At Anyscale , we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray , a popular open-source project that's creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI , Uber , Spotify , Instacart , Cruise , and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world. With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert. Proud to be backed by Andreessen Horowitz, NEA, and Addition with $250+ million raised to date. About the Role Anyscale's product security needs are growing as we ship to larger and more demanding customers. We're looking for a Senior Product Security Engineer to own our secure software development lifecycle and to be engineering's partner on building security into the product. Reporting to the Head of Security, you will work in close partnership with engineering. This is a senior, high-ownership role. You will own and operate a scalable SSDL, partner with engineering on security features and secure design, review the security of existing systems and new initiatives, and own how we find, track, drive to resolution and report on vulnerabilities in what we ship. This role is based in India. In your first year, success looks like an SSDL that scales with engineering rather than gating it, security review embedded in how new initiatives ship, and accurate, on-demand vulnerability reporting backed by a working path to resolution. What You'll Do Own and operate a scalable secure software development lifecycle: threat modeling, security requirements, secure design practices, and scanning that engineering can readily adopt. Partner with engineering on security features and secure-by-design architecture, from early design through i
Jobiba hiring network
Head Of Security Incident Management Jobs
754 active opportunities · Updated for October 2026
Fresh results
15 shown
Explore current head of security incident management jobs. Use filters to narrow by work mode, employment type, experience and date posted.
Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the role: Replit is building the security GRC function that will scale with an AI-native product. As the Risk & Compliance lead, you'll own our certification and audit program end to end: SOC 2, ISO 27001, and eventually ISO 42001 (AI management systems), while also owning the company's master security risk register and continuous compliance monitoring. You'll report to the Head of Security GRC, who retains overall accountability for the risk program, and work closely with Engineering to make sure controls hold up in practice, not just on paper. What You'll Do Own the end-to-end certification roadmap (SOC 2 Type II, ISO 27001, and future frameworks like ISO 42001) including scoping, gap assessments, remediation, and audit execution Manage relationships with external auditors and drive the annual audit calendar so certifications renew without last-minute scrambles Own and maintain the company's master security risk register including risk identification, scoring methodology, treatment plans, and residual risk reporting Build and maintain continuous compliance monitoring so control status reflects real-time state rather than point-in-time snapshots Own the core audit artifacts that back every certification including ISMS documentation, Statements of Applicability, risk assessments, and potentially FedRAMP System Security Plans (SSPs) Run regular audits and readiness assessments, and track remediation of findings and control gaps to closure Support GDPR and broader privacy compliance alongside the Legal/Privacy team, without owning the legal interpretation of requirements Partner with the GRC Engineer to define what evidence collection and control monitoring should be automated versus manually reviewed Track and
Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the role: Replit’s ecosystem is powered by an expanding array of external services and essential AI model partners. As our lead for Security Vendor Risk & Contract Reviews, you will architect and execute a risk management program focused on substantive evaluation rather than just processing checklists. You’ll analyze SOC 2 documentation, security assessments, and system architectures to determine actual risk profiles, collaborating with our Legal team to secure necessary contractual protections. This role reports to the Head of Security GRC and involves high-impact partnerships across Legal, Engineering, and Product teams. What You'll Do Run substantive third-party risk management (TPRM), independently evaluating real risk, not just processing questionnaire responses Review SOC 2 reports, pen test findings, and architecture documentation to form an independent view of vendor risk, extending the same rigor to AI/model providers Partner with Legal on vendor and AI contract terms, including DPAs, subprocessor agreements, and AI-specific provisions Review contracts for non-standard security language when flagged by Legal or deal desk, and recommend redlines Maintain the vendor and AI/model risk register, feeding findings into the company's master risk register Enable sales through maturing the customer trust program Build the capability for continuous monitoring of vendor ecosystem Required Skills & Experience 8+ years in third-party/vendor risk management, security risk, or a related GRC role Demonstrated ability to independently assess vendor risk rather than relying on questionnaire responses alone, fluent in reading SOC 2 reports, ISO certificates, pen test summaries, and architecture documentation Experi
