Director of Information Security at Unacast transforming location data intelligence through effective security measures. Oversee security strategies and compliance, ensuring data protection and incident response.
Responsibilities
Own and execute security roadmaps for protecting Unacast’s data, systems, and cloud environments (AWS, GCP), covering day-to-day operations and practical security measures
Conduct risk assessments, penetration testing, monitoring, and incident response to address emerging threats and keep systems and data secure
Implement and manage security controls including access management, intrusion detection, and endpoint standards across physical endpoints and cloud environments
Lead security audits and certifications such as ISO 27001 and SOC 2, ensuring compliance with relevant standards
Work closely with engineering to integrate security best practices into architecture, infrastructure, and product development
Respond to security incidents quickly and effectively, minimizing disruption
Track and report key security metrics to show risks, progress, and opportunities for improvement
Support customer security reviews, RFPs, and compliance discussions as the external voice of Unacast’s security program
Collaborate with the Unacast Privacy team to align data security and privacy strategies
Maintain clear and actionable security documentation, including policies and playbooks, ensuring they stay current and accessible
Lead company-wide security awareness and training initiatives to build a culture of security vigilance
Requirements
10+ years in security experience managing both strategy and execution
One or more relevant industry certifications such as CISSP, CCSP, CISM, CISA, or AWS Security Specialty
Hands-on expertise in securing cloud environments (AWS, GCP), implementing security controls, and managing incidents
Experience with achieving and maintaining ISO 27001 certification, SOC 2, or similar standards
Experience integrating security into engineering, DevOps, and cloud environments
Expertise in relevant security regulations, laws, and standards, with an in-depth understanding of data protection, cybersecurity best practices, and Continuity of Operations Planning (COOP) and Disaster Recovery Planning
Expertise in security frameworks, standards, and best practices, including hands-on experience with incident response, risk assessment, penetration testing, and security audits
Awareness of emerging security threats, trends, and new technologies impacting the field
Team player with a strong business mindset, building credibility and trust with customers to drive outcomes
Strong analytical skills to assess threats and design effective security solutions
Excellent communication skills with the ability to translate complex security topics for both technical and non-technical stakeholders
A roll-up-your-sleeves mentality, eager to own, build, and execute security initiatives at all levels
Business Development Representative creating and managing lead generation pipelines for cybersecurity solutions. Engaging with enterprise clients in Switzerland and Germany in a hybrid work model.
Information Security Officer responsible for developing and implementing security strategies at an IT service provider for the food and beverage industry. Engaging with teams and management on cyber risks and compliance.
Information Security Manager leading CISOaaS or GRC consultants for NVISO in Germany. Enhancing clients’ cybersecurity posture and driving strategic security initiatives.
Técnico de Segurança do Trabalho JR assisting with safety documentation and training for field activities at Arcadis. Focused on sustainable solutions in engineering and consulting.
Infra Security Engineer focusing on endpoint security solutions in South Korea's urban mobility services. Collaborating on security architecture and threat detection initiatives.
Compliance Specialist managing documentation and policies for Orro's Information Security Management System. Supporting essential compliance activities across ISO 27001 and IRAP with strong attention to detail.
Senior Security Engineer managing the vulnerability management program and collaborating with engineering teams at Causaly. Focused on cloud security and secure coding practices.
Senior Cyber Security Consultant supporting client cybersecurity development initiatives. Job focuses on administrative and technical aspects of cybersecurity within a collaborative consulting team setting.
Vice President of Infrastructure Security overseeing enterprise - level cyber risk across platforms. Partnering with infrastructure and technology leaders to ensure secure, resilient, and compliant services.
Assistant Vice President providing cybersecurity advisory across enterprise infrastructure at State Street. Supporting technology outcomes in secure and resilient ways across cloud, hybrid, and on - prem environments.