Director, Cybersecurity
Ascend Partner Services
Job Description
Job Description
About Ascend
Ascend empowers entrepreneurial CPAs to reach their goals with an innovative growth model that brings their firms into the new age. Backed by private equity from people-focused Alpine Investors, Ascend is building a modern platform for regional accounting firms that enables them to stay independent while accessing the resources of a large CPA firm to help them grow. Ascend provides access to growth capital, robust talent acquisition, best-of-breed technology, a catalytic leadership system, shared back-office services, and modernized equity incentives so that firms can surmount today's industry challenges and reach their full potential. Founded in January 2023, the company attained revenues sufficient to qualify it as a Top 100 U.S. accounting firm within six months of operations.
For more information, visit ascendtogether.com.
About Alpine Investors
Alpine Investors is a people-driven private equity firm that is committed to building great companies by working with, learning from, and developing exceptional people. Alpine prides itself on fostering cultures where people value empowerment, diversity, fairness, integrity, and intellectual honesty. Founded in 2001, Alpine specializes in investments in companies in the software and services industries. Alpine has over $17 billion in AUM and has offices in San Francisco, New York, and Salt Lake City.
For more information on the firm, visit
Position Summary
Ascend is seeking a Director of Cybersecurity to build and run the enterprise cybersecurity program that protects sensitive client financial data across Ascend and its growing network of tax, audit, and client advisory services (CAS) partner firms. This individual will own security strategy, operations, and incident response; governance, risk, and compliance (NIST CSF 2.0, SOC 2 Type II, PCI DSS); identity and Zero Trust; AI governance and agentic security; and the security workstream of every acquisition — building a program designed to scale with the pace of acquisition without slowing the business down.
The Director of Cybersecurity will report to the Vice President, Technology Infrastructure & Cybersecurity.
Key Responsibilities
Cybersecurity Strategy, Program & Budget Leadership
- Own the enterprise cybersecurity strategy and multi-year roadmap, sequencing initiatives against partner-firm seasonality (tax deadlines) and the broader TST (Technology Stack Transition) integration timeline; present strategy and progress to the Vice President, Technology Infrastructure & Cybersecurity.
- Define, track, and report a concise set of security metrics and program-maturity indicators (NIST CSF 2.0 function scores, MTTD/MTTR, patch/vulnerability SLA attainment, phishing failure rate, control coverage) to executive leadership on a fixed cadence.
- Develop and manage the cybersecurity budget for tooling, MSSP/vendor contracts, and headcount, keeping security cost transparent and competitive across partner firms.
- Manage relationships and contracts with managed security service providers and security vendors (e.g., Microsoft, CrowdStrike), securing preferred pricing and early access to product roadmaps and preview programs.
Security Operations & Incident Response
- Own endpoint detection and response (CrowdStrike Falcon), security monitoring and log management, vulnerability management, and email security across Ascend and all partner firms.
- Serve as incident commander for cybersecurity incidents; maintain and test the incident response plan through regular tabletop exercises, and lead post-incident reviews and remediation to closure.
- Establish detection coverage, alert triage, and escalation standards, and determine the right outsourced-vs.-in-house MSSP model for 24x7 monitoring.
- Define vulnerability and patch SLAs by asset criticality and partner with infrastructure and service-desk teams to ensure remediation lands; engage a qualified external firm to conduct periodic penetration testing.
Governance, Risk & Compliance
- Own the governance, risk, and compliance program, including enterprise risk assessments and security policies and standards aligned to NIST CSF 2.0.
- Own the full SOC 2 Type II audit lifecycle — control design, evidence collection, and auditor management — sustaining a clean attestation through each annual observation period.
- Respond to client security questionnaires and due-diligence requests in support of partner-firm engagements, maintaining a reusable evidence library to shorten turnaround.
- Manage PCI DSS compliance for payment acceptance across Ascend and its partner firms, and own the third-party and vendor risk management program, including security review of new tools prior to adoption.
Identity, Zero Trust & AI Governance
- Define and enforce identity and access management standards in Microsoft 365 and Entra ID, including conditional access, multifactor authentication, and privileged access management.
- Advance the Zero Trust architecture across Zscaler ZIA/ZPA and the Azure Virtual Desktop environment managed through Nerdio, and ensure the security of tax production platforms (CCH Axcess, UltraTax) throughout the client-data lifecycle.
- Establish and own the AI governance program: acceptable use policy, AI tool and model risk assessment, data-protection standards for client data in AI systems, and an intake process that moves at the speed of the business.
- Define and enforce security controls for agentic AI, including identity and least-privilege access for AI agents, monitoring of AI tool usage, and security review of third-party AI vendors and integrations before they touch client data.
Acquisition Security, Team & Culture
- Lead cybersecurity due diligence for acquisitions, surfacing material risk before close, and own the security workstream of the TST process for newly acquired partner firms; build a repeatable integration playbook that shortens time-to-secure as acquisition volume grows.