At Anyscale , we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray , a popular open-source project that's creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI , Uber , Spotify , Instacart , Cruise , and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world. With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert. Proud to be backed by Andreessen Horowitz, NEA, and Addition with $250+ million raised to date. About the Role Anyscale's security and compliance needs are growing as we work with larger and more demanding customers. Compliance is increasingly a customer-facing, contractual function rather than an internal exercise, and we are looking for someone to own it. This role owns that function end to end: our audits, our evidence base, our risk register, and the security diligence that customers put us through before and during a contract. You will work directly with the Head of Security and across engineering, IT, legal, and sales. This is a program-ownership role with the autonomy and accountability that implies. You will not have a senior compliance function above you to defer to; you are that function. In your first year, success looks like a complete and defensible evidence base with clean audit outcomes, a repeatable way to answer customer security diligence, and a risk register that leadership actually uses. What You'll Do Own our SOC 2 Type II and ISO 27001 programs, and future frameworks as we take them on, including scope, evidence, control operation, and the relationship with our external auditors. Own and complete the control evidence base in our compliance automation platform, moving controls from partially substantia
At Anyscale , we're on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray , a popular open-source project that's creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI , Uber , Spotify , Instacart , Cruise , and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world. With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert. Proud to be backed by Andreessen Horowitz, NEA, and Addition with $250+ million raised to date. About the Role Anyscale runs on a small, high-leverage IT function, and we're looking for an IT Engineer to own it. This is a hands-on engineering role, not a help desk or tier-1 support role. Roughly half the job is software: you will own and extend a set of internal automation and notification services wired into our directory and hardware systems. You should be comfortable owning a codebase and a GitHub repository, not only vendor admin consoles. The other half is the identity, endpoint, hardware, and vendor backbone that keeps a company of roughly 200 people, close to half of them engineers, productive across three public clouds. Reporting to the Head of Security and IT, you will work closely with security, engineering, and the people team. This role is based in the San Francisco Bay Area on a hybrid schedule. What You'll Do Own identity and access: Okta and Google Workspace administration, group-based authorization, 1Password Enterprise, passkeys, and automation driven provisioning and deprovisioning. Own and extend our internal automation services, and run them on scoped service accounts with sound security and hygiene. Own the endpoint fleet through mobile device management, including device trust posture checks, endpoint
Security at most companies is reactive. A checkbox for auditors. A speed bump for engineers. A department that says no. That's not what we're building. The Company Sendbird is the #1 CPaaS platform for in-app communications — an enterprise-grade infrastructure company that gives businesses the APIs and SDKs to embed real-time chat, voice, and video directly into their own products. Over 4,000 brands trust us. Seven billion messages flow through our platform every month. 300 million monthly active users. We powered conversations for DoorDash, Match Group, Noom, Yahoo Sports, Rakuten, and thousands more. We were good at what we did. Really good. So we asked what comes next. With decades of leadership in communications infrastructure, the answer was clear: AI. In February 2025, we launched our AI agent for enterprise CX. Later that year, we introduced Delight.ai — and the name says everything about what we believe. AI's real promise isn't efficiency. It isn't cost savings. It's restoring what customer experience lost somewhere along the way: the feeling of being understood, of being genuinely cared for. We don't want customers to feel satisfied. We want them to feel delighted. The Product Delight.ai is the AI concierge for customer experience. Most AI agents forget you the moment the conversation ends. Ours doesn't. Delight.ai builds memory over time, learns preferences, and connects context across every channel—chat, SMS, email, voice, WhatsApp—without losing the thread. We're building AI that makes customers feel understood, seen, and remembered. Why Head of IT & Security We're an AI company handling enterprise-grade conversations at global scale, and our customers trust us with data that matters. That trust isn't a nice-to-have. It's a competitive differentiator. It's why DoorDash and Match Group chose us. It's why we've earned certifications that our competitors are still chasing. Security here means being a partner to the business, not a blocker. It mea
