Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director of Information Security

Fetch

Position Summary

The Director of Information Security owns Fetch's security function end to end: vulnerability management and AppSec, incident response and forensics, security architecture, GRC/compliance, third-party risk, and security awareness. This role is the senior full-time security leader for the company, taking day-to-day ownership of the security program.

The Director of Information Security is the dedicated, always-on owner of the security posture; someone who can run point on a critical incident, drive a vulnerability program to completion, and build the compliance backbone the company needs as it scales.

Role Purpose

  • Own the security function's day-to-day execution.
  • Reduce the company's exposure to high-blast-radius security risk, AI agent architecture, and application security.
  • Build a mature, auditable, and scalable security program (policy, controls, evidence, reporting) ahead of compliance and customer-trust demands.
  • Lead and grow a Security team, providing the people management the function has lacked.
  • Serve as the primary technical authority and incident commander for security events.
  • Represent Information Security credibly to executives, auditors, customers, and partners.
Key Responsibilities

1. Security Engineering & Vulnerability Management
  • Own the AppSec and vulnerability management program (Snyk and adjacent tooling), including pack ownership, CI/CD security gating, and repository risk classification processes.
  • Drive vulnerability remediation SLAs and hold engineering accountable to them.
  • Continuously mature the program from reactive scanning toward proactive, gated prevention.
2. Incident Response & Forensics
  • Act as an incident commander for security incidents, including coordinating cross-functional response, containment, and communication.
  • Own the bug bounty and continuous penetration testing disclosure program: triage, validation, remediation tracking, and researcher communication.
  • Facilitate post-incident reviews and root-cause analysis, with particular attention to recurring architectural risk patterns.
  • Ensure remediation of systemic issues, not just point fixes and elevate platform-level fixes when the same root cause recurs across incidents.
3. Security Architecture & Emerging Risk
  • Own security architecture review for new systems, platforms, and AI agent deployments, including AI agent identity and access patterns (eg, cross-app access, delegated identity).
  • Maintain security standards for cloud infrastructure, endpoint protection, and network/edge security.
  • Partner with IT Operations on identity-related risk (entitlement sprawl, contractor and non-employee access, and access governance) providing the security requirements and risk lens that IT Operations executes against.
4. GRC, Policy & Compliance
  • Own the security policy library, risk register, and control framework; keep them current and audit-ready.
  • Lead internal and external audits and assessments, coordinating evidence collection across IT, Engineering, and Legal.
  • Report program maturity, open risk, and remediation progress to executive leadership on a regular cadence.
  • Oversee processes to update and maintain the Enterprise Security Risk Register.
5. AI Governance & Emerging Technology Risk
  • Partner with the Chief AI Officer on the security dimensions of AI governance, including enforcement of AI acceptable-use policy and identification of security risk in new AI tooling and agent deployments.
  • Provide the security review and risk sign-off for new AI platforms, agents, and integrations prior to broad rollout.
6. Third-Party & Vendor Risk
  • Own vendor and third-party security risk assessment for new tools, integrations, and contractors.
  • Maintain a defensible, repeatable process for evaluating vendor security posture before onboarding.
7. Security Awareness & Culture
  • Own company-wide security awareness programming, phishing simulation, and targeted training following incidents or audit findings.
  • Build blameless, clear communications that raise the organization's security literacy without creating fear or confusion.
8. Team Leadership & People Management
  • Hire, coach, and develop the Security Engineering team.
  • Set team priorities, run performance management, and build a growth path for security engineers.
  • Establish team operating rhythm: on-call/incident rotation, backlog grooming, and technical review standards.
9. Executive & Cross-Functional Communication
  • Own the security content in recurring executive reporting.
  • Represent Information Security in cross-functional forums (Legal, AI governance, IT Operations, Engineering leadership).
  • Escalate material risk, resourcing gaps, or unresolved cross-functional blockers promptly and clearly.
Required Qualifications
  • 7+ years in information security, including meaningful experience in application security, incident response, and security architecture.
  • Demonstrated experience running vulnerability management programs at scale (eg, Snyk or comparable tooling).
  • Direct incident command experience, including coordinating cross-functional response to significant security events.
  • People management experience, ideally building or scaling a security engineering team.
  • Working knowledge of cloud security, identity and access management concepts, and modern AI/agent architecture risk.
  • Strong written and verbal communication skills, including comfort presenting to executive audiences.
Preferred Qualifications
  • Experience with bug bounty/responsible disclosure program management.
  • Experience building or maturing a GRC program, including audit and compliance framework experience (SOC 2, ISO 27001).
  • Familiarity with AI agent security risk, including MCP-style tool/agent architectures and identity delegation patterns.
  • Experience partnering with AI governance or data governance functions.
  • Relevant certifications (CISSP, CISM, or equivalent).
Core Competencies
  • Incident command and crisis leadership
  • Security architecture and risk assessment
  • Program and process maturity building
  • People leadership and coaching
  • Executive communication
  • Cross-functional influence without direct authority over partner teams
  • Judgment under ambiguity and time pressure
At Fetch, we'll give you the tools to feel healthy, happy and secure through:
  • Equity: We offer full-time employees equity in Fetch, so that everyone can benefit from Fetch's growth.
  • 401k Match: Dollar-for-dollar match up to 4%.
  • Benefits for humans and pets: We offer comprehensive medical, dental and vision plans for everyone including your pets.
  • Continuing Education: Fetch provides ten thousand per year in education reimbursement.
  • Employee Resource Groups: Take part in employee-led groups that are centered around fostering a diverse and inclusive workplace through events, dialogue and advocacy. The ERGs participate in our Inclusion Council with members of executive leadership.
  • Paid Time Off: On top of our flexible PTO, Fetch observes 9 paid holidays, as well as our year-end week-long break.
  • Robust Leave Policies: 20 weeks of paid parental leave for primary caregivers, 14 weeks for secondary caregivers, and a flexible return to work schedule.
  • Calvin Care Cash: Employees who are welcoming new family members will also receive a one time $2,000 incentive to assist employees with covering the cost of childcare, clothing, diapers and much more!
  • Flexible Work Environment: Collaborate with your team in one of our stunning offices, or you can work fully remotely from anywhere in the US. We'll ensure you are equally equipped with the hardware and software you need to get your job done in the comfort of your home. (applicable for most roles)

