Dynata logo
DynataPosted 1 month ago

VP, Security & Compliance

$200,000–$220,000 year

RemoteUnited States

Full TimeSenior LevelLarge

Job Summary

Own Dynata's enterprise security strategy by defining roadmaps, prioritizing investments, and establishing a Zero Trust architecture across AWS, Azure, and GCP. Lead AI security governance for the growing ML portfolio, enforce NIST AI RMF and EU AI Act controls, and manage threat intelligence, vulnerability management, and incident response programs. Operate the 24/7 Security Operations Center, drive SIEM/SOAR optimization, and lead internal/external audits for SOC 2, ISO 27001, GDPR, and HIPAA. Recruit and develop a team of 6–15 security professionals while serving as a standing member of the Data and AI Governance Committees. Partner with Engineering and Product to embed security into the SDLC and support major migrations including D365 and inBrain Azure.

Required Qualifications

  • Bachelor's degree in computer science, Information Technology/Systems, Cybersecurity or related field
  • 15 years of progressive experience in Information Security, Cybersecurity, or a related discipline
  • 5+ years in a people-management role leading security and/or compliance teams of 6 or more
  • Proven track record building or maturing security programs at a Fortune 500, PE-backed, or highly regulated company (banking, financial services, healthcare, or large-scale data/tech platforms)
  • Hands-on AI/ML security experience: securing LLM deployments, generative AI products, or data science environments
  • Deep cloud security expertise across AWS, Azure, and/or GCP — including cloud-native security tooling, IAM, and multi-cloud governance
  • Strong compliance program ownership: SOC 2, ISO 27001, GDPR, CCPA — you've run the audits, not just supported them
  • SIEM / SOAR platforms: hands-on experience with CrowdStrike Falcon (EDR, OverWatch, Identity Protection), Splunk, Microsoft Sentinel, or equivalent — including rule tuning, playbook development, and SOC workflow automation
  • DLP (Data Loss Prevention): deep familiarity with enterprise DLP tooling (e.g., Microsoft Purview, Symantec DLP, Forcepoint) — policy design, incident investigation, and integration with broader data classification frameworks
  • Vulnerability management: end-to-end CVE lifecycle — scanning, prioritization, patch coordination, and executive-level reporting
  • AI/ML security: NIST AI RMF, adversarial ML, LLM security controls, model inversion, and data poisoning defense
  • Data architecture fluency: working understanding of modern data platforms (cloud data lakes, lakehouses, Snowflake, MS Fabric, relational and NoSQL databases) — sufficient to assess data flow risks, classify sensitive assets, and engage credibly with data engineering teams
  • Front-end platforms & enterprise applications: familiarity with security considerations for SaaS/enterprise app stacks — including CRM/ERP (e.g., D365, HubSpot, Workday), web applications, and API security — enabling effective partnership with Corporate Applications teams
  • Cloud security tooling: AWS Security Hub, Microsoft Defender for Cloud, GCP Security Command Center, CSPM/CWPP platforms
  • Claude Cowork (Anthropic): direct, hands-on experience using Claude Cowork for enterprise task automation, document intelligence, and AI-assisted workflows — enabling the candidate to credibly govern, audit, and set guardrails for AI productivity tools deployed across the organization
  • CISSP (Certified Information Systems Security Professional) — strongly preferred; candidates without CISSP must hold CISM, CISA, or equivalent and commit to CISSP within 18 months of hire
  • CCSP (Certified Cloud Security Professional) — a strong plus given Dynata's multi-cloud environment
  • AI security or governance certification (e.g., NIST AI RMF Practitioner, Google Cloud Security) — valued given the AI governance committee responsibilities
  • CRISC, CGEIT, or similar risk management credentials — welcomed
  • Executive presence & communication: comfortable presenting to C-suite, board members, and external stakeholders — translating complex security risk into clear business language, defensible recommendations, and compelling narratives
  • Cross-functional partnership: proven ability to partner effectively with Product, Engineering, and Technology teams — embedding security into the SDLC, product roadmaps, and platform architecture without becoming a bottleneck
  • Strategic thinker who can balance long-term security architecture with near-term operational realities and shifting business priorities
  • Collaborative influencer — this role succeeds through influence, trust, and shared ownership across teams, not authority alone
  • Mission-driven: a genuine passion for protecting data, earning customer trust, and building a security culture that people believe in — not just comply with
  • The ideal candidate is located in the Eastern or Central time zone to ensure alignment with core business hours and cross-functional collaboration

Desired Qualifications

  • Candidates with backgrounds in banking, financial services, or Fortune 500 data-intensive environments are strongly preferred — where AI governance, model risk, and regulatory scrutiny are already embedded in the security culture
  • Graduate Degree desirable, but not required
  • Proven track record building or maturing security programs at a Fortune 500, PE-backed, or highly regulated company (banking, financial services, healthcare, or large-scale data/tech platforms strongly preferred)
  • Hands-on AI/ML security experience: securing LLM deployments, generative AI products, or data science environments — ideally including model risk management frameworks from financial services
  • AI security or governance certification (e.g., NIST AI RMF Practitioner, Google Cloud Security) — valued given the AI governance committee responsibilities
  • CRISC, CGEIT, or similar risk management credentials — welcomed
  • CCSP (Certified Cloud Security Professional) — a strong plus given Dynata's multi-cloud environment

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce