Head of Security – Infrastructure

Remote Full-time
Job Description:
• Lead and evolve ARIVE’s security and infrastructure strategy, roadmap, and posture.
• Lead, manage, and develop the existing security and infrastructure teams; serve as the executive-level decision maker on all security, infrastructure, and IT matters.
• Partner across all teams to embed security into workflows and practices, champion secure-by-design standards, and assess emerging AI-driven threats and opportunities across the security landscape.
• Lead the security of ARIVE’s core platform — ensuring protection of PII, mortgage data, and financial information at rest and in transit.
• Govern application security standards including secure code reviews, SAST/DAST, API security, and penetration testing programs.
• Govern authentication, authorization, and access control frameworks across all customer-facing and internal applications.
• Drive threat modeling and security reviews for new features, integrations, and third-party connections.
• Run a 24x7 security incident monitoring program across all platform, cloud, and endpoint environments.
• Mature the SIEM/SOAR program, lead incident response across all severity levels, and drive automation to improve MTTD/MTTR.
• Manage regular penetration tests, vulnerability assessments, and red-team engagements; track findings to closure.
• Run and continuously improve ARIVE’s AWS cloud infrastructure, CI/CD pipelines, container orchestration, secrets management, and deployment automation across U.S. and India teams.
• Govern environment segregation, access controls, promotion workflows, and platform reliability.
• Define strategy to implement endpoint device and application protection enforcement, DLP, and enterprise security tooling standards across the organization.
• Drive vulnerability scanning programs; maintain risk registers and remediation SLAs.
• Run IT operations including identity/access management and internal tooling across U.S. and India.
• Manage IT asset protection and lifecycle programs — procurement through secure disposal.
• Partner with the Director of Compliance to execute SOC 2 controls implementation and support audit readiness.
• Ensure GLBA and state privacy law adherence; lead vendor/third-party risk assessments and BC/DR planning.
• Define scalable IT policies, standards, and onboarding/offboarding workflows in collaboration with HR, Finance, and Operations.

Requirements:
• 15+ years of hands-on experience spanning cybersecurity, cloud infrastructure/DevOps, and IT operations, with 5+ years of leadership experience leading and scaling teams.
• Proven track record building both a cybersecurity program and a cloud infrastructure/DevOps function at a high-growth company.
• Deep proficiency with: AWS (IaC, multi-environment architecture), CI/CD pipelines, container orchestration, SIEM/SOAR, Zscaler, Intune, Kandji, EDR/AV, Google Workspace DLP, Okta/Auth0, GitHub Advanced Security, and Wiz.io.
• Strong scripting/automation skills in Python, PowerShell, or Bash.
• Experience with multi-environment deployment strategies, Sev-1/Sev-2 incident response, and SOC 2 Type II audit environments.
• Experience securing distributed development teams across U.S. and offshore geographies.
• Fintech or tech startup experience strongly preferred; familiarity with GLBA and financial services compliance a plus.
• On the leading edge of AI technologies for security operations and infrastructure automation.
• Exceptional communicator — equally effective presenting to the CEO and getting hands-on-keyboard with the team.
• Bachelor’s in CS, Information Security, or equivalent experience. CISSP, GCIA, GCIH, OSCP, or AWS Solutions Architect certifications are a strong plus.

Benefits:
• Comprehensive health, dental, and vision
• 401(k)
• flexible PTO

Apply Now

Apply Now
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

[Entry Level/No Experience] UPS data entry jobs ? WFH

Remote Full-time

Service Desk Specialist/Live Chat Agent

Remote Full-time

Experienced Product Marketing Manager - Airbnb Experiences: Shaping the Future of Travel & Hospitality

Remote Full-time

Experienced Remote Big Data Analyst – Driving Business Growth through Data-Driven Insights at arenaflex

Remote Full-time

**Experienced Full Stack Data Entry Specialist – Remote Work Opportunity with Arenaflex**

Remote Full-time

Sr. Manager Data Analyst - Retail Bank

Remote Full-time

Customer Service Representative - Remote, ME State Only

Remote Full-time

**Experienced Entry-Level Data Entry Specialist (Remote) – Flexible Work Arrangements at arenaflex**

Remote Full-time

Senior Analyst, Quality

Remote Full-time

Help Desk Analyst (Remote)

Remote Full-time
← Back to Home