Director of Cyber Security

Ramp Talent•Pleasanton, CA

About The Position

Ramp Talent is partnering with a well-established, multi-brand online learning company with a high-volume e-commerce business. The company is hiring a Senior Director to own how software is built, shipped, and protected across its portfolio. This leader will run two organizations: an established Security Operations and Information Security function, and a Platform Engineering and Developer Experience (DevEx) organization that you will build from the ground up. The goal is to give every engineer a secure, self-service, AI-augmented path to production on AWS. We're looking for a hands-on, AI-first technology executive who has protected high-volume e-commerce environments, built a platform team around a clear North Star, and scaled strong organizations through great people leadership.

Requirements

  • 15+ years in engineering, infrastructure, or security
  • 7+ years leading multi-team organizations, including managers of managers and 30+ engineers
  • A track record running SecOps / InfoSec for a high-traffic e-commerce or digital commerce business, including PCI DSS and SOC 2 programs
  • Proven success building a platform engineering or DevEx team from the ground up, with measurable gains in delivery speed and reliability
  • Deep AWS expertise across security (IAM, GuardDuty, Security Hub, KMS, WAF), networking, containers, and serverless
  • An AI-first mindset: you use AI tools daily and have embedded AI into security and engineering workflows at scale

Nice To Haves

  • Experience in EdTech, multi-brand, or regulated industries (financial services, healthcare)
  • CISSP, CISM, or AWS Security Specialty certification

Responsibilities

  • Build and lead SecOps: 24x7 detection and response, threat intelligence, vulnerability management, and incident command with clear SLAs and runbooks
  • Own the information security program, including risk management, policy, security architecture reviews, and audit readiness for PCI DSS, SOC 2, and privacy regulations (CCPA, GLBA, HIPAA)
  • Secure the e-commerce and payments surface: checkout, identity and account takeover, fraud and bot mitigation, WAF/edge protection, and vendor risk
  • Drive Zero Trust access, least-privilege identity controls, and company-wide secrets management
  • Apply AI to security operations (automated triage, AI-assisted detection engineering, agentic response) and set guardrails for safe use of AI and LLMs across the business
  • Define the Platform North Star and DevEx metrics (DORA, lead time, change failure rate, MTTR, developer satisfaction) and hold the org accountable to them
  • Build an Internal Developer Platform with golden paths, self-service environments, and Terraform-based infrastructure-as-code so teams go from idea to production in hours, not weeks
  • Own CI/CD, observability, and SRE practices (SLOs, blameless post-mortems) across AWS workloads (ECS, Lambda, RDS, event-driven services)
  • Embed DevSecOps into the platform (scanning, SBOM, policy-as-code, secret detection) so the secure path is the default path
  • Partner with FinOps to make cloud cost efficiency a first-class platform outcome
  • Champion an AI-first engineering operating model: AI-assisted coding, testing, incident resolution, and platform automation
  • Hire and develop managers and senior ICs across SecOps, Platform, SRE, and DevEx
  • Own budgets, vendor and tooling strategy, and ROI-driven investment cases
  • Report risk posture and platform health to executives and the board, and partner closely with Product, Data, and engineering leaders
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service