Director, Corporate Security
$237,000–$290,000 year
RemoteUnited States
Job Summary
Assess the current state of corporate security and deliver a sequenced improvement plan to the CFO and CISO. Stand up core capabilities for device trust, identity governance, and SaaS security posture while tightening SIEM monitoring and reducing incident response times. Build a multi-year security roadmap and establish practical guardrails for internal enterprise AI use, including SSO, RBAC, and data redaction standards. Lead security operations across EDR/MDR and email tools, partner with IT, Legal, and Procurement on vendor risk assessments, and represent the function in audits and investor diligence. Represent corporate security in audits, investor diligence, customer security reviews, and regulator inquiries as needed.
Required Qualifications
- 7+ years of experience operating at the Director level or equivalent in corporate security, IT security, or security operations
- demonstrated accountability for program ownership, team leadership, and executive stakeholder management
- Experience across both mature, compliance-minded environments (public company, regulated industry, or enterprise scale) and high-growth startups
- 5+ years of experience leading, managing, or developing high-performing teams
- Proven track record building or significantly maturing a corporate security program at a startup or scale-up
- Deep fluency in corporate security fundamentals: identity and access management, endpoint security, device trust, internal network security, SaaS security posture, incident response, and access governance
- Hands-on experience with enterprise security tooling — SIEM tools, modern EDR/MDR, modern email security, IAM platforms, and device management
- Experience running a security program in an environment subject to external audits, SOC 2, or similar compliance frameworks
- Comfort with auditor-ready documentation, evidence collection, and control testing
- Strong cross-functional leadership
- Clear, confident communicator at the executive level
- Experience translating technical risk into business language and presenting a credible security posture to CFOs, boards, and enterprise customers
- Experience in healthcare, life sciences, or other sensitive-data environments handling PHI, PII, or proprietary clinical/commercial data
- Experience communicating risks, gaps, progress, and recommended actions clearly to leaders and stakeholders with different technical backgrounds
- Experience supporting audits, internal investigations, vendor reviews, security questionnaires, and environments that handle sensitive data
- Strong judgment, leadership presence, and execution discipline
- Ability to stay calm under pressure and move work forward consistently
- #LI-Remote
Desired Qualifications
- Experience scaling a security program through a Series C–E or pre-IPO stage
- direct exposure to investor diligence, SOC 2 Type II, or early public-company readiness
- Familiarity with Apple device management and mixed-device enterprise environments
- Experience with security automation and tooling that improves team efficiency, detection quality, and response times
- Background in offboarding and access governance at distributed organizations with significant SaaS sprawl
- Experience evaluating, selecting, and managing enterprise security vendors through procurement cycles
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.