Head of IT & Security
$195k - $220kOpenEd
About OpenEd
At OpenEd, we’re opening the world to every learner. With over 100,000 students served and growing rapidly, families trust us as a partner to the most precious thing in their lives, their children. Our vision: a future where education is no longer constrained by geography, rigid models, or outdated systems. Our mission: to give every student customized, world-class education and resources, empowering families and opening millions of doors for learners across the country.
Our Culture (The Foundation of Everything We Do)
Culture at OpenEd is intentional. It’s defined by what we promote—and what we tolerate. Our latest eNPS (employee net promoter score) of 76 places OpenEd in the top .1% of technology companies. Our values aren't just words; they are non-negotiable principles that guide every decision:
Customer First – Obsessed with delivering value; we fight tirelessly for our learners and families.
Hard Choices, Easy Life – Face challenges directly, swiftly, and transparently.
I Did > We Should – Action over theory; bring experiments, not just opinions.
Learn Out Loud – Share your growth openly; feedback is a gift, ego is the enemy.
Prioritize Ruthlessly – Excellence in the few critical areas over mediocrity everywhere.
Fast AND World Class – Speed doesn’t compromise quality.
Strong Opinions, Weakly Held – Advocate passionately, adjust readily.
Make Others Famous – Elevate your colleagues, partners, and community.
We're currently accepting applications from those living in: AR, AZ, CO, FL, GA, ID, IN, IL, IO, KS, MA, MD, MN, MO, MT, NC, NM, NV, NY, OH, OK, OR, RI, SC, TN, TX, UT, VA, WA, WI, WV.
About the Role
As the founding Security Engineer at OpenEd, you'll join a small, high-impact team changing the nature of education. This is a truly unique opportunity to be the founding member of our security team, and to ensure we earn the trust of families that their student's education — and data — is safe with us.
You'll own the IT, identity, and compliance programs directly, with a broad range of responsibilities and the autonomy to tackle them as you see fit. We serve over 100,000 students, which means the security bar isn't theoretical: it's the reason families keep trusting us with their kids.
Your Immediate Impact
You'll own four programs end to end:
Identity & access: SSO/SAML, MFA, provisioning, a least-privilege access model, and reliable onboarding/offboarding.
Corporate/IT security: Endpoint/MDM, SaaS and vendor risk, the phishing and awareness program, and incident response playbooks.
Compliance: Drive SOC 2 (Type II), map FERPA/COPPA/state privacy controls, and own audits and their outcomes.
Application security: Contribute to key AppSec initiatives (SAST/DAST/SCA in CI), triage and drive remediation with engineers, and run external pen test audits.
Success Metrics:
In your first 12 months:
Compliance: SOC 2 Type II readiness completed, gaps remediated, and the audit window passed with no material exceptions.
Identity: Every employee and contractor on SSO with MFA enforced, access granted by least-privilege role, and onboarding/offboarding running on automated provisioning with same-day deprovisioning.
Endpoint coverage: Full MDM enrollment across the fleet with enforced, documented baselines.
Vulnerability management: SAST/DAST/SCA running in CI, severity-based remediation SLAs consistently met, and an annual external pen test with findings tracked to closure.
Readiness: Incident response playbooks documented and exercised, and a phishing/awareness program running with measurably improving results.
Privacy: FERPA, COPPA, and state privacy requirements mapped to controls with evidence collection that doesn't depend on a fire drill.
Who You Are:
6+ years in security, ideally in a regulated vertical (finance, education, healthcare).
Hands-on across IT/identity and security operations — not just advisory.
You've taken an org through SOC 2 (or ISO 27001).
Experienced at establishing and driving human-centered processes for ensuring security across an organization.
Strong judgment on risk: you know what actually matters and what's theater.
Deeply technical with excellent communication skills — able to work with software engineers and elementary school teachers equally well.
Hands-on experience designing or running a zero-trust environment (e.g., identity-based access, continuous verification, no implicit network trust).
Bonus: Edtech/FERPA/privacy background, CISSP, or OSCP.
This Role Will Excite You IF:
You'd rather automate a security control than police it manually.
You design systems that are robust to inevitable human failure rather than aiming for perfect human compliance.
