Jobs and Careers
AC
VP, Security Engineering
ActiveCampaignUnited Statesfull_timeVerifiedPosted 18 Jan 2023
About the role
We are seeking an experienced Head of Security to join our growing SaaS company. Reporting to the CTO, you will be responsible for developing and implementing a comprehensive security strategy to protect our organization, our customers, and our data. You will lead a team of security professionals and work closely with our engineering and product teams to ensure that security is integrated into all aspects of our business.
As a global multicultural company, we are proud of our inclusive culture which embraces diverse voices, backgrounds, and perspectives. We don’t just celebrate our differences, we believe our diversity is what empowers our innovation and success. You can find out more about our DEI initiatives here.
As one of the fastest-growing SaaS companies in the world, we are scaling rapidly to keep up with market demand. We are growing all of our teams and looking for people who share our values, deliver innovation frequently, and join us in our mission to grow our customer base from 185,000 today to millions. We have been ranked #4 Best Place to Work on Built In Chicago in 2021, a best workplace for remote employees by Quartz and received recognition as a great place to work across all of our regions, and continue to be globally recognized for our employee-centric culture here.
Perks and benefits:ActiveCampaign is an employee-first culture. We take care of our employees at work and outside of work. You can see more of the details here, but some of our most popular benefits include:
-Comprehensive health and wellness benefits (including no premiums for employees on our HSA plan, telehealth and tele-mental health, and access to the Calm app for meditation)-Open paid time off-Generous 401(k) matching with no vesting-Generous stipend to outfit your remote office-Access to life coaches via Modern Health-Cool swag
ActiveCampaign is an equal opportunity employer. We recruit, hire, pay, grow and p
What your day could consist of:
- Lead all product security initiatives in close connection to the needs of partners, customers, the market and overall company objectives.
- Lead a team of security professionals, including hiring, training, and performance management.
- Lead incident response efforts and coordinate with relevant stakeholders to resolve security incidents.
- Manage Third Party (e.g., vendor) Risk Assessment Program with IT.
- Manage stakeholder (customer, partner) security questionnaires and assessment processes. Interface with customer management as necessary.
- Manage threat and vulnerability management.
- Ensure an effective SSDLC is in place for engineering.
- Implement security controls and processes to protect the company's data and systems from external threats.
- Own the SOC2 audit, and lead work to implement ISO27001 certification.
- Conduct risk assessments and implement appropriate controls to mitigate identified risks.
- Stay up to date with the latest security technologies and best practices.
- Develop and maintain security policies, standards, and procedures.
- Guide security engineering on InfoSec/AppSec standards, auditing, and penetration testing.
- Manage analysis of fraud vulnerabilities, control weaknesses, and gaps to mitigate and remediate significant issues, trends, and loss events.
What is needed:
- Bachelor's degree in computer science, information technology, or a related field.
- 10+ years of experience in information security, with at least 5 years in a leadership role.
- Strong understanding of security technologies and best practices.
- Experience with security risk assessment and management.
- Experience with incident response and forensics.
- Experience with security in the cloud (e.g., AWS, Azure, Google Cloud) is a plus.
- CISSP, CISM, CISA or other relevant security certification is a plus.
- Excellent communication and leadership skills.
- Experience building Internal Audit functions for SOC 2, ISO 27001, and PCI-DSS.
- Excellent understanding of vulnerability management and associated tools and solutions.
- Machine Learning Models understanding is a plus.
- Seeking candidates in Chicago or Indianapolis.
As a global multicultural company, we are proud of our inclusive culture which embraces diverse voices, backgrounds, and perspectives. We don’t just celebrate our differences, we believe our diversity is what empowers our innovation and success. You can find out more about our DEI initiatives here.
As one of the fastest-growing SaaS companies in the world, we are scaling rapidly to keep up with market demand. We are growing all of our teams and looking for people who share our values, deliver innovation frequently, and join us in our mission to grow our customer base from 185,000 today to millions. We have been ranked #4 Best Place to Work on Built In Chicago in 2021, a best workplace for remote employees by Quartz and received recognition as a great place to work across all of our regions, and continue to be globally recognized for our employee-centric culture here.
Perks and benefits:ActiveCampaign is an employee-first culture. We take care of our employees at work and outside of work. You can see more of the details here, but some of our most popular benefits include:
-Comprehensive health and wellness benefits (including no premiums for employees on our HSA plan, telehealth and tele-mental health, and access to the Calm app for meditation)-Open paid time off-Generous 401(k) matching with no vesting-Generous stipend to outfit your remote office-Access to life coaches via Modern Health-Cool swag
ActiveCampaign is an equal opportunity employer. We recruit, hire, pay, grow and p
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s