Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Director, Security Engineering role.
Rezi rewrites your resume against Optimizely's job description. Free.

Tailor your resume to this Director, Security Engineering role.
Rezi rewrites your resume against Optimizely's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Director, Security Engineering posting at Optimizely — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Director, Security Engineering posting at Optimizely — free, in seconds.
About the Role
You will own Optimizely's security program end-to-end, including strategy, engineering, operations, and response. This role leads security strategy, governance, and operations, defining roadmaps, managing budgets, and communicating risk to executives. You will own full-lifecycle detection and response, serve as Incident Commander, and focus on driving AI security and internal AI governance.
Responsibilities
- Co-own hardened baselines, network and identity architecture, secrets management, and telemetry pipelines.
- Partner on the control framework, audit evidence, third-party risk, and enterprise risk reporting.
- Share incident tooling, on-call practice, severity language, and postmortem discipline.
- Automate repeatable security tasks.
- Build self-service tooling and guardrails for engineering teams.
- Consolidate and integrate security tools, utilizing managed detection and specialist partners.
- Leverage AI for security tasks such as triage, evidence collection, documentation, customer questionnaires, and code review.
- Develop and implement a security awareness program, including training on deepfake and AI-enabled social engineering.
- Hire, coach, and grow a senior security team and run the security champions network.
- Manage lightweight, current, and genuinely followed policies, standards, risk management, incident response, vulnerability management, change management, and third-party risk processes.
- Oversee security architecture and toolchain across cloud, identity, endpoint, data, application, and AI.
- Lead a security team across multiple functional areas, including policies, processes, vision, and strategies.
- Manage experienced individual contributors and, where applicable, other managers.
- Own the full employee life cycle, and partner with FP&A on budget and HR Business Partner on performance and compensation.
Requirements
- Significant experience (at least 10+ years) leading security engineering or operations in a cloud-native SaaS environment, including time as a people leader.
- Hands-on depth in detection and response, with experience building or substantially rebuilding the capability.
- Proven incident command experience on high-severity incidents, including customer and regulatory notification decisions.
- Deep cloud security expertise across AWS or Azure, containers, infrastructure as code, and CI/CD.
- Strong identity and access management expertise.
- Practical automation ability (Python, Go, or similar) used to remove toil.
- Track record of expanding coverage without proportional headcount growth.
- Working understanding of AI and machine learning security.
- Demonstrated success working with customers on security reviews, audits, escalations, and executive briefings.
- Strong collaboration and influence across Infrastructure, Compliance and Risk, and Reliability Engineering.
- Excellent written and verbal communication skills.
- Experience securing AI product features is a plus.
- Familiarity with OWASP Top 10 for LLM Applications is a plus.
- Knowledge of the NIST AI Risk Management Framework is a plus.
- Familiarity with MITRE ATLAS is a plus.
- Experience with SOC 2 or ISO 27001 is a plus.
Skills
- AI Security
- AI Governance
- Detection and Response
- Incident Command
- Cloud Security (AWS/Azure)
- Containers
- Infrastructure as Code
- CI/CD
- Identity and Access Management
- Automation (Python/Go)
- Security Architecture
- Risk Management
- Vulnerability Management
- Collaboration
- Influence
- Written Communication
- Verbal Communication
Location
- Global
Work Type
- Full-time
Experience Level
- 10+ years
Education Level
- Degree in a STEM field, preferably Information Security or Computer Engineering, or equivalent practical experience.
- CISSP certification is welcome.
- CCSP certification is welcome.
- GCIA certification is welcome.
- GCIH certification is welcome.
- GCFA certification is welcome.
- AWS security certifications are welcome.
- Azure security certifications are welcome.
About the Company
- Optimizely provides AI that works for marketers, including AI-powered content creation, world-class CMS, and the industry's most trusted experimentation platform.
- Over 10,000 brands, including H&M, PayPal, and Zoom, use Optimizely.
- Gartner, Forrester, and IDC recognize Optimizely as a leader in MarTech.
- Optimizely has over 1,600 employees across 12 global offices.
- The company culture is described as curious, collaborative, and human, with a focus on real conversations and big ideas.
- Optimizely is shaping the future of marketing technology.
Equal Opportunity
- Optimizely is committed to a diverse and inclusive workplace.
- Optimizely is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.