FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecuritySDLC
About the role
Key responsibilities & impact- Lead and continuously improve Genea's cybersecurity and corporate IT programs
- Own and mature the cybersecurity compliance program, including SOC 2 Type 2, policies, controls, audit readiness, evidence management, risk assessments, awareness, and ISO 27001 readiness
- Establish governance and guardrails for secure enterprise AI adoption
- Establish cybersecurity KPIs, KRIs, risk reporting, and provide executive updates
- Drive cloud and application security with Engineering, DevOps, Platform, and Product teams
- Strengthen security across AWS and Azure, including IAM, least privilege, network controls, secrets management, encryption, logging, secure configurations, and infrastructure hardening
- Mature secure SDLC and DevSecOps practices, including threat modeling, architecture reviews, SAST/DAST, dependency and container scanning, supply-chain security, and AI-risk controls
- Own vulnerability management and coordinate penetration testing and remediation
- Own cybersecurity monitoring, detection, investigation, and incident response across cloud, applications, endpoints, corporate systems, and AI-enabled services
- Lead incident response through containment, recovery, post-incident review, corrective actions, playbooks, and tabletop exercises
- Leverage AI and automation for threat detection, investigation, alert triage, and response
- Own corporate IT operations, including endpoints, MDM, SaaS applications, device lifecycle, onboarding/offboarding, provisioning, and employee IT support
- Manage identity and access, including SSO, MFA, privileged access, IAM policies, access reviews, API credentials, and joiner/mover/leaver processes
- Lead and develop the IT team and build the cybersecurity team as the organization grows
- Own customer security questionnaires, RFP responses, customer security reviews, third-party assessments, and vendor cybersecurity risk
- Represent Genea's cybersecurity program in customer and partner discussions
- Identify and track material cybersecurity risks, drive remediation, and ensure executive visibility
Requirements
What you’ll need- 7+ years of experience across cybersecurity, information security, cloud security, application security, security engineering, or IT, including 2+ years in a leadership or management role
- Strong technical experience with cloud-native SaaS environments, including AWS and/or Azure, IAM, application security, cloud security, vulnerability management, endpoint cybersecurity, and incident response
- Experience with secure SDLC and DevSecOps practices, including threat modeling, penetration testing, SAST/DAST, dependency scanning, container scanning, and secrets management
- Practical experience with SOC 2 Type 2, ISO 27001, NIST, or similar cybersecurity frameworks, including working with auditors, assessors, penetration-testing firms, and cybersecurity vendors
- Working knowledge of AI/GenAI cybersecurity risks and secure AI adoption practices, including data protection, AI governance, LLM and agent security, prompt injection, and excessive agent permissions
- Strong understanding of modern identity and corporate IT environments, including SSO, MFA, endpoint management, MDM, SaaS administration, and privileged access
- Ability to communicate cybersecurity risk clearly to Engineering teams, customers, business leaders, and executives
- Experience building or significantly maturing cybersecurity and IT programs within a growing SaaS technology company preferred
- Experience implementing cybersecurity automation across CI/CD, cloud infrastructure, compliance, cybersecurity operations, and AI-enabled workflows preferred
- Experience with AWS, Azure, Okta, CrowdStrike or equivalent, SIEM, MDM, vulnerability-management platforms, and automated GRC tools preferred
- Familiarity with AI cybersecurity frameworks and practices such as NIST AI RMF, OWASP GenAI/LLM guidance, AI red teaming, or securing agentic AI systems
- CISSP, CISM, CCSP, or comparable cybersecurity certifications are preferred but not required
- Must satisfy U.S. employment eligibility verification requirements
Benefits
Comp & perks- 401(k) matching
- PTO
- 100% paid parental leave
- Remote work options
- Development/training opportunities
- Medical insurance
- Dental insurance
- Vision insurance
- Flexible spending accounts (FSA)
- Life insurance
- Accidental death and dismemberment (AD&D) insurance
- Long-term disability (LTD) coverage
- 401(k) retirement savings plan
- Bonus eligibility