Head of Section - Security ensures the security of people and assets by gathering intelligence, liaising with internal and civil authorities, and implementing security measures. Responsible for ensuring the security of the people and assets by gathering valuable intelligence inputs and liaising with various internal & civil authorities. Source: Adani Group | Job ID: 55017
Head of Section - Security Automation oversees automating security processes, making data-driven decisions, and implementing group security automation standards at sites in line with the Head Office team. This role enhances security, improves efficiency, and reduces operational costs by leveraging advanced technologies and ensuring compliance. Source: Adani Group | Job ID: 56262
Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career. About the team Corporate Security helps keep Stripe secure and Stripes safe by building practical, risk-based programs that enable the company to operate and grow. We are looking for an experienced Regional Security Manager to join our team. As the Regional Security Manager Americas at Stripe, you will be responsible for developing our core physical-security deliverables to office locations in the Americas (North America and parts of Latin America), and help evolve our program to support Stripe around the globe. You will work cross functionally within the Corporate Security team, and alongside other business teams at the company to keep Stripe secure and Stripes safe. What you’ll do As Regional Security Manager Americas, reporting to the Head of Global Security Operations, you will lead and continuously improve physical security operations across North America and relevant parts of Latin America. This is an individual-contributor role: you will manage regional contractors and vendor relationships, but will not directly manage employees at this time. You will translate regional risk into scalable programs, build trusted partnerships with internal teams and service providers, and help evolve Stripe’s global security operating model. This is a hybrid role. The successful candidate will spend 50% of their time in one of our AMER office locations in San Francisco, New York, Seattle, or Chicago. We are not entertaining remote candidates at this time. Respons
At Lyft, our purpose is to serve and connect. We aim to achieve this by cultivating a work environment where all team members belong and have the opportunity to thrive. Reporting into the Manager of Global Investigations, the Investigator of Global Investigations will support all lines of business related to investigations (e.g. Platform Fraud, Community Safety, Law Enforcement Liaison & Partnerships, Insurance Fraud and Executive Protection & Risk Assessment). This role will efficiently and effectively build strong and meaningful relationships with internal business partners, law enforcement agencies, and other third parties to bring successful case resolution. This role regularly interacts with State/County/Local Law Enforcement in developing comprehensive and detailed cases pertaining to organized offenders and provides expertise to and gains buy-in from Law Enforcement Agencies to assist in the safe apprehension of these offenders. Responsibilities: Work in close partnership with the Manager of Global Investigations and Head of Global Security to set strategic objectives, drive accountability, and ensure successful delivery of key performance metrics Assist in the design and build of the global law enforcement outreach program, in order to regularly liaise and develop strategic relationships with law enforcement agencies Proactively maintain effective working relationships with law enforcement and government authorities Collaborate and build strong relationships with internal cross-functional partners, including Privacy/Identity/Integrity (PII), Risk, Community Safety, Legal, Public Policy, and other Operations teams and leaders across Lyft Plan and execute educational programs for law enforcement authorities on our business and challenges with external theft and loss Learn and develop a deep understanding of the businesses and activities related to Platform Fraud, Community Safety, Law Enforcement, Liaison & Partnerships, Insurance Fraud and Executi
Drata is building the trust layer between great companies - automating compliance, managing risk, and helping organizations prove trust continuously as they scale. We're Dratanauts: a global crew of 600+ professionals united by a culture that rewards integrity, ownership, and raising the bar, no matter where in the world we're working from. Why Join the Drata Team? At Drata, you're not maintaining legacy compliance software - you're building the agentic AI platform defining what trust looks like for the next generation of companies. Here's what makes the work itself worth showing up for: Problems without a playbook: You'll work at the edge of AI and security, building agentic governance, continuous compliance, and real-time trust verification to solve problems that don't have an established answer yet. You're writing it as you go. Real ownership, not just process: Our values center on owning outcomes and raising the bar, not checking