Source Job

$200,000–$245,000/yr
US

  • Own the overall security posture, including policy, standards, and risk framework.
  • Manage ISO 27001, SOC 2, FedRAMP, and CMMC compliance programs.
  • Lead incident response, vulnerability management, and customer security assurance.

Cybersecurity ISO 27001 SOC 2 FedRAMP Incident Response

20 jobs similar to Director of Cyber Security

Jobs ranked by similarity.

US

  • Develop and execute enterprise cybersecurity strategy and multi-year security roadmap.
  • Lead cybersecurity risk management, security operations, and incident response programs.
  • Ensure compliance with HIPAA, HITRUST, NIST, and other regulatory frameworks.

Mom's Meals provides home-delivered meal solutions for individuals with health needs. The company values its team members and offers a generous benefits package.

US

  • Lead cybersecurity operations and platform delivery, aligning security capabilities with business objectives and client needs.
  • Guide incident response, evaluate emerging technologies, and influence strategic investments to improve security maturity.
  • Advise executives and clients on cybersecurity risks, while partnering with sales and account teams to translate security into business outcomes.

The company is a cybersecurity services provider focused on managed security and consulting. The size and culture are not specified, but the role emphasizes ownership, continuous improvement, and high performance.

US

  • Lead the design and execution of cybersecurity architecture and engineering to ensure compliance with internal and external policies.
  • Partner with business leaders to identify risks, develop solutions, and embed security into enterprise strategy.
  • Oversee deployment, integration, and optimization of security tools while driving cloud-native security improvements.

U.S. Financial Technology builds and operates the world's largest mortgage securitization platform, supporting the Uniform Mortgage-Backed Security of Fannie Mae and Freddie Mac. It handles 70% of mortgage-backed securities and fosters a collaborative, remote-first culture.

US 3w PTO

  • Serve as the assigned security officer (vCISO) for a portfolio of client engagements, leading recurring meetings and providing strategic security guidance.
  • Lead CMMC Level 1 and 2 readiness engagements, including NIST SP 800-171 assessments, SSP development, and POA&M management.
  • Deliver compliance engagements across frameworks such as HIPAA, SOC 2, PCI DSS, ISO 27001, and more, while conducting risk assessments and coordinating remediation.

Intelligent Technical Solutions is a managed IT and cybersecurity services provider delivering compliance and security practice management to client organizations. The company employs a team of security professionals and fosters a culture of continuous improvement and knowledge sharing.

$150,000–$180,000/yr
US

  • Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
  • Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
  • Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.

Strategic Growth Partners provides cybersecurity and compliance services to clients across multiple time zones. They foster a collaborative, innovative, and diverse work environment.

$115,000–$186,000/yr
US

  • Lead compliance assessments and build-out of IL4/IL5 authorizations for DoD Cloud Computing Security Requirements Guide.
  • Maintain and evolve compliance posture for FedRAMP High, NIST SP 800-53, and other federal frameworks.
  • Serve as GRC liaison to engineering teams, translating complex federal compliance requirements into technical specifications for AWS environments.

Horizon3 is a fast-growing, remote cybersecurity company that provides autonomous pentesting through its NodeZero platform. The company is a fusion of former Special Operations cyber operators and engineers, fostering a culture of respect, collaboration, ownership, and results.

$149,469–$184,000/yr
US

  • Develop and implement cybersecurity strategies and architectures aligned with organizational objectives and regulatory requirements.
  • Lead RMF activities for large distributed systems to obtain and maintain Authority to Operate.
  • Collaborate with government stakeholders and cross-functional teams to integrate security across systems and networks.

The company specializes in cybersecurity architecture and Zero Trust solutions for U.S. Department of Defense clients. It offers a fully remote work environment with a focus on work-life balance and professional development opportunities.

$150,000–$200,000/yr
US

  • Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
  • Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
  • Represent the compliance program in customer-facing discussions and security due diligence reviews.

Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.

$135,000–$145,000/yr
Global

  • Own the IT evidence program across ISO 27001, SOC 1, SOC 2, PCI DSS, and HIPAA for approximately 13 operating sites, managing audits and remediation.
  • Manage vulnerability management end to end, oversee endpoint detection and response, and lead security incident response through to conclusion.
  • Contribute to identity governance across a hybrid cloud and on-premises IdP, overseeing access review and privileged access controls.

Serverfarm is a leading developer and operator of data centers with over 750 locations and key customer relationships in 45 countries. With Manulife Investment Management's acquisition in 2023, the company is positioned for explosive growth and offers a culture of innovation and career development.