Fetch is an equal opportunity employer that embraces diversity, inclusion, and respect for all individuals. We do not discriminate on the basis of race, color, religion, gender, gender identity or expression, sexual orientation, age, national origin, marital status, veteran status, disability, or any other characteristic protected by applicable law. Our commitment to inclusivity ensures that everyone is treated with dignity and has the opportunity to succeed based on their talent, skills, and potential.

Fetch also provides reasonable accommodations to qualified individuals with disabilities or those with sincerely held religious beliefs, as required by law. If you need assistance with the application process or require an accommodation, please contact us at View email address on click.appcast.io.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Director of Information Security in United States vacancy
  • $160k - $170k

    Position Details Position Information About HofstraHofstra University is nationally ranked...  ...CategoryAdministrationSchool/DivisionITS Information Security (division)DepartmentITS Information...  ...Chief Information Officer (CIO), the Director of Information Security is a member of... 
    Suggested
    Full time
    Work experience placement

    Hofstra University

    Hempstead, NY
    1 day ago
  • Job Posting:JR101916 Director of Information Security (Open)Department:Information Technology, PMPosition Type:RegularOpen Date:06-30-2026Close Date:$140,000 - $150,000Job Description:The Director of Information Security position is responsible for developing and executing... 
    Suggested
    Full time
    Work at office

    Bowie State University

    Bowie, MD
    4 days ago
  • $105k - $130k

     ...Director of Information Security Bookmark this Posting Print Preview | Apply for this Job Position Details Position Information Position Title Director of Information Security Department Information Services - Office of VP -Group Pay Type Exempt Appointment... 
    Suggested
    Full time
    H1b
    Work at office
    Remote work
    Relocation
    Work visa

    Connecticut College

    New London, CT
    3 days ago
  •  ...Summary Leads the company's cybersecurity program, overseeing governance, risk, compliance, and day-to-day security operations. Responsible for information security across internal systems, cloud solution providers, vendor/third-party solutions, identity and access... 
    Suggested
    Contract work
    Live in
    Flexible hours
    Night shift

    Drury Hotels

    Saint Louis, MO
    3 days ago
  •  ...Position Summary The Director of Information Security owns Fetch's security function end to end: vulnerability management and AppSec, incident response and forensics, security architecture, GRC/compliance, third-party risk, and security awareness. This role is the... 
    Suggested
    Full time
    For contractors

