Director of Security @Cyncly
All Others
Salary $150,000 - 175,..
Remote Location
Employment Type full-time
Posted 1mth ago

[Hiring] Director of Security @Cyncly

1mth ago - Cyncly is hiring a remote Director of Security. πŸ’Έ Salary: $150,000 - 175,000 usd πŸ“Location: USA, Canada

Role Description

The Director – Security is a senior IT leadership role responsible for defining, executing, and continuously maturing Cyncly's global cyber security strategy, data protection Programme, and information security posture. Reporting to the Head of IT & Cyber Security, this role serves as the primary owner of all security disciplines across the organization β€” from threat detection and incident response to security architecture, data governance, and regulatory compliance.

A critical element of this role is owning Cyncly's compliance obligations end-to-end, including achieving and maintaining SOC 2 Type II certification across Cyncly's global operations, as well as ensuring adherence to GDPR, ISO 27001, and other applicable regulatory and industry frameworks. The Director will act as Cyncly's senior authority on all matters relating to information security risk, data privacy, and cyber resilience, partnering closely with Product, Engineering, Legal, and business leadership to embed security into the fabric of everything Cyncly does.

Key Responsibilities

  • Cyber Security Strategy & Leadership
    • Define and own Cyncly's global cyber security strategy, roadmap, and operating model.
    • Build and lead a high-performing, globally distributed cyber security and information security team.
    • Act as the primary security advisor to the Head of IT & Cyber Security, CTO, and senior leadership.
    • Represent Cyncly's security posture to customers, prospects, auditors, regulators, and the Board.
    • Establish and govern security policies, standards, and procedures organisation-wide.
    • Drive a continuous improvement culture within the security function.
  • Compliance, Certifications & Regulatory Obligations
    • Own end-to-end accountability for Cyncly's SOC 2 Type II certification programme.
    • Lead and maintain compliance with ISO 27001, GDPR, CCPA, and other applicable regulations.
    • Serve as the primary point of contact for external security auditors and regulatory bodies.
    • Develop and maintain a compliance calendar and evidence management framework.
    • Monitor the evolving global regulatory landscape.
    • Collaborate with Legal, Finance, and HR to ensure organisation-wide policies meet compliance obligations.
  • Data & Information Security
    • Define and implement Cyncly's data classification framework and data governance policies.
    • Oversee the design and implementation of data loss prevention (DLP) controls.
    • Embed data privacy by design principles into all product development.
    • Manage the end-to-end response to data subject access requests (DSARs).
    • Partner with Enterprise Architecture and Engineering to ensure compliance with regulations.
  • Threat Detection, Incident Response & Security Operations
    • Own and mature Cyncly's Security Operations Centre (SOC) capability.
    • Develop, maintain, and test Cyncly's Incident Response (IR) plan.
    • Act as the senior Incident Commander for significant cyber security incidents.
    • Drive the adoption of threat intelligence platforms and vulnerability management programmes.
    • Lead the organisation's vulnerability management and penetration testing programmes.
  • Security Architecture & Engineering
    • Define and govern Cyncly's security architecture principles and standards.
    • Lead the design and implementation of zero-trust network architecture.
    • Oversee the evaluation and selection of security tooling and platforms.
    • Partner with Infrastructure, Cloud, and DevOps teams to embed security into the CI/CD pipeline.
    • Provide security architecture review and sign-off for major technology programmes.
  • Identity, Access & Privileged Access Management
    • Own and mature Cyncly's Identity and Access Management (IAM) programme.
    • Lead the design and implementation of Privileged Access Management (PAM) controls.
    • Drive the adoption of Single Sign-On (SSO), Multi-Factor Authentication (MFA).
    • Collaborate with HR and IT Operations to ensure timely and accurate provisioning of access rights.
  • Mergers & Acquisitions β€” Security Due Diligence & Integration
    • Lead cyber security due diligence assessments for M&A targets.
    • Define and execute security integration roadmaps for acquired businesses.
    • Build and maintain repeatable M&A security assessment and integration playbooks.
    • Ensure acquired entities meet SOC 2 and other compliance obligations.
  • Security Awareness, Culture & Third-Party Risk
    • Design and deliver a comprehensive security awareness and training programme.
    • Manage Cyncly's third-party and supplier security risk programme.
    • Build and maintain a security champion network across Engineering and Product teams.

Qualifications

  • Bachelor's degree or equivalent in Computer Science, Information Security, Cybersecurity, or a related field; advanced degree preferred.
  • 20+ years of progressive experience in information security, cyber security, and data protection.
  • Minimum of 10+ years in a senior security leadership or director-level role.
  • Proven experience achieving and maintaining SOC 2 Type II certification.
  • Deep expertise in GDPR, CCPA, and global data privacy regulations.
  • Demonstrated experience building and maturing security functions.
  • Track record of leading complex, organisation-wide security programmes.
  • Experience operating across globally distributed organisations.

Requirements

  • Deep expertise in securing Microsoft Azure environments; experience with AWS or GCP security is advantageous.
  • Expert-level knowledge of SOC 2, ISO 27001/27002, NIST CSF, CIS Controls, and GDPR/CCPA.
  • Strong understanding of SIEM, SOAR, EDR/XDR platforms, and vulnerability management tools.
  • Expertise in DLP technologies, data classification, encryption, and data governance tooling.
  • Deep knowledge of Active Directory, Azure AD/Entra ID, PAM solutions, SSO, MFA, and Conditional Access.
  • Experience embedding security into DevOps pipelines and container/Kubernetes security.
  • Knowledge of enterprise network security, zero-trust networking, and firewall management.

Benefits

  • Supportive and nurturing environment with experts in their fields.
  • Flexible and autonomous working environment focused on continual growth.
  • Encouragement of diverse perspectives and backgrounds.
  • Clear and equitable compensation information.
  • Comprehensive benefits package.

Company Description

Cyncly is a global technology powerhouse with 2,800+ employees and 70,000+ customers across 100+ countries and 46+ offices. Cyncly transforms the way customizable products and spaces are imagined, designed, sold, managed and made. Our end-to-end software solutions connect professional designers, retailers and manufacturers to the world's largest repository of product content.

Cyncly offers over 30 years of experience to deliver more value for our customers through an expanded portfolio of end-to-end solutions. Our global presence allows us to provide world-class support and sales with a local touch, providing the best possible customer experience.

Cyncly is now embarking on an exciting journey as we continue to expand through strong organic growth and complementary acquisitions.

Before You Apply
️
remote Be aware of the location restriction for this remote position: USA, Canada
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Director of Security @Cyncly
All Others
Salary $150,000 - 175,..
Remote Location
Employment Type full-time
Posted 1mth ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
️
remote Be aware of the location restriction for this remote position: USA, Canada
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 125,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 127,454+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later