$80,208–$83,372/yr
Poland

  • Lead the design, implementation, and maintenance of Hyland's enterprise ISO governance and certification program across multiple certifications, business units, and regions.
  • Drive strategic expansion of ISO scope, including advanced certifications like TISAX and C5, and establish governance models and control ownership across teams.
  • Measure and report ISO program health through metrics, dashboards, and reporting, while providing leadership and mentorship to compliance specialists.

Hyland is the pioneer of the Content Innovation Cloud, delivering enterprise intelligence through solutions that unlock actionable insights and drive automation. Trusted by thousands of organizations worldwide, including many Fortune 100 companies, Hyland has nearly 4,000 employees and fosters an employee-centric, inclusive culture.

Global

  • Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
  • Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
  • Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.

Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.

$104,000–$140,000/yr
US

  • Develops and maintains information security policies, procedures, and controls ensuring compliance with HITRUST, SOC 2, HIPAA, and other frameworks.
  • Leads audit readiness and execution, managing HITRUST and SOC 2 Type II examinations from planning through report issuance.
  • Drives continuous improvement of security processes, risk management, and incident response across the organization.

MRO specializes in information security assurance and regulatory compliance, helping organizations manage risk and maintain audit readiness. The company fosters a security-focused culture with a team of experienced professionals.

$200,000–$250,000/yr
US Unlimited PTO 24w maternity 24w paternity

  • Lead corporate IT and security operations as the senior technical authority.
  • Own compliance governance for CMMC, CJIS, SOC 2, and FedRAMP.
  • Manage IT budget, vendors, and infrastructure automation using Terraform and modern platforms.

A high-growth technology organization seeking a senior leader to own corporate IT infrastructure and enterprise security. The culture emphasizes collaboration, automation, and a human-centered approach to security.

US

  • Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
  • Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
  • Work with sponsors to automate manual processes and implement technical solutions for cyber defense.

Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.

$100,000–$130,000/yr
Global

  • Take ownership of information security governance, including policies, risk registers, and control documentation.
  • Manage day-to-day security program operations, mentor analysts, and coordinate cross-functional initiatives.
  • Lead incident response, compliance support, and serve as primary counterpart to the vCISO.

Aries is a financial technology company building modern infrastructure and products for active investors and traders. As a growing organization, they are investing in a practical, accountable security program deeply integrated into how the company operates.

Canada

  • Lead complex cybersecurity programs from planning through delivery, coordinating cross-functional teams and managing competing priorities.
  • Oversee compliance with frameworks such as NIST, ISO 27001, and regulatory requirements like HIPAA, PCI-DSS, and SOX.
  • Manage project governance, status reporting, and stakeholder communication, including executive-level engagement.

The company provides cybersecurity project management services. They are a partner company with a remote, collaborative, and inclusive work environment.

Canada US

  • Lead complex, high-severity security incident responses as incident commander.
  • Design and build AI-assisted automation for security operations.
  • Own readiness programs, threat hunting, and insider risk capabilities.

1Password is a cybersecurity company that provides enterprise password management and unified access management, trusted by over 180,000 businesses. They are a remote-first company with a fast-paced, collaborative culture, and have surpassed $400M in ARR.

Europe

  • Act as Information Security Officer for FinTech, supporting ISO 27001, SOCv2, and DORA implementation.
  • Coordinate security activities across teams, ensuring alignment with cyber security strategy and governance.
  • Track risks, gaps, and remediation, while preparing updates for security leadership.

Coinspaid Dev is the engineering brand behind the technology and infrastructure built within Coinspaid. With over 120 engineers and 11 years of industry experience, the team builds distributed systems and blockchain infrastructure across more than 20 blockchain networks.

US

  • Support day-to-day information security operations and maintain strong operational security posture across the platform.
  • Develop and maintain the System Security Plan and other cybersecurity documentation for security authorization and compliance.
  • Support FedRAMP High and DoD IL5 compliance activities including continuous monitoring, audits, assessments, and remediation.

The partner company operates a secure, mission-focused technology platform supporting government and commercial teams. It is an equal opportunity workplace committed to considering qualified candidates from all backgrounds.

US

  • Lead global information security strategy across manufacturing, product, and application security, ensuring resilience and regulatory readiness.
  • Oversee OT/ICS security, product security for FDA-regulated medical devices, and application security with DevSecOps practices.
  • Build and lead a global team, partner with senior executives, and establish risk management frameworks and metrics.

They are a global industrial and healthcare technology company operating in over 50 countries, manufacturing connected products and medical devices. They are a large, decentralized organization with a collaborative culture and a focus on security and innovation.