Full-Time

Director of Security

Remote, US-based

Posted on 11/21/2024

Liquibase

Liquibase

51-200 employees

Automates database CI/CD and schema changes

Data & Analytics
Enterprise Software

Senior

Remote in USA

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Google Cloud Platform
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Technology, or related STEM field
  • 8+ years proven experience in information security management, with a focus on SaaS and traditional software environments.
  • Strong knowledge of GRC frameworks and regulatory compliance requirements.
  • In-depth understanding of control testing program development, risk assessment methodologies, and related frameworks
  • Experience with security architecture, risk management, threat detection and incident response.
  • Strong understanding and hands on experience with Cloud architecture and services
  • Strong understanding of security tools
  • Comprehensive understanding of vulnerability management
  • Understanding of Identity and access management
  • 3+ years Managing third party risk and Certification audits
  • Ability to lead crisis management
  • Proven ability to reduce Companies Risk Posture and manage global risk
  • Excellent leadership and team management skills, with a demonstrated ability to influence at all levels of the organization
  • Strong communication skills, both verbal and written, with the ability to convey complex security concepts to non-technical stakeholders, as well as customer communications
  • Relevant security certifications (e.g., CISSP, CISM, CISA) are highly desirable
Responsibilities
  • Lead the development, implementation & enforcement of a comprehensive security strategy that addresses the unique needs of both SaaS and on-premise software environments.
  • Develop, implement, and manage cybersecurity policies and procedures to ensure the confidentiality, integrity, and availability of information assets.
  • Collaborate with executive leadership to align security initiatives with business goals and objectives.
  • Design and implement security architecture including building new systems, tools, or processes that protect the integrity, confidentiality, and availability of data across all platforms.
  • Lead security operations function in multi-cloud environments, including AWS, Azure, GCP and others
  • Manage security operations, including monitoring, incident response, and threat intelligence.
  • Partner with the engineering teams to perform design and architecture reviews, including threat modeling and assessments, code reviews, Security/Vulnerability/Penetration Testing etc
  • Establish and oversee the GRC framework to ensure compliance with industry standards (e.g., ISO 27001, SOC 2, GDPR, HIPAA) and regulatory requirements.
  • Develop and enforce data protection policies to ensure compliance with data privacy regulations such as GDPR, CCPA, etc
  • Develop and implement risk assessment processes to identify, evaluate, and mitigate security risks across the organization.
  • Collaborate with cross-functional teams, including IT, Product, CS, Sales and Legal, to ensure security is integrated into all aspects of the business.
  • Act as the primary point of contact for security-related inquiries from customers, prospects, partners, and regulatory bodies.
  • Develop and lead a high-performing security adjacent team, fostering a culture of continuous improvement and professional development.
  • Provide mentorship and guidance to team members, promoting knowledge sharing and best practices.
  • Develop and implement security training and awareness programs for employees to foster and promote a security-conscious culture.
  • Stay current with industry trends and emerging threats, ensuring the organization is proactive in its security posture.

Liquibase provides tools for automating database changes in the software development process, specifically focusing on continuous integration and continuous delivery (CI/CD). Their products allow developers to manage and implement database schema changes efficiently, which helps speed up application development and enhances reliability. Liquibase caters to a diverse clientele, from individual developers using open-source tools to large enterprises that need advanced compliance features. The company offers various product tiers, including Liquibase Pro, Liquibase Business, and Liquibase Enterprise, each designed to meet different needs and levels of support. Revenue is generated through subscription fees for these products and additional services like Liquibase Hub, which provides monitoring and analytics. The main goal of Liquibase is to streamline development workflows, foster collaboration among teams, and ensure compliance, ultimately promoting innovation in database management.

Company Stage

Series C

Total Funding

$26.3M

Headquarters

Austin, Texas

Founded

2012

Growth & Insights
Headcount

6 month growth

9%

1 year growth

15%

2 year growth

25%
Simplify Jobs

Simplify's Take

What believers are saying

  • Liquibase's innovative approach can significantly improve the efficiency and agility of database management, making it an attractive workplace for tech professionals.
  • The company's unique positioning in the market could lead to rapid growth and numerous career advancement opportunities for employees.

What critics are saying

  • The adoption of DevOps for database management is still emerging, which could lead to slower market acceptance and impact Liquibase's growth.
  • The competitive landscape in database management is intense, and larger, more established companies could overshadow Liquibase's innovations.

What makes Liquibase unique

  • Liquibase leverages DevOps principles to make database changes more agile, a unique approach in a field where changes are typically cumbersome and slow.
  • The company's focus on easing the load on Database Administrators (DBAs) sets it apart from traditional database management solutions.

Help us improve and share your feedback! Did you find this helpful?