About the Role
This is a transformational leadership role responsible for modernizing security practices, redefining operational efficiency, and elevating the perception of the cybersecurity function across the business. The Director will lead the combined Product Security and Security Operations function, embedding security into product lifecycles and owning the threat detection and incident response pipeline.
Responsibilities
- Lead the transformation from fragmented security tasks to a mature program, reshaping team structure, ways of working, and organization growth.
- Own the ProdSecOps program vision, goals, and delivery.
- Define and lead the product security framework, mapping assets, ownership, and cyber risk to business value.
- Build and maintain an aggregate, contextual, and actionable cyber risk management view for leadership.
- Lead, develop, and grow a distributed global team.
- Set team objectives aligned to functional and company-level OKRs and own delivery.
- Drive shift-left security by embedding threat modeling, secure design review, and SDL practices.
- Own the security architecture direction, including zero trust principles and secure design patterns.
- Own vulnerability and exposure management across application, cloud, and infrastructure layers.
- Oversee application security testing (SAST, DAST, SCA) and the offensive security program.
- Own cloud security posture across the estate, including CSPM, container and Kubernetes security, and IaC review.
- Own threat detection and telemetry fidelity end-to-end.
- Own incident management, ensuring the incident response plan is defined, tested, and executable.
- Drive detection engineering, including use case development, correlation rules, and alert tuning.
- Manage the MSSP relationship, enforcing SLAs and driving false-positive reduction.
- Deliver the 24/7 coverage model, including on-call structure and SOAR automation.
- Consolidate the security stack to reduce noise and eliminate coverage gaps.
- Own the security tooling lifecycle, from evaluation to mature production implementation.
- Communicate at the executive level, framing cyber risk in business terms to influence decision-making.
- Lead collaborative initiatives across the organization and navigate complex stakeholder relationships.
- Champion security culture across engineering and the wider business.
- Coach and mentor the team, driving a culture of learning, quality, and accountability.
- Anticipate emerging risks, including AI-related risk, and shape security strategy.
Requirements
- 10+ years in cybersecurity with significant depth in both product/application security and security operations.
- Proven leadership of security engineering or SOC teams, including distributed, multi-region teams.
- Expert-level knowledge of secure SDL frameworks (OWASP SAMM, NIST SSDF), threat modelling, and security architecture.
- Deep experience with detection engineering, SIEM/XDR platforms, incident response, and MSSP management.
- Strong cloud security expertise, with AWS required.
- Container and Kubernetes security experience.
- Track record of translating technical risk into business impact for executive audiences.
- Experience building or maturing vulnerability management programs with engineering ownership models.
Skills
- Product Security
- Security Operations
- Secure SDL frameworks
- Threat modelling
- Security architecture
- Detection engineering
- SIEM/XDR platforms
- Incident response
- MSSP management
- Cloud security
- AWS
- Container security
- Kubernetes security
- Vulnerability management
- Zero trust principles
- Offensive security
- Pen testing
- Red team engagements
- CSPM
- IaC review
- SOAR implementation
- Security automation
Location
- Remote
- Hybrid
Work Type
- Office-first
- Hybrid
Experience Level
- Director
- 10+ years
Education Level
- CISSP
- OSCP
- GIAC
- Equivalent certifications
Benefits
- Competitive salary
- Range of benefits
- Support for employee wellbeing
- Opportunities for skills, experience, and career growth
About the Company
- Genius Sports is enabling a new era of sports for fans worldwide by bringing together next-gen technology and the finest live data available.
- We deliver experiences that are more immersive, interactive, and personalized than ever before.
- We enjoy an ‘office-first’ culture and maximize opportunities to collaborate, connect and learn together.
- We are committed to supporting employee wellbeing and helping you grow your skills, experience and career.
- We strive to create an inclusive working environment, where everyone feels a sense of belonging and the ability to make a difference.
Equal Opportunity
- Let us know when you apply if you need any assistance during the recruiting process due to a disability.