- Build, manage, and develop a team of security engineers and analysts; set priorities, define performance standards, grow team capabilities, and hire A-players into key security seats.
- Own the security awareness training and phishing simulation program across all partner firms, tracking and driving down phishing failure rates and reporting human-risk metrics alongside technical metrics.
Qualifications
- 10+ years in information security, with 5+ years leading security teams or programs.
- Experience securing professional services, financial services, or other regulated environments handling sensitive client data; experience in a hypergrowth, acquisition-driven, multi-entity environment strongly preferred.
- Deep working knowledge of NIST CSF 2.0, SOC 2 Type II (including managing annual audit cycles), and PCI DSS.
- Familiarity with AI security and governance, including the NIST AI Risk Management Framework and securing agentic/LLM-based systems.
- Hands-on depth across EDR, SIEM, identity and access management, email security, and Zero Trust/SSE platforms.
- Demonstrated incident response leadership, including incident command and executive communication during active incidents.
- Strong vendor management and budget ownership experience.
- CISSP, CISM, or equivalent certification preferred; Azure security certifications a plus.
At Ascend, we provide a fair and equal employment opportunity for all candidates regardless of race, color, religion, national origin, gender, pregnancy, sexual orientation, gender identity/expression, age, marital status, disability, or any other legally protected characteristic. Ascend hires and promotes individuals solely based on qualifications for the position to be filled and business needs.
$195.42k - $370.53k
...consider a career in Advisory. KPMG is currently seeking a Director Insurance IT M&A - Due Diligence, Integration and Separation... ...applicationplatforms, IT solutions, systems, infrastructure, and cybersecurity Willingnessand ability to travel as needed to serve client...SuggestedH1bLocal area$195.42k - $370.53k
...consider a career in Advisory. KPMG is currently seeking a Director, Private Equity IT M&A –Due Diligence and Value Creation to... ...including cloud platforms, business applications, infrastructure,and cybersecurity; familiarity with the security, data privacy,...SuggestedH1bLocal area- ...technologies work together seamlessly throughout implementation and deployment. You'll collaborate with engineering, infrastructure, cybersecurity, testing, deployment, and Government stakeholders to support successful system integration, technical readiness, and production...SuggestedFull time
- ...expertise set us apart. We strive to be a trusted partner for organizations seeking to embrace digital transformation, bolster cybersecurity, streamline operations, leverage advanced audio-visual technologies, drive successful engineering and construction projects, and...SuggestedWork experience placementFor subcontractor
$176k - $282k
...programmatic guidelines set by the Program Manager and customer, and ensure delivery of secure, compliant, and mission‑ready IT and cybersecurity solutions. Candidates must have a TS/SCI clearance and hold a DoD 8140‑advance certification. Key Responsibilities include:...SuggestedContract workFor contractorsWork experience placementFor subcontractorShift work- ...Service-Disabled Veteran-Owned Small Business (SDVOSB) providing cybersecurity, Enterprise IT, and Technical Management services to federal... ...; all well partnering closely with executive leadership, Directors, and Program / Project Managers DUTIES AND RESPONSIBILITIES...Contract workFor contractorsLocal area
- ...Technical Program Director Location : Hybrid In VA or NY Employment Type: Full-Time Role Overview We're looking for a... ...Qualifications Background in ad tech, fraud prevention, or cybersecurity domains Experience managing infrastructure or data engineering...Full timeCasual workRemote workFlexible hours
- ...Zermount, Inc., is seeking a highly experienced Senior (SR) Program Manager (PgM) to lead the delivery of a strategic TSA cybersecurity contract focused on Governance, Risk, and Compliance (GRC) and Zero Trust (ZT) implementation. This client-facing role will serve...Contract workTemporary workFor contractorsWork at officeRemote work
$147k - $190k
...regularly with USPS senior IT and business stakeholders at the director and executive levels. About LMI LMI is a new breed of... ...impact the client. Ensure compliance with USPS and federal cybersecurity, authorization/ATO, data governance, AI risk-management,...Contract workFor contractorsFor subcontractorWork at office$169.1k - $303.3k
...partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect...Hourly payContract workTemporary workWork experience placementWork at officeLocal areaRemote work$122.21k - $211.32k
...design narratives Provide technical guidance and advisory support to personnel and partner contractors Ensure compliance with cybersecurity, data governance, and other risk management requirements Provide clear, regular status updates to senior leaders and LMI...Contract workFor contractorsWork at office- ...Technical Program Manager Zetier seeks an experienced Technical Program Manager to lead and manage $10m+ contracts within the cybersecurity and operations domains supporting Department of Defense (DoD) and Intelligence Community (IC). Responsibilities include managing...Contract workFor subcontractorWork at office
$146k - $234k
...supporting the client ~ Bachelor's degree in a technical field such as computer science, engineering, data science, mathematics, cybersecurity, or other related technical disciplines; an additional 4 years of relevant experience may be substituted in lieu of a degree....Contract workFor contractorsFor subcontractorShift work$90k - $120k
