Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Onit

Cybersecurity Engineering & Operations Director

Onit

. Develop and execute the cybersecurity engineering and operations strategy with the VP, Compliance and Security .

Posted 10/7/2026full-timeRemote • United StatesLead💰 $150,000 - $190,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in cybersecurity leadership, cloud security, and incident response, with a strong focus on AWS security, automation, and risk management. Proven ability to communicate complex cybersecurity concepts to diverse stakeholders and lead technical teams effectively.

Highest-signal resume keywords
Cybersecurity LeadershipAWS Security ExpertiseIncident Response ManagementSecurity Automation with TerraformApplication and API Security

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cybersecurity EngineeringCloud SecurityIncident Detection and ResponseVulnerability ManagementSecurity MonitoringPython ProgrammingTerraformCI/CDSAST/DAST/SCAAI Integration in Security
Soft Skills
Communication of Cybersecurity RisksTeam LeadershipMentoring and Development
Tools & Technologies
AWSSIEMEDRCSPMMicrosoft 365Entra IDDevSecOpsCloudflareCrowdStrikeInfrastructure-as-Code
Certifications & Qualifications
CISSPCCSPAWS Security SpecialtyGIAC
Industry Keywords
Multi-Tenant SaaS SecuritySOC 2ISO 27001NISTFedRAMP

Tech Stack

Tools & technologies
AWSCloudCyber SecurityEC2KubernetesLinuxPythonSDLCTerraform

About the role

Key responsibilities & impact
  • Develop and execute the cybersecurity engineering and operations strategy with the VP, Compliance and Security
  • Translate risk and business priorities into technical roadmaps, architecture standards, and measurable outcomes
  • Lead design and continuous improvement of security controls and guardrails across AWS and corporate environments
  • Deliver security automation as code using Terraform, Python, CI/CD, and policy-as-code
  • Own technical security operations and incident response, including detection, investigation, containment, eradication, and recovery
  • Maintain and exercise incident response plans, playbooks, and runbooks
  • Build automated detection and response workflows across SIEM, SOAR, EDR, and cloud-native tooling
  • Coordinate executive, legal, and regulatory escalation with the VP
  • Own vulnerability and exposure management across applications, cloud, endpoints, and external attack surfaces
  • Set risk-based remediation SLAs and prioritize issues by exploitability, exposure, and business impact
  • Drive root-cause fixes for systemic weaknesses
  • Provide security leadership for Microsoft 365, Entra ID, corporate endpoints, email security, and application/product security across the SDLC
  • Lead initiatives involving SAST/DAST/SCA, SBOMs, API security, threat modeling, security champions, and AI-enabled applications and integrations
  • Lead, mentor, and develop the cybersecurity manager, engineers, and security operations staff
  • Define team structure, career paths, and scalable operating processes
  • Manage security vendors, penetration testing, and managed security services
  • Serve as senior technical security advisor to Engineering, IT, Product, and executive leadership

Requirements

What you’ll need
  • 10+ years of progressive cybersecurity experience
  • 5+ years in security leadership or management roles leading security engineering, security operations, or cloud security functions
  • Experience managing managers and technical teams
  • Deep expertise securing cloud-native enterprise SaaS applications
  • Strong hands-on AWS security experience with IAM, VPC, EC2, RDS, S3, EKS/ECS, logging, and monitoring
  • Strong knowledge of Linux, networking, containers, and Kubernetes
  • Experience with SIEM, EDR, CSPM, vulnerability management, WAF, and security monitoring platforms
  • Experience building or improving incident detection and response programs
  • Experience securing Microsoft 365 and Entra ID environments, including identity protection, MFA, Conditional Access, privileged identity management, and access governance
  • Experience implementing privileged access management and Just-In-Time access architectures
  • Strong understanding of application and API security, including SAST, DAST, SCA, SBOMs, secrets management, and authentication/authorization
  • Experience with Python, Bash, Terraform, APIs, CI/CD platforms, Infrastructure-as-Code security, and policy-as-code guardrails
  • Experience using AI tools and LLM-based assistants in security work, including crafting prompts, evaluating output accuracy, and integrating AI into workflows
  • Ability to communicate complex cybersecurity risks to engineering leaders, executives, and non-technical stakeholders
  • Preferred experience with multi-tenant SaaS security, CrowdStrike, Cloudflare, DevSecOps, offensive security or red-team programs, SOC 2, ISO 27001, NIST, or FedRAMP technical controls
  • Preferred certifications such as CISSP, CCSP, AWS Security Specialty, or GIAC

Benefits

Comp & perks
  • Annual discretionary bonus eligibility
  • Three medical plan options
  • Dental and vision coverage
  • Employer HSA contribution for HDHP plan employees
  • 401(k) with 100% match on the first 3% and 50% on the next 2% of employee contributions
  • Flexible paid time off
  • 7 sick days
  • 9 paid company holidays annually
  • Paid leave for birth parents, non-birth parents, and caregivers
  • Surrogacy and adoption reimbursement
  • 100% employer-paid life and disability insurance
  • Voluntary hospital indemnity, critical illness, accident, and pet insurance
  • Healthcare FSA, HSA, and dependent care FSA
  • One paid volunteer day each year