Director of Information Security
Summary
Hands-on Director leading information security and information systems—driving security operations, compliance (SOC 2, ISO 27001, GDPR), IAM, and automation across cloud/SaaS infrastructure.
About 7AI
7AI is the foundational AI security company. Founded in 2024 by Cybereason co-founders Lior Div and Yonatan Striem-Amit, we came out of stealth in February 2025 to take on the non-human work of the SOC. Our platform pairs a federated SIEM with AI agents that detect, investigate, respond, and hunt, plus dedicated threat hunting and threat intelligence, with humans on the loop.
Backed by $166 million in total funding from investors including Index Ventures and Blackstone, we're building the AI foundation for security operations in the agentic era, and we're still early. That's the appeal: you'll join at a pivotal stage where your work shapes what 7AI becomes, alongside security veterans who've built this before. Our culture runs on respect, collaboration, and a shared bar for excellence, all pointed at one goal, delivering real outcomes for the customers who trust us to defend them.
Overview
You'll take ownership of information security and information systems, building the programs, policies, and team behind them. You'll lead security operations, compliance, and incident response, and work across the company so our systems, data, and people meet the standards we hold ourselves to. This is a foundational role: you're building the function from the ground up, not maintaining what's already there.
What You'll Do
Maintain and improve the company's information security practices, tools, and procedures.
Monitor internal systems for vulnerabilities or breaches, and lead incident response.
Develop, implement, and enforce security policies and standards across the organization.
Lead compliance initiatives for frameworks including SOC 2, ISO 27001, ISO 42001, and GDPR.
Run internal risk assessments, coordinate third-party audits, and track findings to resolution.
Own identity and access management, applying least-privilege principles across the company.
Run security training and awareness programs for employees across every department.
Assess and manage the security posture of third-party vendors and cloud services.
Work with engineering and IT to build security into systems and workflows from the start.
Track emerging threats, technologies, and regulatory changes that affect the company's security posture.
Build and lead a team to execute and scale security and information systems work.
Drive automation across the company to raise security maturity in both product and information security.
Partner with platform teams to support the company's growth.
What We're Looking For
7+ years of hands-on experience in information security, IT security, or a related field.
Familiarity with common security and compliance frameworks (SOC 2, ISO 27001, NIST, GDPR, etc.).
Strong understanding of modern IT infrastructure: cloud services, SaaS, access controls, security architecture.
Excellent communication skills. You can translate complex security concepts for non-technical teams.
Experience managing teams and driving cross-functional projects.
Nice to Have
Relevant certifications (e.g., CISSP, CISM, CompTIA Security+, ISO 27001 Lead Implementer).
Exposure to secure software development practices (DevSecOps, secure SDLC, etc.).
Experience in security operations and/or incident response.
Experience in a startup or small company environment.
As published by ashby
Name, Email, Resume
- Phone Number optional
- LinkedIn optional
- Authorization yes / no
- Location yes / no
- Location follow up yes / no · optional