Who Our Client Is
Our client is a growing SaaS organization focused on innovation, operational excellence, and scalable technology solutions. They are committed to protecting information, strengthening security, and building trusted systems that support long-term business growth.
What Our Client Needs
Our client is seeking a Director of Information Security & Data Privacy to lead cybersecurity, governance, compliance, and privacy initiatives across the organization. This leader will develop security strategy while partnering across the business to strengthen risk management and protect critical assets.
Who You Are
You are a hands-on cybersecurity leader who enjoys balancing strategy with execution. You have deep expertise in information security, privacy, and compliance, and you communicate effectively with technical teams, business leaders, and executive stakeholders.
What You’ll Do
In this role, you will lead enterprise cybersecurity, privacy, governance, and compliance initiatives while helping the organization strengthen its overall security posture.
- Develop and enhance cybersecurity strategies, controls, and security operations
- Lead identity and access management, endpoint security, vulnerability management, threat detection, and incident response
- Partner with engineering and product teams to improve cloud and application security
- Lead privacy and data governance programs across the organization
- Manage and improve compliance initiatives including SOC 2, GDPR, CCPA, ISO 27001, and related frameworks
- Develop security metrics, KPIs, reporting, and executive dashboards
- Conduct risk assessments and recommend practical mitigation strategies
- Lead and mentor information security team members while promoting operational excellence
- Serve as a trusted advisor to executive leadership on cybersecurity, privacy, and enterprise risk
This role includes leadership responsibilities across security and compliance functions and requires the ability to manage multiple priorities in a fast-paced SaaS environment. This position is hybrid and based in the Philadelphia suburbs.
What You’ll Need
- 10+ years of progressive information security leadership experience
- 5+ years in a director-level or senior leadership role
- Experience leading security programs within a high-growth SaaS or cloud-native organization
- Strong expertise in cloud security, identity management, endpoint security, vulnerability management, incident response, and security operations
- Deep understanding of cybersecurity frameworks, governance, risk management, and security best practices
- Experience managing SOC 2, ISO 27001, GDPR, CCPA, and related compliance programs
- Proven experience building and leading high-performing technical teams
- Strong communication, project management, and cross-functional leadership skills
- Experience with AWS, Azure, Okta, Microsoft 365, cloud security platforms, and related technologies preferred
- CISSP, CISM, or similar security certification is a plus
- Experience supporting remote or hybrid work environments preferred
- Experience helping organizations scale or supporting M&A integration is a plus
What They Offer
- Opportunity to shape and mature enterprise cybersecurity and privacy programs
- High-impact leadership role with executive visibility
- Collaborative and fast-moving work environment
- Comprehensive benefits package
- Medical, dental, and vision coverage
- 401(k) with company match
- Generous paid time off and company holidays
- Professional development and career growth opportunities
Equal Opportunity Statement
Our client believes that diversity fuels innovation, strengthens teams, and drives success. They are committed to fostering a workplace where every individual—regardless of background—feels valued, respected, and empowered to thrive. Discrimination or harassment of any kind is strictly prohibited.
Our client does not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, ethnicity, age, disability, veteran status, marital status, or any other characteristic protected by applicable laws. Their commitment extends beyond compliance; they actively cultivate an inclusive culture where diverse perspectives are welcomed, and every employee has an equal opportunity to contribute and succeed.