
Job Overview
Location
Remote - United States
Job Type
Full-time
Category
Software Engineering
Date Posted
July 2, 2026
Full Job Description
đź“‹ Description
- • Lead Directive Consulting’s enterprise-wide information security strategy and scalable cybersecurity roadmap across a fully remote workforce operating in the United States, Canada, Mexico, and the United Kingdom.
- • Develop, implement, and maintain comprehensive information security policies, standards, and governance frameworks aligned with business objectives and regulatory requirements.
- • Present cybersecurity risks, security metrics, and strategic recommendations directly to executive leadership to inform business decisions and risk tolerance.
- • Conduct ongoing enterprise-wide cybersecurity risk assessments covering infrastructure, endpoints, applications, and business processes, and maintain a prioritized risk register with remediation roadmaps.
- • Oversee vulnerability management programs, prioritizing remediation efforts based on business impact and threat severity.
- • Perform third-party vendor security assessments and manage ongoing vendor risk across the organization’s technology ecosystem.
- • Configure and enforce data governance policies across distributed tools including Notion, Google Drive, and Stratos to prevent data silos and unauthorized access.
- • Manage device security policies using Kandji MDM software to ensure endpoint protection for all company-issued assets.
- • Own and operate the organization’s incident response program, including developing playbooks, conducting tabletop exercises, and leading post-incident reviews.
- • Implement and monitor technical security controls related to identity and access management, privileged access, multi-factor authentication (MFA), and endpoint security in collaboration with the Senior IT Manager.
- • Coordinate with external security vendors and managed security providers to augment internal capabilities and ensure 24/7 threat monitoring.
- • Lead compliance initiatives including SOC 2 Type II certification and prepare the organization for future security audits and certifications.
- • Respond to and support enterprise sales opportunities by completing customer security questionnaires and demonstrating Directive’s security posture to prospects.
- • Partner with Legal, Insurance, and Finance teams on privacy, data governance, and regulatory compliance matters.
- • Maintain complete documentation for security policies, controls, audit evidence, and compliance artifacts.
- • Build and manage a company-wide security awareness program, including phishing simulations and training on social engineering, AI risks, and data protection best practices.
- • Promote a security-first culture across all departments by educating employees and fostering accountability for secure behaviors.
- • Establish measurable security KPIs and deliver regular executive reporting on organizational security maturity, risk trends, and program effectiveness.
- • Develop and oversee business continuity and disaster recovery planning to ensure operational resilience during security incidents.
- • Serve as a trusted strategic partner to executive leadership by balancing strong security practices with business agility, innovation, and growth.
- • Ensure all security initiatives are designed for scalability to support Directive’s expanding global workforce and technology stack.
🎯 Requirements
- • 7+ years of experience in cybersecurity, information security, or risk management
- • 3+ years leading enterprise security programs or security teams
- • Demonstrated experience performing cybersecurity risk assessments and threat modeling
- • Strong knowledge of cloud-first and SaaS-based environments including Google Workspace, Salesforce, NetSuite, Okta, and modern identity platforms
- • Experience implementing and maintaining security frameworks such as SOC 2, ISO 27001, or the NIST Cybersecurity Framework
- • Deep understanding of endpoint security, identity management, vulnerability management, incident response, and security operations
🏖️ Benefits
- • Annual base salary range of $150,000–$190,000 USD
- • 100% employer-paid medical, dental, vision, disability, and life insurance for employee; 50% employer contribution for dependents
- • Access to mental health support through Spring Health and Headspace membership
- • Physical wellness benefits including Omada physical therapy, Carrott fertility support, Aaptiv virtual workouts, and complimentary One Medical membership
- • Unlimited PTO with a 2-week minimum, paid company holidays, birthday off, End of Year Recharge (Dec 24–Jan 1), and paid parental leave
- • Traditional and Roth 401(k) with 3% company match
- • Annual bonus based on tenure, scaling over time
Skills & Technologies
See exactly how your profile matches this role — strengths, skill gaps, and what to do about them.
About Directive Consulting LLC
Directive is a performance marketing agency for software companies, blending search, paid media, and content strategy to accelerate pipeline growth. Founded in 2014 and headquartered in Irvine, California, the agency serves B2B SaaS clients across North America and Europe through data-driven programs that integrate SEO, PPC, and lifecycle marketing. Services include paid search, paid social, marketing automation, and revenue operations consulting, delivered by cross-functional teams focused on measurable pipeline and ARR impact rather than vanity metrics.
Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.
Newsletter
Weekly remote jobs and featured talent.
No spam. Only curated remote roles and product updates. You can unsubscribe anytime.
Similar Opportunities

Lavendo Inc.
2 months ago

Fieldguide Inc.
27 days ago

Baldwin Technology Company Inc.
3 months ago

Surglobal Inc.
3 months ago