Jobs · Information Technology

Sr Director of Cybersecurity Engineering

Blue Yonder · Dallas, TX · 4 days ago
Information Technology$186k–$242k/yrFull-time

Blue Yonder is seeking a Senior Director of Cybersecurity Engineering to lead teams designing, building, and operating technical security controls for our multi-cloud SaaS platform and the supply chains it powers. This role bridges engineering systems, security controls, and regulatory expectations, requiring deep fluency in all three to translate complex frameworks into scalable engineering solutions and vice versa.

About the Role

As a builder-leader, you will own the roadmap and delivery for Cloud & Infrastructure Security Engineering, Identity & Access Engineering, and Product/Application Security, with opportunities for further growth. This position demands hands-on-adjacent expertise in Azure security engineering to set technical direction, review architecture, and maintain high standards. The role is based in Dallas, TX (preferred) or open to US remote candidates.

Responsibilities

  • Lead and scale the engineering organization:
    • Develop strategy, roadmap, and delivery across Cloud & Infrastructure Security Engineering, Identity & Access Engineering, and Product/Application Security.
    • Lead a multi-team organization of managers and senior individual contributors; hire, develop, and retain top security engineering talent in a remote-first model.
    • Establish technical standards, engineering practices, and outcomes; build operating cadence, metrics, and prioritization discipline.
    • Architect the organization to absorb adjacent functions (e.g., Detection Engineering, Threat & Vulnerability Management) over time.
  • Cloud & infrastructure security engineering:
    • Set technical direction for securing Blue Yonder's Azure-centered multi-cloud environment (Azure primary; AWS, GCP, and OCI in scope).
    • Drive secure-by-default patterns, guardrails, and platform-level controls across network, compute, runtime, data, and identity layers.
    • Oversee cloud security posture management, workload protection, secrets and key management, and infrastructure-as-code security.
  • Identity & access engineering:
    • Own engineering for identity governance, authentication, authorization, privileged access, and lifecycle automation.
    • Advance a Zero Trust access model across workforce and workload identities.
    • Reduce standing privilege and drive toward least-privilege, auditable access at scale.
  • Product / application security:
    • Embed security into the SDLC through threat modeling, secure design review, SAST/DAST/SCA, and developer-friendly remediation workflows.
    • Partner with Product and Engineering to shift security left while maintaining velocity.
    • Establish and track application security posture and risk-reduction outcomes.
  • Controls, compliance, and regulatory alignment:
    • Ensure engineered controls map to compliance obligations (ISO 27001, 27701, 22301, 42001; SOC 1/SOC 2; ITGC) and produce durable, test-ready evidence.
    • Support certification and roadmap ambitions, including public-sector frameworks (e.g., FedRAMP, CMMC).
    • Serve as the engineering authority in audits, customer security reviews, and regulatory conversations.
  • Cross-functional leadership:
    • Partner with GRC, Security Operations, Product, Platform Engineering, and Customer Trust to align security engineering with enterprise risk and customer commitments.
    • Communicate posture, risk, and progress clearly to executive leadership and customers.

Requirements

  • 12+ years of experience, with 10+ years in cybersecurity, including substantial time in security engineering, cloud security, or platform security roles.
  • 6+ years leading security engineering teams, including experience as a leader-of-leaders in a fast-moving SaaS or cloud-native environment.
  • Deep, hands-on-adjacent Azure security expertise to set architecture direction, review designs, and uphold high technical standards.
  • Working knowledge of multi-cloud environments (AWS/GCP/OCI).
  • Fluency at the intersection of engineering systems, security controls, and regulatory frameworks, with a track record of bringing clarity to complex scenarios.
  • Strong command of modern security engineering domains: cloud security posture/workload protection, identity and access, application/product security, and secure infrastructure/IaC.
  • Experience in audited environments (SOC 2, ISO 27001, or equivalent) with an understanding of how controls become evidence.
  • Excellent executive communication skills to convey complex technical and regulatory topics to diverse audiences.

Preferred Qualifications

  • Experience supporting or achieving FedRAMP, CMMC, or other regulated/public-sector frameworks.
  • Hands-on experience with mature security tooling (e.g., CNAPP/CSPM, EDR, IGA/PAM, DSPM, SIEM, Microsoft Defender/Purview).
  • Background in identity governance and Zero Trust at enterprise scale.
  • Prior experience standing up or maturing Detection Engineering and/or Threat & Vulnerability Management functions.
  • Relevant certifications such as CISSP, CCSP, or Azure security certifications.
  • Engineering or software development background earlier in career.

Leadership Attributes

  • Structure-bringer: Clarifies ambiguity, sequences priorities, and creates actionable plans.
  • Builder: Experience building teams and capabilities from early stages, not just operating mature ones.
  • Translator: Bridges technical, audit, and executive perspectives fluidly.
  • High bar, high trust: Sets demanding standards while developing people to meet them.

Pay

The annual salary range for this position is $186,288 - $241,702. Individual salary will be commensurate with skills, experience, certifications, or licenses and other relevant factors. This role is also eligible for participation in either the annual performance bonus or commission program.

Benefits

  • Comprehensive medical, dental, and vision coverage.
  • 401K with company matching.
  • Flexible time off.
  • Corporate fitness program.
  • Voluntary benefits including legal plans, accident and hospital indemnity, and pet insurance.

Similar jobs

Director Cybersecurity Engineering

Zenith Insurance Company (United States)Austin, TX· 3 days ago
Information Technology$155k–$204k/yrapply on career-opportunities-thezenith.icims.com