Jobs and Careers
FL

Senior Director of Security and Compliance

Flores & Associates
Remote Worker - United States, United StatesRemotefull_timeVerifiedPosted 4 Mar 2025
💰 $210,700/yr($168,560/yr$210,700/yr)

About the role

Description

Job Title: Senior Director of Security and Compliance

Job Type: FT

Location: #LI- Remote, to be considered for this role, you must reside in one of the following states —AZ, CT, FL, GA, IL, KS, MA, MD, ME, MI, MO, NC, NJ, NV, NY, OH, PA, RI, SC, TN, TX, UT, VA, WI, WV.   


Who We Are

Benefits are complicated but by using innovative technology, paired with attentive and dedicated customer service, it doesn’t have to be! At Flores, we focus on technology and customer service, so our clients can focus on their employees. We are a leader in the field of consumer-based reimbursement plans, COBRA, and Direct Bill services. With a 97% client retention rate, we continue to grow our footprint across the US.

Please visit our website to learn more about our people, culture, and benefits! www.flores-associates.com.


Job Summary

At Flores, we are passionate about our clients having a great experience and this also applies to our team and our future team members. Building a remarkable team is a top-level company priority. The Senior Director of Security and Compliance will lead our organization's efforts in ensuring compliance, maintaining security standards, and driving enterprise engineering excellence. This role requires a strategic leader with in-depth knowledge of audit processes, regulatory compliance frameworks, enterprise engineering best practices, Azure cloud technologies, and expertise in implementing both NIST and HITRUST Cybersecurity Frameworks (CSFs). The Senior Director of Security and Compliance reports to the CTO. 


What You’ll Do

  • Define and execute security strategies to protect enterprise systems, data, and infrastructure.
  • Incorporate NIST and HITRUST CSF best practices into security programs, focusing on core functions like risk management, threat identification, and incident response.
  • Lead risk assessments, vulnerability management, and incident response planning across the organization.
  • Ensure secure design and architecture of enterprise engineering projects.
  • Promote a culture of security awareness through training and engagement initiatives.
  • Architect and enforce best practices for Azure Cloud Infrastructure security, aligning with secure architecture principles and ensuring robust data protection.
  • Collaborate with enterprise and desktop engineering teams to design and implement security best practices across desktop and server configurations, software deployment, and endpoint security.
  • Provide guidance on IAM, privileged access controls, and secure access policies to reinforce a zero-trust model across Azure and on-premises environments.
  • Work independently and with third parties to conduct regular risk assessments for Azure, enterprise, and desktop systems, identifying vulnerabilities and recommending mitigation strategies in alignment with industry frameworks.
  • Oversee compliance efforts, ensuring adherence to regulatory standards such as SOC 2, ISO 27001, GDPR, HITRUST, HIPAA, and PCI-DSS across cloud and enterprise systems.
  • Manage audit preparation, documentation, and evidence collection for internal, customer, and third-party audits, working closely with audit and compliance teams.
  • Lead cloud and enterprise incident response efforts, coordinating with internal and external teams to address Azure and enterprise-level security incidents effectively.
  • Oversee the implementation of threat detection and monitoring strategies for Azure and desktop environments, utilizing tools like Azure Sentinel, Microsoft Defender for Cloud, and endpoint protection solutions.
  • Collaborate with threat intelligence teams to proactively address threats, vulnerabilities, and security trends relevant to Azure and enterprise infrastructures.
  • Work closely with IT, DevOps, and enterprise engineering teams to embed security and compliance requirements throughout cloud architecture, application development, and end-user systems.
  • Drive awareness and training initiatives to foster a culture of security across enterprise engineering and desktop environments, promoting secure behavior and best practices.
  • Serve as the primary contact for security and compliance related matters, liaising with internal stakeholders, customers, third-party vendors, and auditors.
  • Perform other duties as assigned.
  • Maintain quality work that exemplifies and promotes Flores’ core values. 
Requirements

Who You Are

  • A self-driven, inquisitive, and tenacious individual, capable of understanding and improving upon complex existing software platforms.
  • A graduate of a bachelor’s degree program preferably a degree in Computer Science, Information Security M

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Flores & Associates

View company profile →