Openly-posted 2 months ago
$194,000 - $230,375/Yr
Full-time • Senior
251-500 employees

As the Director of Information Security at Openly, you will be responsible for maintaining and maturing the company's security program. This involves collaborating with cross-functional teams to identify and mitigate risks, establishing security policies and procedures, and ensuring compliance throughout the organization. You will apply a risk-informed approach to security and compliance, enabling the business to operate safely and securely.

  • Develop and execute a comprehensive information security roadmap in collaboration with technology leadership and compliance leadership.
  • Provide oversight for security governance and risk management, including risk assessments, vulnerability management, and incident response planning.
  • Promote a culture of security awareness throughout the organization by conducting training sessions and awareness campaigns.
  • Provide regular updates and reports to senior management and stakeholders on the state of information security within the organization.
  • Lead SOC II Type II audit including audit coordination, controls, and evidence collection.
  • Evaluate and manage security risks associated with third-party vendors and service providers.
  • Establish and maintain information security policies, standards, and procedures in compliance with relevant industry regulations (e.g., GDPR, PCI DSS, state Insurance Data Security laws) and best practices.
  • BS degree in Computer Science, IT, related technical discipline or equivalent years of experience.
  • 8+ years of experience in information security roles with a balance of management, compliance, and technical expertise.
  • Proven management abilities.
  • Experience guiding and growing teams of teams, balancing security, compliance and engineering needs with the needs of the business.
  • Demonstrated ability to leverage resources and teams to deliver multiple projects from start to finish in reasonable overlapping time frames.
  • Experience developing a strategy or roadmap for your teams.
  • Proven experience leading SOC II audits and evidence collection.
  • Familiarity and willingness to work with Agile methodologies.
  • Excellent written and verbal communication.
  • CISSP, CISM, or other cybersecurity certifications preferred, but not required.
  • Working knowledge of one or more public cloud technologies (AWS, Azure, Google Cloud) and information security in a hybrid cloud environment.
  • Risk management experience.
  • Knowledge of PCI Data Security Standards including scoping and implementation.
  • Working knowledge of PAM, SIEM, SSO, WAF, endpoint detection, and email threat management technologies.
  • Startup or SaaS and remote work experience preferred.
  • Remote-First Culture - We supported #remotelife long before it was a given. We'll keep promoting it.
  • Competitive Salary & Equity.
  • Comprehensive Medical, Dental, and Vision Plan Offerings.
  • Life and disability coverage including voluntary options.
  • Parental Leave - up to 8 weeks (320 hours) of paid parental leave based on meeting eligibility requirements.
  • 401K Company Contribution - Openly contributes 3% of the employee's gross income, even if the employee does not contribute.
  • Work-from-home stipend - We provide a $1,500 allowance to spend on setting up your home workplace.
  • Annual Professional Development Fund: Each employee has $2,000 in professional development (PD) funds to spend on activities or resources annually.
  • Be Well Program - Employees receive $50 per month to use towards your overall well-being.
  • Paid Volunteer Service Hours.
  • Referral Program and Reward.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service