> Markdown version of [/jobs/ext/2710102-director-information-security](https://www.wearedevelopers.com/jobs/ext/2710102-director-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Director, Information Security - **Company:** ACHIEVEMENTS, INC. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cyber Security, Monitoring of Systems, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Security, Security Information and Event Management, Google Cloud, Software Security, Firewalls (Computer Science), Information Technology - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/director-information-security-security-engineering-operations-achieve-8790358 ## About the Role * Proven experience (+ 5 years) in managing security engineering and operations in a complex IT environment. Bachelor's degree in Computer Science, Information Security, or a related field is desirable. * Strong knowledge of security principles, practices, frameworks, and industry standards (e.g., ISO 27001, NIST, CIS). * Extensive experience in designing and implementing security infrastructure; including firewalls, IDS/IPS, SIEM, endpoint protection, etc. * Familiarity with cloud security principles and technologies (e.g., AWS, Azure, GCP). * Strong leadership and team management skills, with the ability to inspire and motivate a diverse team. * Strong communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams. * Relevant certifications (e.g., CISSP, CISM, GIAC) are highly desirable. ## Description * Leadership and Team Management: + Develop and execute the company's information security strategy, aligning it with business goals and objectives. + Establish and maintain relationships with internal stakeholders to foster a security-aware culture. + Provide executive-level guidance on security measures and initiatives, ensuring they are integrated into the overall company strategy. + Manage the information security budget effectively, allocating resources for key security projects and initiatives. + Foster a collaborative and high-performance culture within the team. + Set clear objectives and goals for the team members and ensure they are aligned with the overall security strategy. + Conduct regular performance evaluations, provide constructive feedback, and support professional development plans for team members. + Recruit and onboard new team members as needed. + Collaborate with Platform and Dev/Ops teams to ensure security best practises are being met * Security Engineering Management: + Develop and execute a comprehensive security strategy, including the design and implementation of security infrastructure, policies, and procedures. + Collaborate with cross-functional teams to assess security risks and requirements/configurations for new technologies, systems, and services. + Design and implement secure network architectures, including firewalls, intrusion detection systems, data encryption, and access controls. + Ensure the effective deployment and configuration of security tools and technologies to protect critical assets. + Oversee Application Security practices working closely with Engineering teams, Dev/Ops and Platform teams. + Familiarity with detection engineering functions. * Security Operations Management: + Oversee the day-to-day security operations, monitoring systems, and responding to security incidents promptly. + Lead oversight of the detection engineering / management of alerting and detections. + Implement and manage security incident response functions and procedures; including investigation, containment, and resolution of security breaches. + Create and maintain operational metrics. + Manage relationships with MssP and XDR providers. + Develop and maintain security incident response plans, including coordination with internal stakeholders and external partners. ## Related Videos - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)