About Vidmob
Vidmob is the creative data company. Our scoring software and analytics drive business results through improved creative effectiveness for the world’s largest marketers and agencies. As a leader in creative data, Vidmob’s partnerships and integrations across the digital ad ecosystem, proprietary models, and human-reinforcement learning model for creativity make it an essential ingredient in creative and media decisions.
Job Title: Director of Information & Cybersecurity
Location: 100% Remote, US
About The Role
The Director of Information and Cybersecurity is a key leadership role at Vidmob, reporting to the VP of Engineering. This role leads Vidmob’s Cybersecurity Office, overseeing Information Systems and Technology Security, providing strategic security direction, and supporting production and development environments.
Responsibilities:
- Department Analysis: Identify vulnerabilities, boost productivity, efficiency, and accuracy to inform business decisions.
- Regulatory Compliance: Ensure compliance with relevant regulations and lead responses to security incidents.
- Risk Communication: Communicate risks and strategies to executive management and stakeholders.
- Customer Collaboration: Address security requirements effectively with customers and their security teams.
- Process Improvement: Analyze current processes, technologies, and vendors for continuous improvement.
- Security Integration: Collaborate with development and operations teams to integrate security practices into the development lifecycle, adhering to a “Shift Left” approach.
- Vulnerability Management: Use AI, SCA, and DAST scanners to proactively identify and address security vulnerabilities.
- Security Assessments: Perform security assessments and audits on applications and infrastructure to ensure compliance with certifications, standards, and frameworks such as SOC2, ISO 270001, NIST, and CSA.
- Automation: Develop and maintain security automation scripts and tools to streamline security processes.
- System Design: Assist in designing and implementing secure systems and networks to safeguard IT infrastructure, applications, and data.
- IT Oversight: Provide direction to IT for managing and supporting internal assets in compliance with corporate policies and best practices.
- Incident Response: Participate in incident response and security investigations as needed.
- Policy Development: Develop and maintain security and IT policies, standards, and procedures.
- Training: Develop and deliver security awareness training programs for employees and promote a culture of security awareness across the organization.
- Budget Management: Develop and manage the cybersecurity budget, ensuring efficient allocation and utilization of resources.
Qualifications:
- Education: Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent work experience).
- Experience: 7+ years of leadership experience in SRE, DevSecOps, IT Security Operations.
- Certifications: Relevant security certifications (e.g., CISSP, CEH, CISM, AWS Security Specialty) are a plus.
- Technical Expertise: Understanding of security weaknesses, exploits, attacks, and mitigations.
- Tool Proficiency: Experience with AWS security tools (GuardDuty, AWS Config, CloudTrail), ECS or EKS, DataDog, MDM, EDR, AV, DAST, and SCA, AI tools, SIEM, or similar tools.
- IT Infrastructure: Experience with IT infrastructure and various security services, maintaining policy and templates for detection rules and response actions for endpoints.
- Cloud Security: Proven experience in supporting security in AWS cloud-based SaaS offerings.
- Security Tools: Proficiency in standard security testing tools such as Burp Suite and Metasploit.
- Programming Skills: Experience with programming languages commonly used in DevSecOps, such as Python or JavaScript.
- Containerization: Understanding of containerization technologies such as Docker and Kubernetes.
Important Information:
Please be aware that Vidmob will only contact candidates through emails ending in @vidmob.com. We will never ask for personal information, such as your Social Security number, bank account number, or password, through email. If you receive an email claiming to be from Vidmob that does not come from a @vidmob.com email address, or if the email asks for personal information, please do not respond and report the email to us at IT@vidmob.com.