    Fetch

    United States
    2 days ago
  •  ...position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Director of Information Security based in the United States. As Director of Information Security, you will lead and mature a growing security... 
    Remote work

    Jobgether

    United States
    4 days ago
  •  ...A fast-growing software organization in the self-funded medical benefits ecosystem is seeking a Director of Information Security to own the security program end to end. This leader will set strategy, build governance, oversee tooling, manage certifications, and represent... 
    Contract work
    Work at office

    Humans Doing

    Smyrna, GA
    4 days ago
  •  ...Director of Information Security Company: Akamai Work Type: Remote Employment: Full Time Location: US Seniority: Senior Level Technologies: FedRAMP, NIST RMF, NIST SP 800-53, Vulnerability management, Encryption, Security monitoring, Cloud security Requirements: 12+ years... 
    Full time
    Remote work

    Akamai

    United States
    4 days ago
  •  ...Leading the development of a comprehensive information security and compliance strategy, the full-time remote Senior Director of Information Security and Compliance will oversee the maturity of the security program, manage key teams, and serve as the executive voice during... 
    Full time
    Remote work

    Virtual Vocations Inc

    United States
    2 days ago
  •  ...Director of Information Security DBMG Headquarters - Phoenix, AZ 85016 Position Overview As the Director of Information Security at DBMG, you are responsible for leading and advancing the organization's cybersecurity program to protect information assets, technology... 
    Work at office
    Afternoon shift

    DBM Global Inc

    Phoenix, AZ
    1 day ago
  • $137.4k - $206.2k

    Job Summary: The Director of Security Engineering is responsible for leading enterprise security architecture, engineering, and exposure management...  ...:Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline;... 
    Hourly pay
    Minimum wage
    Full time
    Local area

    Ecolab

    Naperville, IL
    3 days ago
  • $136.5k - $350k

     ...We’re seeking a future team member for the role of Senior Director of Network Security - Engineering Lead to join our Network Security team....  ...required; advanced degree preferred15+ years of experience in information security or related technology experience required;... 
    Temporary work
    Work experience placement
    Remote work
    Worldwide
    Flexible hours

    The Bank of New York Mellon

    New York, NY
    1 day ago
  • $165k - $185k

     ...'re the person who keeps that platform fast, reliable, and secure. As Director of DevOps, Security & IT, you'll own how jrni builds, runs,...  .... Security & compliance Set the direction for jrni's Information Security program against ISO 27001 and SOC 2. Own and improve... 
    Full time
    Remote work

    jrni

    Boston, MA
    a month ago
  •  ...The VP of Information Security OR Senior Director OR Head of Security owns the full breadth of information security capabilities across a large, complex global enterprise. This is not a narrow technical role - it carries direct leadership accountability across security... 
    Full time
    For contractors
    Local area
    Relocation
    Relocation package

    Connvertex Technologies Inc.

    Delaware, OH
    2 days ago
  • $144.25k - $256.25k

     ...customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a...  ...future of a Fortune 100 company.Trust. Service. Security.Director, Cybersecurity provides leadership and guidance to senior... 
    Visa sponsorship

    American Express

    Sunrise, FL
    18 hours ago
  • $154.1k - $264k

     ...Job Description POSITION PURPOSE The Global Director of Infrastructure, Operations, and Security is a senior leadership role responsible for the reliability...  ...to the Global Vice President, Chief Digital & Information Officer, this leader will own global infrastructure... 
    Contract work

    Baltimore Aircoil Company, Inc.

    Jessup, MD
    19 days ago
  • $170k - $412.5k

    Director of Enterprise Cyber Security ArchitectureThis role has been designed as 'Hybrid' with a requirement that you will work on average 2 days per...  ...QualificationsBachelor's degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field.1... 
    Full time
    Work experience placement
    Work at office
    Local area
    Immediate start
    2 days per week

    Hewlett Packard Enterprise

    Durham, NC
    4 days ago
  • $170k - $412.5k

     ...Description Hewlett Packard Enterprise (HPE) is seeking a Director of Enterprise Security Architecture to lead the development and execution of...  ...Required Qualifications Bachelor's degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field. 1... 
    Work experience placement
    Work at office
    2 days per week

    Hewlett Packard Enterprise

    Frisco, TX
    2 days ago
  • $280k - $320k

    Security at most companies is reactive. A checkbox for auditors. A speed bump for engineers. A department that says no. That's not what...  ...is to take it further. You'll own Sendbird's comprehensive information security programs, manage and evolve our compliance frameworks... 
    Temporary work
    Work at office
    Flexible hours
    3 days per week

