VP, Security Remote, United States

Stord

Northern (KY)

Hybrid

USD 200,000 - 350,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Stord is seeking a seasoned VP of Security to define and drive the company’s security strategy and multi-year roadmaps, aligning with NIST CSF 2.0 and certifications. You will stand up 24/7 detection and response, lead security engineering across SIEM/SOAR, EDR/XDR, API security, and secrets management, and own security diligence for mergers and acquisitions while partnering with Product and Engineering.

You’ll also spearhead executive risk discussions, build governance across cloud and on-prem

Qualifications

  • 12+ years in security, including leadership at a SaaS/platform
  • 5+ years leading a security function
  • Cloud-native security at scale (AWS/GCP, Kubernetes, microservices, CI/CD, API security)
  • Hands-on M&A security diligence & integration
  • Track record building a program to NIST CSF, SOC 2, ISO 27001
  • Experience with 24/7 detection and response (in-house, MDR, or hybrid)
  • Executive/Board communication on risk and controls
  • Judgment on risk vs. spend for controls

Responsibilities

  • Set security strategy and multi-year roadmap per NIST CSF 2.0
  • Lead 24/7 detection and response program and evolve in-house capabilities
  • Own security engineering stack including SIEM/SOAR, EDR/XDR, Cloud posture, API security, secrets management
  • Oversee M&A security diligence and integration with target environments
  • Partner with Product/Engineering for secure-by-default design across logistics and commerce
  • Lead resilience through business continuity and disaster recovery planning
  • Grow and mentor a security team spanning multiple disciplines

Skills

Security leadership
Security strategy
Cloud-native security
M&A security diligence
NIST CSF/SOC 2/ISO 27001
24/7 detection & response
Executive/Board communication
Budget/prioritization

Tools

SIEM/XDR/EDR
Cloud security tooling
SAST/DAST

Job description

VP, Security page is loaded## VP, Securitylocations: Remote, United Statestime type: Full timeposted on: Posted 2 Days Agojob requisition id: JR103151# **ABOUT STORD**## Stord is The Consumer Experience Company, powering seamless checkout through delivery for today's leading brands. Stord is rapidly growing and strategically scaling teams across the entire company, and seeking energetic experts to help us achieve our mission.## By combining comprehensive commerce-enablement technology with high-volume fulfillment services, Stord provides brands a platform to compete with retail giants. Stord manages over $10 billion of commerce annually through its fulfillment, warehousing, transportation, and operator-built software suite including OMS, Pre- and Post-Purchase, and WMS platforms. Stord is leveling the playing field for all brands to deliver the best consumer experience at scale.## With Stord, brands can increase cart conversion, improve unit economics, and drive sustained customer loyalty. Stord's end-to-end commerce solutions combine best-in-class omnichannel fulfillment and shipping with leading technology to ensure fast shipping, reliable delivery promises, easy access to more channels, and improved margins on every order.## Hundreds of leading DTC and B2B companies like True Classic, Native, Seed Health, goodr, Sundays for Dogs, and more trust Stord to deliver industry-leading consumer experiences on every order. Stord is headquartered in Atlanta with facilities across the United States, Canada, and Europe. Stord is backed by top-tier investors including Kleiner Perkins, Franklin Templeton, Founders Fund, Strike Capital, Baillie Gifford, and Salesforce Ventures.This is a build role, not a maintain role. You'll inherit a real foundation - SOC 2 Type II attestation across our core platforms, a public Trust Center, EU-U.S. Data Privacy Framework certification, and a small, capable team - and you'll own what comes next: the strategy, the team, the technical stack, and the operating rhythm that carry Stord through international expansion, continued M&A, AI deployment across the product, and eventual public-market scrutiny.## ****What You'll Own********Strategy and governance.****### **Set the security strategy and the multi-year roadmap. Run our program against NIST CSF 2.0 and expand audit scopes and certifications. Establish AI governance across our models, agents, and Stord Labs work.******Security operations.****### **Stand up 24/7 detection and response, initially through an MDR partnership, and progressively bring detection engineering in-house. Own incident response end to end - playbooks, on-call, tabletop exercises with the executive team, and the postmortems that actually change something.******Security engineering.****### **Build and operate the technical stack: SIEM/SOAR, EDR/XDR, cloud security posture management, API security, secrets management, and vulnerability management. Harden CI/CD across a 200+ person engineering organization - signed commits, SBOM generation, dependency and secrets scanning, SAST/DAST in the pipeline.**###****M&A security integration.****### **Stord acquires companies, and every deal brings inherited systems, credentials, and technical debt. You'll own security diligence on future targets and the integration playbook that gets acquired environments to our standard on a predictable timeline.******Product and customer trust.****### **Partner with Product and Engineering on secure-by-default design across Logistics, Brands, and Commerce. Own penetration testing and our bug bounty program. Be the executive voice in enterprise security reviews and questionnaires - the ones that decide whether a deal closes this quarter or next.******Resilience.****### **Own business continuity and disaster recovery for an operation where downtime means orders don't ship. Prove recovery works by testing it, not by documenting it.**###****Team.****### **Lead and grow a team spanning GRC, security operations, security engineering, application security, and cloud/infrastructure security, plus an MDR partner. You'll inherit the existing team, then define and hire the rest of the structure yourself.**##### ****What We're Looking For***** ### **12+ years in security, including 5+ leading a security function at a SaaS or platform company.*** ### **Depth in cloud-native security at scale - AWS/GCP, Kubernetes, microservices, CI/CD, API security. You should be able to hold your own in an architecture review, not just read the summary.*** ### **Hands-on experience owning M&A security diligence and integration.*** ### **Track record building a security program against NIST CSF, SOC 2, and ISO 27001 - and passing the audits.*** ### **Experience standing up or running 24/7 detection and response, whether in-house, through MDR, or a hybrid.*** ### **Executive and Board communication chops. You can explain residual risk to a board, a trade-off to a CFO, and a control to an engineer, and be understood by all three.*** ### **Judgment about where to spend. You know which risks justify a control, which justify a conversation, and which justify neither.**## ****Bonus Points***** ### **You've taken a company through IPO readiness, or operated in a public company - SEC cybersecurity disclosure, SOX IT controls, Board reporting cadence.*** ### **You've secured operational or physical environments - warehouses, manufacturing, robotics, OT/IoT - not just cloud.*** ### **You've built AI/ML security governance for production systems, ideally against NIST AI RMF.*** ### **EU/UK regulatory experience: GDPR, DPF, NIS2, the EU AI Act.*** ### **You've worked somewhere the physical world breaks when software fails.**
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

VP, Security
VP, Security

Stord-Warehous • Atlanta (GA)

Remote
USD 240,000 - 320,000
VP of Internal Systems & IT
VP of Internal Systems & IT

Stord • United States

On-site
USD 180,000 - 280,000
Senior Site Reliability Engineer
Senior Site Reliability Engineer

The Consensus • United States

On-site
USD 140,000 - 190,000
Operations Program Manager, Internal Systems HQ - Atlanta, GA
Operations Program Manager, Internal Systems HQ - Atlanta, GA

Stord • Atlanta (GA)

On-site
USD 110,000 - 140,000
Senior Engineer, Platform Services
Senior Engineer, Platform Services

Stord • Atlanta (GA)

On-site
USD 150,000 - 230,000
Equity
Career growth opportunities
Program Manager, Internal Systems
Program Manager, Internal Systems

Stord-Warehous • Atlanta (GA)

On-site
USD 110,000 - 160,000
Engineering & Product Staff Software Engineer, Elixir ATL1 - Atlanta, GA
Engineering & Product Staff Software Engineer, Elixir ATL1 - Atlanta, GA

Stord • Atlanta (GA), Northern (KY)

Hybrid
USD 170,000 - 210,000
Software Engineer (SE/Senior/Staff) ATL1 - Atlanta, GA
Software Engineer (SE/Senior/Staff) ATL1 - Atlanta, GA

Stord • Atlanta (GA), Northern (KY)

Hybrid
USD 120,000 - 180,000
Senior Software Engineer, AI Remote, United States
Senior Software Engineer, AI Remote, United States

Stord • Northern (KY)

Hybrid
USD 120,000 - 160,000
Fulfillment Regional Safety, Compliance, and Loss Prevention Manager Remote - TX
Fulfillment Regional Safety, Compliance, and Loss Prevention Manager Remote - TX

Stord • Dallas (TX), Northern (KY)

Remote
USD 110,000 - 160,000