Jobs and Careers
LU
Director, Risk Engineering
Lumin DigitalRemote- United States, United StatesRemotefull_timeVerifiedPosted 19 Aug 2025
About the role
Basic FunctionThe Director of Risk Engineering is responsible for developing and leading teams of creators that build risk, security, and privacy capabilities into Lumin Digital’s technology platforms and business processes. This leader owns the design and implementation of scalable technical detective and preventative controls, automation, and cross-functional engineering solutions that manage risk while enabling development velocity, client delivery, satisfaction, and innovation. In some cases, this involves creating ‘paved roads, bright lines, and guard rails’ that become standard and reusable patterns for other teams within the company to follow. In others, this function serves the Risk Operations function as one of its customers to deliver the capabilities it needs to detect and defend against threats. The Director of Risk Engineering will shape the future of how Lumin builds secure-by-default systems and drives measurable improvements in both the ERM function and engineering practices company-wide.
Essential Functions and Responsibilities:
Strategic LeadershipOwn the engineering strategy for preventative and detective risk controls, including automation pipelines, telemetry collection, and response mechanismsTranslate strategic goals from the CRO into actionable risk engineering approaches and long-term roadmapsLead enterprise engineering initiatives that proactively reduce security and privacy debt, minimize exposure, and increase observability of riskContinuously assess technology shifts and organizational changes to drive risk adaptations
Technical OversightGuide the design and standardization of scalable controls for data protection, identity, secrets management, and infrastructure integrityBuild and maintain infrastructure that supports Risk Operations, including threat detection, log aggregation, alerting, automated remediation, and control monitoringServe as a technical stakeholder in architecture reviews, threat modeling sessions, and infrastructure design efforts to ensure security and privacy are embedded early
People & Team LeadershipLead and grow a team of engineers and managers focused on scaling secure-by-default and private-by-default infrastructures. Act as the bridge between risk strategy and platform execution by partnering closely with Development and Operations teams. Develop a high-performance culture focused on clarity, ownership, and continuous improvement to fulfill the company’s values of trust, respect, and boldness.Collaborate closely with teams within ERM and across Lumin Digital to drive technical alignment and shared goals, tools, and workflows. Champion security-by-design and privacy-by-design (PbD) principles in technical architecture, deployment models, and shared platforms.Influence peers and leaders to align with business priorities, meaningfully improve risk posture, and remove systemic barriers to security and privacy.Serve as a credible voice on engineering topics in both functional and cross-functional settings.
Engineering Excellence & MetricsUse engineering data to identify architectural hotspots, systemic risks, or latent security debtDefine and track relevant engineering metrics, such as time-to-remediate, secure defaults adoption rate, and platform control coverage, to inform leadership of changes in aggregate risk and effectiveness of effortsEnsure tooling, processes, and workflows are efficient, balanced, and fit for scale in a highly regulated and highly targeted industry
Supervisory Responsibility:Set clear expectations, offer direction, and ensure alignment with organizational goals while fostering a supportive environment that encourages collaboration, accountability, and growth.Coach, mentor, and provide training opportunities to build team members’ skills, promote internal growth, and prepare staff for future roles and responsibilities.Manage hiring, onboarding, performance evaluations, promotions, compensation, and terminations, ensuring fair and consistent application of policies and procedures.Assess team performance regularly, address gaps, and ensure duties are completed efficiently and effectively in alignment with department and organizational objectives.
Position Specifications
Education: Bachelor's degree in Computer Science, Information Assurance, Information Security, Cybersecurity, or related field is required; or equivalent combination of education and leadership experience of high-impact cybersecurity teams. A master’s degree in business administration, information security management, or engineering management is preferred.Certifications that demonstrate technical competency in security engineering, software engineering, systems audit, or management, such as the GCSA, GSOM, CISA, or CISM, are strongly preferred.
Experience:Ten (10) years of professional experience in software engineering, including leadership o
Essential Functions and Responsibilities:
Strategic LeadershipOwn the engineering strategy for preventative and detective risk controls, including automation pipelines, telemetry collection, and response mechanismsTranslate strategic goals from the CRO into actionable risk engineering approaches and long-term roadmapsLead enterprise engineering initiatives that proactively reduce security and privacy debt, minimize exposure, and increase observability of riskContinuously assess technology shifts and organizational changes to drive risk adaptations
Technical OversightGuide the design and standardization of scalable controls for data protection, identity, secrets management, and infrastructure integrityBuild and maintain infrastructure that supports Risk Operations, including threat detection, log aggregation, alerting, automated remediation, and control monitoringServe as a technical stakeholder in architecture reviews, threat modeling sessions, and infrastructure design efforts to ensure security and privacy are embedded early
People & Team LeadershipLead and grow a team of engineers and managers focused on scaling secure-by-default and private-by-default infrastructures. Act as the bridge between risk strategy and platform execution by partnering closely with Development and Operations teams. Develop a high-performance culture focused on clarity, ownership, and continuous improvement to fulfill the company’s values of trust, respect, and boldness.Collaborate closely with teams within ERM and across Lumin Digital to drive technical alignment and shared goals, tools, and workflows. Champion security-by-design and privacy-by-design (PbD) principles in technical architecture, deployment models, and shared platforms.Influence peers and leaders to align with business priorities, meaningfully improve risk posture, and remove systemic barriers to security and privacy.Serve as a credible voice on engineering topics in both functional and cross-functional settings.
Engineering Excellence & MetricsUse engineering data to identify architectural hotspots, systemic risks, or latent security debtDefine and track relevant engineering metrics, such as time-to-remediate, secure defaults adoption rate, and platform control coverage, to inform leadership of changes in aggregate risk and effectiveness of effortsEnsure tooling, processes, and workflows are efficient, balanced, and fit for scale in a highly regulated and highly targeted industry
Supervisory Responsibility:Set clear expectations, offer direction, and ensure alignment with organizational goals while fostering a supportive environment that encourages collaboration, accountability, and growth.Coach, mentor, and provide training opportunities to build team members’ skills, promote internal growth, and prepare staff for future roles and responsibilities.Manage hiring, onboarding, performance evaluations, promotions, compensation, and terminations, ensuring fair and consistent application of policies and procedures.Assess team performance regularly, address gaps, and ensure duties are completed efficiently and effectively in alignment with department and organizational objectives.
Position Specifications
Education: Bachelor's degree in Computer Science, Information Assurance, Information Security, Cybersecurity, or related field is required; or equivalent combination of education and leadership experience of high-impact cybersecurity teams. A master’s degree in business administration, information security management, or engineering management is preferred.Certifications that demonstrate technical competency in security engineering, software engineering, systems audit, or management, such as the GCSA, GSOM, CISA, or CISM, are strongly preferred.
Experience:Ten (10) years of professional experience in software engineering, including leadership o
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s