Director of Security Engineering
Listed on 2026-07-22
-
IT/Tech
Cybersecurity, Systems Engineer
Job Summary
The Director of Security Engineering is responsible for leading enterprise security architecture, engineering, and exposure management programs. This role provides leadership for the technical security posture of a global Fortune 500 environment, owning the proactive side of security: architecture decisions, platform engineering, security standards enforcement, vulnerability and exposure management, and the initiatives that harden the environment before threats land.
The Director of Security Engineering leads architecture and engineering teams across endpoint, cloud, network, data protection, collaboration, and OT security while building a new Continuous Threat Exposure Management (CTEM) capability. The role combines strategic direction, platform and tooling decisions, cross-functional initiative delivery, and organizational leadership to drive measurable posture improvement across the enterprise.
What You Will Do Technical Security Posture and Architecture- Own security architecture standards, benchmarks, and compliance posture for the enterprise aligned to CIS Benchmarks, NIST CSF 2.0, and platform hardening requirements.
- Make platform and tooling decisions across the security technology stack including endpoint, cloud, network, data protection, and collaboration security.
- Lead security solution selection, evaluation, and implementation for new capabilities across multi-cloud, on‑premises, and OT environments.
- Guide zero‑trust architecture implementation including network segmentation, conditional access enforcement, and least‑privilege design patterns.
- Drive security configuration standards and compliance across Azure, AWS, GCP, on‑premises infrastructure, and industrial control system environments.
- Stand up and operationalize the Continuous Threat Exposure Management function, directing a team of exposure analysts across infrastructure, cloud, application, and external attack surface domains.
- Define and operationalize the CTEM cycle: discovery, prioritization (exploitability‑weighted), mobilization, validation, and remediation tracking.
- Establish and enforce vulnerability remediation SLAs with infrastructure, platform, and application teams across the enterprise.
- Build executive‑facing exposure reporting and risk quantification tied to business outcomes.
- Drive convergence of vulnerability scanning, cloud security posture management, and attack surface management into a unified exposure view.
- Oversee day‑to‑day security engineering including platform maintenance, incident support, approval workflows, and operational stability across the security tooling portfolio.
- Manage the solution review and re‑attestation process for enterprise technology including vendor evaluations and M&A security assessments.
- Drive automation of manual security processes including approvals, compliance checks, and configuration auditing.
- Partner with Observability and Automation teams on SIEM integration, security automation playbooks, and compliance dashboards.
- Translate governance and compliance requirements from GRC into implemented technical controls, deploying and configuring security platforms to monitor and enforce policy compliance across the enterprise.
- Oversee OT security assessments across global manufacturing sites, ensure regulatory compliance (NIS2, CFATS), and drive network segmentation programs for industrial environments.
- Organize and prioritize work across multiple concurrent work streams spanning endpoint hardening, cloud exposure remediation, network benchmarking, data protection, and OT security.
- Use modern tools including AI assistants (Claude, Copilot) to accelerate planning, analysis, documentation, and decision‑making across the team.
- Present program status, roadmaps, and investment cases to executive leadership with clarity and confidence.
- Drive cross‑functional initiatives requiring coordination across infrastructure, networking, cloud platforms, and application teams.
- Lead and develop a distributed security organization consisting of…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).