Director of Information Security at Unacast transforming location data intelligence through effective security measures. Oversee security strategies and compliance, ensuring data protection and incident response.
Responsibilities
Own and execute security roadmaps for protecting Unacast’s data, systems, and cloud environments (AWS, GCP), covering day-to-day operations and practical security measures
Conduct risk assessments, penetration testing, monitoring, and incident response to address emerging threats and keep systems and data secure
Implement and manage security controls including access management, intrusion detection, and endpoint standards across physical endpoints and cloud environments
Lead security audits and certifications such as ISO 27001 and SOC 2, ensuring compliance with relevant standards
Work closely with engineering to integrate security best practices into architecture, infrastructure, and product development
Respond to security incidents quickly and effectively, minimizing disruption
Track and report key security metrics to show risks, progress, and opportunities for improvement
Support customer security reviews, RFPs, and compliance discussions as the external voice of Unacast’s security program
Collaborate with the Unacast Privacy team to align data security and privacy strategies
Maintain clear and actionable security documentation, including policies and playbooks, ensuring they stay current and accessible
Lead company-wide security awareness and training initiatives to build a culture of security vigilance
Requirements
10+ years in security experience managing both strategy and execution
One or more relevant industry certifications such as CISSP, CCSP, CISM, CISA, or AWS Security Specialty
Hands-on expertise in securing cloud environments (AWS, GCP), implementing security controls, and managing incidents
Experience with achieving and maintaining ISO 27001 certification, SOC 2, or similar standards
Experience integrating security into engineering, DevOps, and cloud environments
Expertise in relevant security regulations, laws, and standards, with an in-depth understanding of data protection, cybersecurity best practices, and Continuity of Operations Planning (COOP) and Disaster Recovery Planning
Expertise in security frameworks, standards, and best practices, including hands-on experience with incident response, risk assessment, penetration testing, and security audits
Awareness of emerging security threats, trends, and new technologies impacting the field
Team player with a strong business mindset, building credibility and trust with customers to drive outcomes
Strong analytical skills to assess threats and design effective security solutions
Excellent communication skills with the ability to translate complex security topics for both technical and non-technical stakeholders
A roll-up-your-sleeves mentality, eager to own, build, and execute security initiatives at all levels
Business Development Representative at xorlab driving proactive lead generation in cybersecurity market. Collaborating closely with sales and marketing team to optimize lead development processes.
Cyber Security Architect responsible for IT security compliance and cyber - risk management at a Swiss utility firm. Engaging with cross - functional teams to implement 'Secure - by - design' strategies.
Information Security Officer ensuring cybersecurity at an IT service provider for food and beverage sector. Developing strategies and overseeing security protocols while reporting to management.
Head of Information Security at Aurora shaping security strategy and governance in a software - focused global business. Leading security efforts to ensure resilience and compliance across operations.
Senior Security Engineer specializing in penetration testing and security strategies for fintech. Collaborating with teams to enhance security for AI applications and financial systems.
Principal Cyber Security Engineer for Identity Access Management at MSK managing identity solutions and advanced identity platforms. Partnering with stakeholders to align identity strategy and lead IAM initiatives.
Join The Missing Link as a Security Engineer, leveraging 3 - 4 years of IT Security experience. Lead projects in a collaborative environment with a focus on innovation and impact.
Engineer in Health, Safety and Environment for ArianeGroup focusing on industrial risk management. Involves audits, assessments, and safety training participation.
Senior Product Security Engineer at Red Hat focusing on security and compliance for digital sovereign products while collaborating across global teams and enhancing automation.
Security Engineer safeguarding K - 12 student data in several locations for EduTech startup. Designing secure software systems and ensuring data protection to comply with privacy standards.