You want the full surface area — identity, IT, compliance, and AppSec — instead of a narrow slice of someone else's program.
A blank slate energizes you more than an inherited playbook does.
You want the thing you're protecting to matter: the education and personal data of 100,000+ students.
Team & Autonomy:
You are the security team. You'll set the strategy, choose the tooling, and decide the sequencing, partnering closely with engineering, IT, and legal as you go. Expect wide latitude and very little process standing between you and shipping a control — along with the accountability that comes with being the person who owns the outcome.
Reporting Line:
This role reports directly to the CTO.
EEO Statement
OpenEd is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
OpenEd participates in E-Verify.
- ...Chief Information Security Officer (CISO) About the Company Respected public research university Industry Higher Education... ...partner, working closely with campus leaders, faculty researchers, IT professionals, and administrative partners to shape security practices...Suggested
- Garmin International in the Kansas City area seeks a full-time Cyber Security Vulnerability Analyst 2 to operate independently configuring and performing vulnerability scans and assessments to identify and remediate risk across networks, systems, and applications. You...SuggestedFull time
- Overview We are seeking a full-time Cyber Security Vulnerability Analyst 2 at Garmin's U.S. headquarters in the Greater Kansas City area. In this role, you will be responsible for operating independently to configure and perform vulnerability scanning and assessments to...SuggestedFull timeWork experience placement
$100k - $140k
...you'll make an impactAs a vCISO, you will serve as a fractional security leader and trusted advisor to Ntiva's GovCon clients, owning the... ...closure. (Ntiva prepares and maintains clients for certification; it is not a C3PAO and does not perform the certifying assessment.)...SuggestedTemporary workRemote workMonday to Friday- cFocus Software seeks a Information System Security Officer (ISSO) to join our program supporting the United States Air Force. This position is onsite with the onsite location being in Ellsworth, South Dakota. This position requires a TS/SCI SSBI clearance. Qualifications...Suggested
- Garmin is seeking a full-time Cyber Security Vulnerability Analyst 2 at its U.S. headquarters in the Greater Kansas City area. You will independently configure and perform vulnerability scanning to identify risks to networks, OS, applications, and other information system...Full time
$105.4k - $207.8k
...Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements focused on Google SecOps, threat...Local areaVisa sponsorship$222k - $304.5k
...shared success where your work truly matters.Job SummaryYour CareerAs a Prisma AIRS business unit aligned Domain Consultant for AI Security, you provide technical expertise and guidance in securing customers' end to end AI adoption. You will define technical solutions...Full timeRemote workVisa sponsorshipWork visa- ..., integrations, and retirement. Ensure technology systems remain secure, reliable, scalable, documented, and aligned with business requirements... ...technology governance, standards, policies, and procedures. IT Service Management & Operations Lead IT support operations with a...Full timeTemporary workWork at office
$215k - $250k
Chief Revenue Officer— Waste Solution Services (WSS) - New York Location: New York, NY | Travel: Occasional travel as needed | Reports to: Managing Partners | Compensation: $215k-250k (DOE) + bonus Travel: required Who We Are Waste Solution Services (WSS) helps...Remote work- ...those who dedicate their work to serving the public. Why You'll Love Working Here Are you an accomplished IT leader with a passion for building reliable, secure technology environments and developing high-performing teams? Do you thrive on solving complex operational...