    Sendbird

    San Mateo, CA
    2 days ago
  • $90k - $125k

     ...responsible for maintaining a safe and secure environment. Manage the administrative,...  ...the Health System. Collaborates with the Director of Infection Prevention in the development...  ..., budgets, schedules, conflicts and information.Has knowledge of laws, regulations, principles... 
    Full time

    Thompson Health

    Canandaigua, NY
    7 hours ago
  • Philadelphia, Pennsylvania100% RemoteFull Time$200k - $270kAn AI Developer Cloud startup is looking for a Director of Security to join their growing team. They recently closed their Series A funding and hired their first 3 security engineers. They're looking to bring on... 
    Full time

    Motion Recruitment

    Philadelphia, PA
    1 day ago
  • $205k - $230k

     ...Director, Security Operations Role Overview The Director of Security Operations leads the organization's day-to-day cybersecurity operations across traditional and AI-enabled environments. Reporting to the CISO, the Director leads Security Operations while partnering... 
    Full time
    Work experience placement
    Remote work
    Flexible hours

    Backblaze External Website

    United States
    2 days ago
  • $125k - $135k

     ...plans.Ensure full compliance with local security and safety laws, fire safety codes, and...  ...resort security, with at least 3 years in a director-level role.Proven expertise in luxury or...  ...and the ability to manage confidential information with discretion.Proficiency with MS... 
    Full time
    For contractors
    Local area
    Night shift

    Four Seasons Hotel & Resorts

    New York, NY
    4 days ago
  •  ...Team As part of Delivery Excellence, our Security and Risk Services team empowers...  ...and Risk product portfolio. The Role As Director, Security and Risk Services (Americas),...  ...Security and Risk Services portfolio. Stay informed of security trends, regulatory landscape... 
    Work at office
    Immediate start
    Remote work
    Flexible hours

    ServiceNow

    Dallas, TX
    3 days ago
  • $80k - $95k

     ...Director of Operations & Security Title: Director of Operations & Security Location: New York Metropolitan Area Reports to: Site Director Pay Range: $80,000 - $95,000 per year Classification: Exempt Employment Type: Full-time (35 hour per week) Role... 
    Full time
    Temporary work
    Work at office
    Local area
    Trial period
    Monday to Friday
    Shift work

    NEIGHBORHOOD ASSOCIATION FOR INTER-CULTURAL AFFAIRS

    Bronx, NY
    2 days ago
  •  ...Job Description Job Description Director of Cyber Security 10916 The ideal candidate brings deep security operations experience, strong...  ...Qualifications ~ Bachelor's degree in Computer Science, Information Security, or a related field. ~10+ years of... 
    Interim role

    Thomas Edwards Group

    Dallas, TX
    29 days ago
  •  ...relationships, innovation, continuous improvement and accountability. ABOUT THE ROLE  We are seeking a seasoned Chief Information Security & Privacy Officer (CISO/CPO) responsible for leading our enterprise-wide cybersecurity, data protection, and privacy programs... 
    Full time
    Temporary work
    Work at office
    Remote work
    Work from home
    Monday to Friday

    S&S Activewear LLC

    Bolingbrook, IL
    21 days ago
  • DescriptionCompany Overviewiboss is a cloud security company that enables the modern...  ...more, visit .Job DescriptionThe Manager of Information Security & Compliance is a key leadership...  ...protecting information systems and data. The Director of Information Security & Compliance... 

    iBoss

    Atlanta, GA
    1 day ago
  • $200k - $225k

     ....00 - $225,000.00 Annual SalaryJob Description Summary:The Director of Security and Compliance leads the design and oversight of cybersecurity...  .... This position reports to the VP of IT Operations / Chief Information Security Officer.Job Description:POSITION RESPONSIBILITIES... 
    Full time
    Temporary work
    Flexible hours

    Swinerton

    Raleigh, NC
    3 days ago
  •  ...JPMorganChase and unleash your potential in shaping the industry.As a Director of Security Engineering at JPMorganChase within the Cybersecurity and...  ...or physical disability needs. Visit our FAQs for more information about requesting an accommodation.JPMorgan Chase & Co. is... 

    JP Morgan Chase

    Seattle, WA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director of Information Security. Be the first to apply!