Director of Information Security
CollectorsAbout the role
Collectors is the leading creator of innovative technology that provides value-added services for collectors worldwide. We grade, authenticate, vault, and sell millions of record-setting collectibles, all while modernizing and digitalizing the process to further our mission of helping collectors pursue their passions. We’re always on the lookout for talented people to join our growing team.
Our services span collectible trading cards, autographs, comic books, coins, video games, event tickets, and memorabilia. Our subsidiaries include PSA, PCGS, Beckett, SGC, and Card Ladder.
Since our founding in 1986, we have graded and authenticated millions of items. We employ more than 3000 people across our headquarters in Santa Ana, California and offices in New Jersey, Texas, Florida, Japan, Shanghai, Hong Kong, Canada, Mexico, Germany, and France.
As part of our interview process, we request that candidates have their cameras on during video interviews. This helps foster meaningful conversation and allows us to create an experience that closely resembles our standard working environment. Certain interview steps may take place by phone. For remote roles, and at our discretion, candidates may be asked to participate in an on-site interview as part of the final stages of the process.
We understand there may be occasional circumstances requiring accommodation and are happy to discuss them as needed. Your recruiter will be able to clarify expectations and answer any questions you have.
We’re transforming the collecting experience with technology that brings authentication, grading, and trading into the modern era. Our products are equalizing the playing field by providing tools that make complex research analytics — including pricing, scarcity reports, and historic sales data — accessible to every collector, old or new. Our engineering mission is to democratize technology while promoting innovation, collaboration, and continuous learning throughout the organization. We're seeking engineers to utilize advanced technology in agile settings, with a focus on improving the customer experience for every collector.
We’re looking for an Information Security Director to join our Cybersecurity team to prioritize the right risks for the organization and partner with cross functional stakeholders to ensure security is incorporated into all aspects of the business.
You’ll report to the VP of Engineering, Information Security and Platforms. Collectors is committed to utilize cybersecurity, risk and privacy best practices across our environment to protect our customers, employees and our brand.
Remote or hybrid candidates will also be considered. We believe that there is significant value in in-person collaboration. If you live within a 1 hour commuting distance to one of our offices, you will be required to be onsite most of the time. This will be discussed further as part of the recruiting process.
What You’ll Do:
Lead the information security program across application security, cloud security, security operations, and GRC, serving as the operational leader responsible for refining and driving the information security roadmap into executed outcomes. We’re focused on ensuring that we’re prioritizing risk reduction over checkbox security and proactively incorporating emerging threats and trends.
Own the security operations function, including detection and response, threat intelligence, incident management, and SOC maturity, ensuring the organization can rapidly identify, contain, and recover from security events.
Drive the application security program, embedding secure development practices, code analysis tooling, and vulnerability management into the SDLC in close partnership with product and platform engineering teams.
Establish and mature cloud security capabilities, defining and enforcing security standards across cloud environments including architecture review, configuration management, workload protection, and cloud-native detection and response.
Oversee governance, risk, and compliance activities, including regulatory and framework alignment (SOC 2, ISO 27001, NIST, HITRUST, or similar), risk assessment processes, policy lifecycle management, and audit coordination.
Partner with Internal Platform teams to define and implement appropriate security guardrails within the environment.
Build and maintain the organization's security risk register, providing the stakeholders with clear, data-informed visibility into the threat landscape, control gaps, and residual risk across the enterprise.
Collaborate cross-func
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s