Director of IT Infrastructure & Security
Summary
The Director of IT Infrastructure & Security will lead corporate IT operations, enterprise security, and compliance governance, including managing CMMC, SOC 2, and FedRAMP standards. The role involves hands-on leadership, vendor management, and the implementation of Infrastructure as Code and identity management solutions.
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Director of IT Infrastructure & Security based in the United States.
This is a high-impact leadership opportunity for an experienced technology and security professional to own corporate IT infrastructure, enterprise security, and compliance operations.
You will serve as the senior technical authority for corporate IT while providing hands-on leadership, mentorship, and strategic direction to the team.
The role combines security architecture, identity management, endpoint operations, compliance governance, vendor management, and technology strategy.
You will play a central role in maintaining rigorous controls aligned with federal and industry standards, including CMMC, CJIS, SOC 2, and FedRAMP.
Working closely with Engineering, DevOps, Design, Operations, and executive stakeholders, you will strengthen security while keeping technology intuitive and effective for employees.
You will also champion automation, Infrastructure as Code, and AI-enabled workflows to create a proactive, scalable, and resilient technology environment.
This role is ideal for a self-directed leader who thrives in complex, high-growth environments and enjoys balancing strategic ownership with hands-on execution.
Accountabilities
- Serve as the senior technical authority for corporate IT, providing mentorship, coaching, technical guidance, and actionable feedback while fostering a culture of excellence and accountability.
- Independently lead day-to-day corporate IT and security operations, ensuring systems, processes, and controls remain reliable, secure, and scalable.
- Own technical compliance governance and implement and maintain controls supporting CMMC, CJIS, SOC 2, and FedRAMP requirements.
- Partner with Design and other cross-functional teams to develop security policies and practices that are effective, practical, and user-friendly.
- Collaborate with DevOps to extend corporate security requirements, identity and access management, vulnerability monitoring, and related controls across the broader technology environment without owning production cloud infrastructure.
- Act as the primary operational contact for external Security Operations Center providers and oversee Managed Detection and Response platforms across the corporate technology fleet.
- Lead IT and physical security infrastructure, including facilities-related technology and security requirements.
- Own the IT department budget, manage contractors and vendors, negotiate SaaS and hardware agreements, and oversee licensing and renewal activities.
- Champion Infrastructure as Code practices, including tools such as Terraform, to automate corporate IT deployments, standardize configurations, and strengthen disaster recovery capabilities.
- Oversee and continuously improve core enterprise systems and endpoint management platforms, including Okta, Google Workspace, and Jamf.
- Investigate complex technical or security issues directly when needed, identify root causes, and implement durable solutions.
- Support technology implementations, system upgrades, integrations, and other strategic initiatives while partnering effectively with Finance, Legal, Operations, Engineering, and executive leadership.
- 7+ years of progressive experience across Corporate IT, Enterprise Security, and Cloud Infrastructure, preferably within a fast-paced technology organization.
- U.S. citizenship and the ability to successfully complete stringent background checks and obtain any required security clearances for federal-level compliance responsibilities and secure facilities.
- Demonstrated experience leading organizations through demanding compliance audits, particularly CMMC, CJIS, and SOC 2, with strong working knowledge of FedRAMP requirements.
- Deep expertise in enterprise security architecture, identity and access management, endpoint security, and corporate technology operations.
- Advanced hands-on administration experience with Okta, Jamf, and Google Workspace, along with familiarity with Managed Detection and Response solutions and external SOC operations.
- Familiarity with AWS and Infrastructure as Code technologies such as Terraform, enabling effective collaboration with teams responsible for cloud infrastructure.
- Experience managing IT budgets, vendors, contractors, technology renewals, and enterprise software relationships.
- Strong understanding of security controls, vulnerability monitoring, compliance governance, and risk management.
- A human-centered approach to security, with the ability to design processes and policies that protect systems without creating unnecessary friction for users.
- A coaching-oriented leadership style and the ability to influence through collaboration, technical credibility, and clear communication in a non-traditional organizational structure.
- Exceptional problem-solving, analytical, written, and verbal communication skills, with the ability to navigate ambiguity and competing priorities.
- A self-motivated, resourceful mindset with a strong sense of ownership and a commitment to continuously improving systems, processes, and team performance.
- Intellectual curiosity, adaptability, and a willingness to challenge conventional approaches while maintaining strong cross-functional relationships.
- Annual base salary of $200,000–$250,000 USD.
- 401(k) plan with up to 5% employer contribution.
- Fully funded, top-tier medical benefits, including vision and dental coverage, available from day one for employees and their families.
- Up to 24 weeks of paid parental leave, plus a 4-week paid ramp-back program.
- $10,000 family-forming benefit supporting eligible fertility treatments, adoption, and surrogacy expenses.
- Flexible vacation policy with no fixed annual limit or accrual period.
- Summer Fridays and an extended holiday period in December.
- Flexible work arrangements with the ability to work from home as needed, alongside access to collaborative office spaces.
- Opportunities to work remotely from eligible locations for up to 2 months per year.
- Individualized professional growth through mentorship, customized development goals, feedback sessions, leadership programs, and learning opportunities.
- Dedicated wellness support to help employees navigate available programs and resources.
- Benefits supporting commuting and transit costs.
- In-person events designed to strengthen collaboration, connection, and team relationships.
Requirements
Benefits
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company