...Boutique law firm that represents some of the biggest names in technology on a range of Internet-related legal issues including cybersecurity, privacy, government surveillance, alternative data, and fantasy sports is looking for a Talent Acquisition Manager who is ready...Temporary work$100 per hour
...solutions architecture, or developer relations. Familiarity with mission-critical B2G SaaS, DoD software acquisition, or enterprise cybersecurity frameworks. Experience marketing an integrated product portfolio that combines software automation with edge deployment...Full timeRemote workHome officeFlexible hours$131k - $218.3k
...teams Monitor work execution within ServiceNow and support adherence to established operational processes Coordinate with cybersecurity and customer stakeholders to support compliance with security, governance, and Authority to Operate requirements A successful...Local area- ...and Admissions Manager (RAM) to bring our no-cost SkillBridge Cybersecurity Program to transitioning service members and guide them from... ...Frequent travel required • Reports to the SkillBridge Operations Director As the RAM, you will: Serve as the program's primary in-...Full timeRemote workFlexible hours
$152.7k - $294k
...strategic plan writing. Technical Depth: Broad and deep knowledge of information security domains and technologies – including cybersecurity architecture, risk management, identity and access management (IAM), incident response, and emerging threat mitigation...Summer holidayLocal areaFlexible hoursShift work$100k - $115k
...Technical Success Manager Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could detect and respond to novel, real-time...Work at officeLocal area3 days per week$220.6k - $293.4k
...Our Vision. To be the most trusted authority in high-assurance cybersecurity, enabling secure collaboration across every domain. Our... ...consider reasonable accommodation as required by law. Title Director, Government Relations Reports To Chief Corporate Affairs Officer...Permanent employmentFor contractorsWork at officeLocal areaFlexible hours- ...opportunities. ~ Other duties as assigned. Minimum Requirements: ~6+ years of combined experience within the cybersecurity or IT industry, preferably in a federal or enterprise software environment; With 4+ of those years' proven experience in a...
$138k - $160k
...management, preferably in a federal contracting environment. Demonstrated success managing delivery teams in IT infrastructure, cybersecurity, or other IT programs. Strong organizational skills and proficiency with collaboration tools (Microsoft Teams, SharePoint) and project...Work experience placement- ...to the Federal Government. BTI supports mission-critical programs across defense and civilian agencies, with core expertise in cybersecurity, program management, enterprise IT, and technical oversight services. Position Overview The Technical Delivery Manager will...Full timeContract work
- ...customers. An ideal candidate for this role will have a wide breadth of knowledge and experience with enterprise networks, systems, cybersecurity and sales engineering or technical account management. An outstanding candidate understands the challenges that administrators...
- ...Technical Director Information Technology & Cybersecurity Clinton , Maryland Aug 19, 2026 Choose 1st Choice — we care about our people, offer great benefits, and create real opportunities to grow. With 20+ years of nationwide staffing success, we're here to help you...Work at officeMonday to Friday
$175k - $270k
...Join us. Job Description The Digital Solutions Technical Director is responsible for leading application development, database... ...governance, and technical documentation. Support cybersecurity requirements and secure application development practices....Full timeWork at officeLocal areaWorldwideRelocation packageFlexible hours- ...Accenture Security helps organizations prepare, protect, detect, respond, and recover along all points of the security lifecycle. Cybersecurity challenges are different for every business in every industry. Leveraging our global resources and advanced technologies, we...Work experience placementLive inWork at officeLocal area
$127.79k - $212.99k
...apply now. We are currently seeking a Delivery Associate Director to join our team in Arlington, Virginia (US-VA), United States... ...missions. ~ Oversees network services, server administration, cybersecurity, and cloud platforms. ~ Ensures compliance with federal or...Temporary workWork at officeLocal areaRemote workFlexible hours- Halvik Corp delivers a wide range of services to 13 executive agencies and 15 independent agencies. Halvik is a highly successful WOB business with more than 50 prime contracts and 500+ professionals delivering Digital Services, Advanced Analytics, Artificial Intelligence...Immediate startFlexible hours
- ...center operations, information technology, software engineering, program management, strategic communications, engineering, and cybersecurity. We have also grown our customer base to include commercial clients. The company has used this experience to expand our service...Contract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Cybersecurity. Be the first to apply!
- grounds director Arlington, VA
- non profit director Arlington, VA
- director utilization management Arlington, VA
- director call center Arlington, VA
- director talent acquisition Arlington, VA
- director of outreach and engagement Arlington, VA
- director life science Arlington, VA
- legislative director Arlington, VA
- childcare director Arlington, VA
- director of administration Arlington, VA


