1

Head Of Devsecops Jobs (NOW HIRING)

Head Of Security Global financial rails are undergoing a once-in-a-generation transformation ... You will manage our Senior DevSecOps Engineer, work closely with Engineering, Compliance, Legal ...

... DevSecOps specialists who value independence, want to make their own hours, work for themselves and ... The Role Halborn is looking for a Head of BD & Strategic Partnerships to build and scale strategic ...

Permanent Build a brilliant future with Hiscox Head of Platform: Traded Location: Boston, MA ... DevSecOps. Establish and enforce engineering standards, code quality metrics, and performance ...

You will manage our Senior DevSecOps Engineer, work closely with Engineering, Compliance, Legal ... Adolfo Fernández - Head of People Ops * Gloria Alogo - People Ops, Onboarding & Benefits ⚠ ...

Senior Azure DevSecOps Engineer

Chicago, IL · Remote

$118K - $161K/yr

Senior Azure DevSecOps Engineer Location: Chicago, IL, 60603, USA Duration: Long\-term contract ... Understanding of zero\-trust network design: Private Endpoints, VNet integration, NSG\/UDR patterns.

New

Digital Engineering Head

Santa Clara, CA · On-site

$65.75 - $88/hr

... practices (DevSecOps, CI/CD, Cloud-native, API-first, etc.). Practice & Capability Building ... Deep understanding of modern architecture paradigms - microservices, APIs, event-driven systems ...

Strong understanding of GNU Radio framework \n * Familiarity with DevSecOps principles \n * Hands\-on experience with CI\/CD tools\- Jenkins, GitLab CI, CircleCI \n * Proficient in Docker for ...

Showing results 21-40

Head Of Devsecops information

See salary details

$22K

$96.6K

$221K

How much do head of devsecops jobs pay per year?

As of Aug 6, 2026, the average yearly pay for head of devsecops in the United States is $96,611.00, according to ZipRecruiter salary data. Most workers in this role earn between $50,000.00 and $125,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by a Head of DevSecOps when integrating security practices into fast-paced development environments?

A Head of DevSecOps often encounters the challenge of balancing security with the need for rapid software delivery. Integrating security measures without slowing down development requires close collaboration with both development and operations teams, as well as fostering a culture where security is seen as everyone's responsibility. Overcoming resistance to change and ensuring that automated security tools are seamlessly embedded into CI/CD pipelines are also key hurdles. Success in this role relies on strong communication skills, up-to-date technical knowledge, and the ability to drive organizational buy-in for secure development practices.

What does a Head of DevSecOps do?

A Head of DevSecOps is responsible for overseeing the integration of security practices into the DevOps process within an organization. This role involves leading teams to ensure that security is considered at every stage of the software development lifecycle, from design and coding to deployment and maintenance. They develop and enforce security policies, collaborate with development and operations teams, and implement tools to automate security checks. Their goal is to reduce security risks while maintaining development speed and efficiency.

What are the key skills and qualifications needed to thrive as a Head of DevSecOps?

To thrive as a Head of DevSecOps, you need deep expertise in cybersecurity, cloud infrastructure, software development, and a strong understanding of DevOps methodologies, often supported by a degree in computer science or a related field. Familiarity with tools such as CI/CD pipelines (e.g., Jenkins), security scanning platforms, containerization (Docker, Kubernetes), and certifications like CISSP or AWS Certified Security are highly valued. Exceptional leadership, communication, and problem-solving skills set top candidates apart, enabling them to guide cross-functional teams and foster a culture of security. These skills are crucial for integrating security seamlessly into development processes, reducing risks, and ensuring organizational resilience in an evolving threat landscape.
More about Head Of Devsecops jobs
What cities are hiring for Head Of Devsecops jobs? Cities with the most Head Of Devsecops job openings:
What are the most commonly searched types of Of Devsecops jobs? The most popular types of Of Devsecops jobs are:
What states have the most Head Of Devsecops jobs? States with the most job openings for Head Of Devsecops jobs include:
Infographic showing various Head Of Devsecops job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 80% Full Time, 16% Part Time, 1% Temporary, 1% Contract, and 1% Nights. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution, with an average salary of $96,611 per year, or $46.4 per hour.

Head of Security (NYC / MIA)

Crossmint

Manhattan, NY • On-site

Other

Re-posted 25 days ago


Job description

Head Of Security

Global financial rails are undergoing a once-in-a-generation transformation. Instant settlement. Programmable. Agent-first. Crossmint is the infrastructure helping companies build for that future.

We are the leading all-in-one stablecoin and wallet infrastructure platform, enabling fintechs, enterprises, and agentic platforms to integrate stablecoin rails with speed, compliance, and scale. Crossmint provides everything enterprises need to ship smart financial rails, including smart wallets, cross-chain stablecoin orchestration, on/offramps, token checkout, and more, all through a single developer-friendly API.

Trusted by more than 40,000 clients including global leaders like MoneyGram, Western Union, and Paga to nation states like the Marshall Islands, Crossmint powers stablecoin flows that move billions from cross-border remittances, global payroll, to the world's first digital UBI program.

MiCA-authorized, PSD2-licensed, and SOC2 Type II certified, Crossmint serves 150+ countries globally across 50+ blockchains. Backed by Ribbit Capital, Franklin Templeton, NYCA, First Round, and Lightspeed Faction.

We're building the infrastructure for the era of programmable finance. Join us!

Location: NYC or Miami. Hybrid office setting.

