni grows - your scope grows with it.
  • Fully remote (US). Work from anywhere in the country., $165,000-$185,000 + benefits.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jrni.applytojob.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:30 min

Transitioning from software engineering into a DevOps trajectory

Davide Imola Davide Imola · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley · World Congress 2021

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all