FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Director of Information Security
Efficient Computer. Serve as Efficient Computer’s first dedicated security leader and define the company’s security program .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in defining and leading security programs, with a focus on protecting sensitive data and intellectual property while ensuring compliance with federal security standards. Proficient in IT operations, identity management, and security controls across development environments.
Highest-signal resume keywords
Information Security LeadershipNIST SP 800-171 ComplianceIdentity And Access ManagementSecurity Controls ConfigurationExport-Control Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security Program DevelopmentSource Code ProtectionCI/CD SecuritySecrets ManagementCloud Infrastructure SecurityMDM ImplementationAccess ReviewsIncident ResponseSecurity Controls ConfigurationInfrastructure As Code
Soft Skills
Strategic JudgmentClear Written CommunicationService Mindset
Tools & Technologies
Identity ProvidersSSOMFADeveloper WorkstationsBuild InfrastructureAI Tools GovernanceMulti-Site Networking
Certifications & Qualifications
CISSPGIACCMMC CCPCCA
Industry Keywords
Export-Controlled TechnologyCUIFederal Security RequirementsDefense Customer SecuritySemiconductor Environments
Tech Stack
Tools & technologiesCloudPython
About the role
Key responsibilities & impact- Serve as Efficient Computer’s first dedicated security leader and define the company’s security program
- Protect intellectual property, meet security standards required by defense and government customers, handle export-controlled technology, and harden the engineering environment
- Own information technology end to end initially, including devices, identity, onboarding, offboarding, and operational systems
- Design and enforce protection for source code, compiler toolchain, and hardware designs
- Own engineering access models, repository permissions, credential governance, and recurring access reviews
- Establish controls and evidence for sensitive technical data and trade-secret protection
- Secure the developer environment, software supply chain, build pipelines, release integrity, compiler, network, and infrastructure
- Own detection, logging, incident response, and playbooks
- Lead NIST SP 800-171 and CMMC programs, assessments, SSPs, POA&Ms, SPRS, remediation, and audit readiness
- Lead security aspects of customer, partner, investor, and government diligence
- Establish policies and controls for sensitive and controlled information and train employees
- Implement export-control controls, including access segregation, U.S.-person gating, deemed export analysis, classification, licensing, and restricted-party screening
- Govern AI tools, sensitive-data handling, AI tool spend, and seat management
- Serve as data protection and privacy lead
- Run day-to-day IT, onboarding/offboarding, device fleet and MDM, identity and access, office infrastructure, vendors, licensing, and renewals
- Build security and IT roadmaps, advise leadership, and make budget and build-vs-buy decisions
- Help hire the first dedicated IT Manager and establish the future security and IT team
- Sit on the Operations team, report to the Head of Legal and Compliance, and participate in engineering architecture reviews
Requirements
What you’ll need- 7+ years in information security, including experience as the founding or sole security owner at a company or building a previously nonexistent program
- Hands-on ability to configure security controls on developer workstations and build infrastructure
- Experience securing source code and developer infrastructure, including source control platforms, CI/CD, secrets management, and cloud infrastructure
- Working knowledge of NIST SP 800-171, CMMC, or a comparable federal framework
- IT operations experience with MDM, identity providers and SSO, automated user lifecycle management, and multi-site networking
- Experience with identity and access architecture, including SSO, MFA, least privilege, and access reviews
- Service mindset paired with strategic judgment
- Clear written communication and ability to explain security decisions to engineers
- Willingness to travel roughly 25% of the time between offices
- U.S. person status required: U.S. citizen or lawful permanent resident
- Nice to have: experience with export-controlled technical data, CUI, or facility clearance processes
- Nice to have: semiconductor, hardware, or EDA environments
- Nice to have: federal or defense customer security requirements
- Nice to have: CISSP, GIAC, CMMC CCP, or CCA certifications
- Nice to have: Python, Bash, or infrastructure as code
- Nice to have: experience rolling out or governing AI tools
Benefits
Comp & perks- 10% annual bonus
- Meaningful equity
- 401(k) match
- Company-paid benefits
- Paid parental leave
- Flexible work arrangements
- Opportunities to grow skills and career
- Comprehensive benefits