Type of employment: Full-time

Seniority: 8+ years in security, with at least 3 years in a security leadership or program ownership role.

Compensation: Base salary range: 210,000 - 250,000 USD

Note: This range reflects base salary only. Final level and compensation are determined during the interview process based on experience and fit.

Stock options are part of every full-time offer, granted on top of the base salary range above. We want everyone here to be a genuine stakeholder in what we're building.

We conduct two performance reviews annually. The first addresses performance ratings, bonuses, and promotions. The second encompasses these elements along with salary adjustments reflecting inflation and market conditions.

About The Role

We are hiring a Head of Security to build and own Crossmint's security function as we enter a new phase of scale and regulatory maturity. This is a player-coach role: you will set strategy and own the program at the highest level, while remaining deeply capable of operating hands-on when the situation demands it. No delegation without comprehension.

This role carries wide scope. You will be responsible for Crossmint's overall security posture, from application and infrastructure security to corporate IT, from vendor and third-party risk to regulatory audit readiness. You will manage our Senior DevSecOps Engineer, work closely with Engineering, Compliance, Legal, and Ops, and our external security partners, serving as the internal authority on all things security for the leadership team.

Crossmint operates at the intersection of fintech and crypto infrastructure under a growing regulatory framework (SOC 2, DORA, MiCA), and an increasingly adversarial environment with AI. Security at Crossmint is not a cost center: it is a product differentiator and a requirement to operate. This role reflects that.

Responsibilities

Program Ownership and Strategy

  • Define and own Crossmint's security strategy, including roadmap prioritization, risk posture, and security investment decisions.
  • Operate fluidly across scope levels: board-level risk briefings one hour, hands-on threat model review the next.
  • Establish and maintain a security program that scales with the company, not one that creates drag on product velocity.
  • Report to co-founders on security posture, risk landscape, and program progress.

Technical Oversight and Hands-On Contribution

  • Maintain deep technical fluency across cloud security (AWS primary), application security, CI/CD security, and endpoint and corporate IT.
  • Review architecture decisions, new product features, and infrastructure changes for security implications before they ship.
  • Conduct or lead threat modeling exercises across product and infrastructure domains.
  • Step in as a hands-on practitioner during incidents, complex vulnerability analysis, or high-stakes security reviews where direct expertise is required.

Audit and Compliance Leadership

  • Own security's relationship with auditors, regulators, and compliance frameworks including SOC 2 Type II, DORA, and MiCA-related security requirements.
  • Lead audit preparation cycles: scope definition, evidence readiness, control documentation, and auditor-facing communication.
  • Maintain audit-ready posture year-round, not as a sprint before each audit window.
  • Partner with the Compliance function to ensure security controls satisfy both regulatory requirements and practical risk management objectives.

Third-Party and Vendor Risk

  • Own the security review process for new vendors, integrations, and third-party relationships.
  • Manage relationships with external security partners including our third-party audit firms and 24/7 incident response provider.
  • Define and oversee our external penetration testing and security assessment program.

Team and Stakeholder Leadership

  • Manage and develop the Senior DevSecOps Engineer, with the expectation of growing the security team over time.
  • Serve as the internal authority on security for Engineering, Product, Compliance, Legal, and People Ops.
  • Drive security awareness and culture across the company without creating friction that slows down product teams.
  • Communicate risk clearly to non-technical leadership, translating technical realities into business decisions.
About You

Must Haves

  • 8+ years in security, with at least 3 years in a security leadership or program ownership role.
  • Deep technical fluency in cloud security, application security, and CI/CD security. This is not a policy-only role.
  • Demonstrated experience owning a security compliance program end-to-end through at least one major audit cycle: SOC 2 Type II strongly preferred.
  • Software engineering degree or software engineering experience that makes up for it.
  • Deep familiarity with the latest AI / agentic tools.
  • Prior experience in fintech, payments, or similarly regulated industries, where concepts like treasury management aren't foreign and security failures carry direct consequences for licensing, customer trust, and business continuity.
  • Strong written and verbal communication skills, including the ability to brief executive and board-level stakeholders on risk without unnecessary jargon.
  • Experience managing or mentoring security engineers.
  • Ability to work flexible hours if an incident arises.

Nice to Haves

  • Familiarity with DORA, MiCA, or EU financial services regulatory frameworks.
  • Experience with crypto or blockchain security threat models.
  • Track record of building a security function from an early or formative stage.
  • CISSP, CISM, or equivalent certification.

How to Succeed

  • Switch gears from a regulatory gap analysis in the morning to reviewing a GitHub Actions configuration in the afternoon without losing altitude on either.
  • Build systems and programs that stand on their own — not policies on a Google Doc, but processes that actually get done across the org.
  • Earn the trust of engineering teams by being useful, not obstructive.
  • React to incidents quickly, mitigating impact fast, quickly root causing them, and ensuring the company learns for the next.
  • Proactively prevent incidents by staying up to date on the latest threats, having a clear picture of the company's weaknesses, and being able to deploy defenses at scale.
  • Manage up: keep leadership informed and earn their trust by competence when executing and clarity when communicating.
  • Hire and develop security talent with the same rigor they apply to technical problems.

They should not be someone who:

  • Requires a large team to be effective. This role starts lean.
  • Manages from a distance without remaining technically sharp.
  • Treats compliance as the ceiling of the security program rather than the floor.
Why Join Crossmint?

This is an opportunity to own the security foundation of a company building core infrastructure for the next generation of financial systems, at a moment when that infrastructure is being held to the regulatory standards of traditional finance