$134.5k - $265.1k
...knowledge of Google SecOps, threat detection engineering, SIEM, SOAR, and automation development. You will design, implement, and optimize secure, outcome-focused solutions while collaborating across teams to deliver reliable and efficient security operations capabilities. In...Local areaVisa sponsorship- ...) is looking for a Cybersecurity GRC Manager to join our global IT capability. This is a unique opportunity to build and scale a global... ..., and operations to meet customer, regulatory, and contractual security expectations while embedding security considerations into...Contract workFor subcontractorFlexible hours
- ...3 to join their dynamic team. As a Vulnerability Assessment Analyst and Penetration Tester 3, you will be an integral part of the Security Operations team supporting critical vulnerability assessments and penetration testing initiatives. The ideal candidate will demonstrate...Weekly payTemporary workRemote workFlexible hours
- ...Information Systems & TechnologyJob Number: 189581Apply: JobThe Cyber Security Manager guides Koch Ag & Energy Solutions (KAES) in managing... ..., and confident technology adoption. This role partners across IT, Operations, Accounting and Commercial capabilities to keep...Flexible hours
- ...Information Security ManagerThe Information Security Manager serves as SOTG's senior security leader, responsible for the strategic direction... ...environment.Serve as the primary security advisor to the VP of IT and senior leadership on cyber risk, regulatory compliance, and...Contract workWork at office
- A leading organization in cybersecurity is seeking a skilled Vulnerability Assessment Analyst and Penetration Tester 3 in Overland Park, Kansas. You will support technical vulnerability assessments and coordinate penetration testing activities. The ideal candidate will ...Remote job
- ...partner to Optiv’s clients. By combining advanced business and security practitioner knowledge, the Principal AI Cybersecurity Advisor designs... ...planning, forecasting, and pipeline management activities as it pertains to growing Optiv pipeline, closed business, and...Full timeLocal areaRemote workWork from home
- ...Founded in 2001, family owned and operated AireSpring is a leading Provider of Cloud Communications, Managed Connectivity and Managed Security which has earned its stellar reputation by taking service and support to the next level, delivering an award-winning customer...Full timeInterim roleRemote workWorldwide
- ...Analyst The Cybersecurity Analyst operates as a cross-functional security role responsible for integrating Security Operations (SIEM/SOC),... ...mitigation. Research emerging technologies which support IT security enhancement and development efforts Monitors industry...Work at officeLocal area
- The Joint Chiropractic is seeking a dedicated full-time Chiropractor for their Olathe, KS location. This role focuses on delivering exceptional patient care in a supportive environment. Responsibilities include consulting with patients, performing manual adjustments, and...Full time
- Chiropractor - Full Time Location: Olathe, Ks A better way to deliver care starts here! The Joint Chiropractic is revolutionizing access to care by delivering high-quality, affordable chiropractic services in a convenient retail setting. As the largest operator, manager...Full timeImmediate start
$134.5k - $265.1k
Position Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology...Local areaVisa sponsorship$425k
...common goal of elevating science and service for rare patients. Position Summary: The Chief Scientific Officer (CSO) reports to the EVP, Head of Research & Development and Chief Medical Officer and serves as a member of the Executive Team. As the Company\'s foremost...Temporary workRemote work- Travere Therapeutics in San Diego seeks a Chief Scientific Officer who will join the executive team to align scientific strategy with portfolio priorities and drive innovation from discovery through commercialization. The CSO will lead Research and Technical Operations...
- ...products, systems, and customer data while supporting the company’s security and compliance initiatives. The team helps build a secure... ...development lifecycle process Government or Department of Defense IT experience or clearance Remote Work Requirements: Must...Temporary workWork at officeRemote workWorldwideHome officeMonday to FridayShift workNight shift
- Phase2 Technology is looking for a Cyber Incident Response Business Development Senior Manager to lead efforts in expanding their incident response business. This role involves engaging with key stakeholders, managing strategic relationships, and driving business development...
$18.5 per hour
...Job Description: GardaWorld Security Services is Now Hiring a Response Security Officer! Ready to suit up as a Special Response/... ...recalls, transfers, leaves of absence, compensation, and training. It is also the policy of GardaWorld Security Services not to honor...Hourly payDaily paidCasual workLocal areaImmediate startAll shiftsFlexible hoursDay shift$96.91k - $227.12k
...consider candidates who live greater than 100 miles from the office for the remote option.)**Job Summary**ABOUT DATABEE DataBee ( is a security data platform focused on Continuous Controls Monitoring (CCM) and cyber risk reporting aligned to NIST, CIS, and PCI. We help...Work experience placementCasual workWork at officeLocal areaRemote workWorldwide- Axiom Healthcare Services in Olathe, KS is seeking an experienced IT Support Technician to join our technology team. Part-time, 20... ...maintaining IT infrastructure, end-user support, and enterprise security. You will work on networking, cybersecurity, deployment of enterprise...Part time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Head of IT & Security. Be the first to apply!





