Senior Director, Security

TripleLift

New York (NY)

On-site

USD 165,000 - 220,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, Dental & Vision Plans
Flexible PTO
401k w/ employer match

Job summary

TripleLift is seeking a Director/Senior Director of Security in New York, responsible for shaping and executing our security strategy across the advertising platform and cloud infrastructure. This role requires leading a team of security engineers, managing security operations, and overseeing compliance programs.

The ideal candidate will have extensive experience in information security, particularly in AWS cloud security, and a proven ability to influence stakeholders. Benefits include medical plans, flexible PTO, and a 401k with employer match.

Qualifications

  • 8+ years of progressive experience in information security, with at least 3 years in a leadership role.
  • Demonstrated track record building or significantly maturing a security program.
  • Strong background in security operations and incident response.
  • Experience embedding security into DevSecOps workflows.

Responsibilities

  • Define and execute security strategy and program priorities.
  • Lead, grow, and mentor a team of security engineers.
  • Oversee security monitoring, threat detection, and incident response.
  • Communicate security posture and risks to executive leadership.

Skills

AWS Cloud Security
Security Operations
Risk Management
Compliance Frameworks (SOC 2, ISO 27001)
DevSecOps Workflows
Team Leadership
Incident Response
Communication Skills

Education

Bachelor's degree in Computer Science or Information Security
Security Certifications (CISSP, CISM, CISA)

Job description

Overview

The Director / Senior Director of Security plays a critical role in shaping and executing TripleLift's security strategy across our programmatic advertising platform, cloud infrastructure, and enterprise environment. In this position, you will partner closely with Engineering, Product, Legal, and executive leadership to build a mature, scalable security program that protects our customers, partners, and data—while enabling the business to move fast. This is an exciting opportunity for a security leader who wants to own the full security roadmap, grow and mentor a high-performing team, and drive a culture of security‑by‑design across a complex, cloud‑native adtech environment.

Responsibilities
  • Define and execute TripleLift's security strategy, roadmap, and program priorities in alignment with company objectives, risk appetite, and regulatory requirements.
  • Lead, grow, and mentor a team of security engineers spanning cloud/infrastructure security, GRC, and security operations, fostering a collaborative and high‑accountability culture.
  • Own the enterprise security architecture across AWS cloud environments, CI/CD pipelines, and corporate infrastructure—ensuring systems are designed, deployed, and maintained according to security best practices.
  • Drive the maturity of TripleLift's compliance and governance program, maintaining and expanding certifications and frameworks including SOC 2, PCI, NIST CSF, ISO 27001, and HITRUST.
  • Oversee security monitoring, threat detection, and incident response capabilities, including SIEM and EDR tooling, incident response playbooks, and post‑incident reviews.
  • Partner with Engineering and DevOps to embed security into the SDLC—integrating automated security controls into CI/CD pipelines and promoting secure‑coding standards across development teams.
  • Lead vulnerability management and risk assessment programs, including regular audits, penetration testing, and remediation tracking across cloud and application environments.
  • Serve as a key stakeholder and subject matter expert for security‑related vendor evaluations, customer due diligence questionnaires, and contract reviews.
  • Communicate security posture, risks, and program progress to executive leadership and the board, translating technical complexity into clear business context.
  • Cultivate a company‑wide security awareness culture through training, policy development, and ongoing education programs.
Education & Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related technical field, or equivalent professional experience.
  • Relevant security certifications strongly preferred: CISSP, CISM, CISA, or equivalent.
  • 8+ years of progressive experience in information security, with at least 3 years in a leadership or management role overseeing security engineers or analysts.
  • Deep expertise in AWS cloud security—including IAM, VPC architecture, logging/monitoring, and cloud‑native security tooling—with hands‑on implementation experience.
  • Demonstrated track record building or significantly maturing a security program, including ownership of compliance frameworks such as SOC 2, PCI DSS, NIST CSF, or ISO 27001.
  • Strong background in security operations: SIEM/EDR management, incident response, threat hunting, and vulnerability management.
  • Experience embedding security into DevSecOps workflows, including IaC (Terraform, CloudFormation), CI/CD pipeline security controls, and secure‑coding remediation programs.
  • Proven ability to influence cross‑functional stakeholders and communicate security risk in business terms to non‑technical audiences including executive leadership.
  • Experience in a fast‑paced, cloud‑native environment; adtech, martech, or SaaS industry background a plus.
  • Excellent written and verbal communication skills with a track record of building strong relationships across engineering, legal, finance, and go‑to‑market teams.
Benefits
  • Medical, Dental & Vision Plans
  • Flexible PTO
  • 401k w/ employer match
Salary

$165,000 — $220,000 USD

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Director of Security & Cloud Strategy
Senior Director of Security & Cloud Strategy

TripleLift • New York (NY)

On-site
USD 165,000 - 220,000
Medical, Dental & Vision Plans
Flexible PTO
401k w/ employer match
Senior Application Security Engineer
Senior Application Security Engineer

TripleLift • London (KY)

On-site
USD 140,000 - 180,000
Senior Application Security Engineer
Senior Application Security Engineer

TripleLift • New London (NY)

On-site
USD 125,000 - 165,000
Medical, Dental & Vision Plans
Flexible PTO
401k with employer match
Senior Application Security Engineer
Senior Application Security Engineer

TripleLift • New York (NY)

On-site
USD 180,000 - 230,000
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Senior AppSec Engineer: Drive Secure Software at Ad Tech Scale
Senior AppSec Engineer: Drive Secure Software at Ad Tech Scale

TripleLift • New London (NY)

On-site
USD 125,000 - 165,000
Medical, Dental & Vision Plans
Flexible PTO
401k with employer match
Security Lead
Security Lead

Taktile • United States

On-site
USD 180,000 - 260,000
Equity package
Competitive compensation
Self-development budget
+1
Senior Staff Engineer
Senior Staff Engineer

Socket.dev • New York (NY)

On-site
USD 150,000 - 190,000
Medical, Dental & Vision plans
Flexible PTO
401k with employer match
Head of Security
Head of Security

Tatari • San Francisco (CA)

Hybrid
USD 200,000 - 250,000
Health insurance
Equity compensation
401K
+9
Director, Security Engineering (Remote - US)
Director, Security Engineering (Remote - US)

Jobgether • United States

Remote
USD 180,000 - 260,000
Industry-competitive salary with performance-based bonus
Equity plan
Flexible time off
+4