boxes. You're expected to have opinions and back them. A seat at the table: Your perspective is unique and valued. Open debate and diverse viewpoints are built into how decisions actually get made here, at every level. Growth at rocketship speed: Drata is scaling fast, which means scope grows fast too. High performers get more ownership, visibility, and experience. A crew, not just coworkers: Dratanauts consistently describe a "come as you are" culture with sharp, curious people—the kind of team that makes hard problems genuinely fun to solve. See what they say here and follow us on LinkedIn for company news, employee stories, and career updates. Job Summary: Drata is looking for a Head of Product, Assurance to lead product strategy, execution, and team development for significant product lines at Drata – Trust Center & AI Questionnaire Assistance. This is a high-impact leadership role with end-to-end ownership of product vision, roadmap, customer outcomes, and business performance for a core area of the company. You will partner cl
Drata is building the trust layer between great companies - automating compliance, managing risk, and helping organizations prove trust continuously as they scale. We're Dratanauts: a global crew of 600+ professionals united by a culture that rewards integrity, ownership, and raising the bar, no matter where in the world we're working from. Why Join the Drata Team? At Drata, you're not maintaining legacy compliance software - you're building the agentic AI platform defining what trust looks like for the next generation of companies. Here's what makes the work itself worth showing up for: Problems without a playbook: You'll work at the edge of AI and security, building agentic governance, continuous compliance, and real-time trust verification to solve problems that don't have an established answer yet. You're writing it as you go. Real ownership, not just process: Our values center on owning outcomes and raising the bar, not checking boxes. You're expected to have opinions and back them. A seat at the table: Your perspective is unique and valued. Open debate and diverse viewpoints are built into how decisions actually get made here, at every level. Growth at rocketship speed: Drata is scaling fast, which means scope grows fast too. High performers get more ownership, visibility, and experience. A crew, not just coworkers: Dratanauts consistently describe a "come as you are" culture with sharp, curious people—the kind of team that makes hard problems genuinely fun to solve. See what they say here and follow us on LinkedIn for company news, employee stories, and career updates. Job Summary: We are looking for a Head of Pricing to own pricing and packaging at one of the most consequential moments in Drata's history. The software industry is in the middle of a generational shift, from products built around human users to products built around AI agents that do work end-to-end. The commercial models that powered SaaS for the last fifteen years were built for a world wher
Who are we? Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems. We’re training and deploying frontier models for enterprises who are building AI systems. We believe that our work is instrumental to the widespread adoption of AI and we are looking for folks that want to be part of that. We obsess over what we build. Each one of us is responsible for contributing to increasing the capabilities of our models and the value they drive for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all passionate about their craft. We are a global technology company headquartered in Toronto with key offices in London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul. Join us! The Opportunity We're seeking an experienced Head of Non-Tech Talent to lead our comprehensive hiring strategy for all non-technical roles. This is a pivotal position as we build out our capabilities across General and Administrative (G&A) Go to Market (GTM) Finance, Legal, and other business-critical functions. You'll transform how we attract, hire, and develop top talent beyond while building and coaching a high performing global talent team. This is an opportunity to join an ambitious high performing, scale up company. Key Responsibilities Strategic Talent Leadership: Develop and execute the non-tech talent strategy aligned with Cohere's growth plan and business objectives while partnering with TA leads across the organization Team Development & Coaching: Recruit, mentor, and develop a high-performing team of non-tech recruiters, sourcers, and coordinators; create career paths and succession plans Process Innovation: Design and implement scalable hiring processes for non-technical roles while maintaining our high-quality standards Business Partnership: Serve as the primary talent advisor to our Talent Leads and partne
Who are we? Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems. We’re training and deploying frontier models for enterprises who are building AI systems. We believe that our work is instrumental to the widespread adoption of AI and we are looking for folks that want to be part of that. We obsess over what we build. Each one of us is responsible for contributing to increasing the capabilities of our models and the value they drive for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all passionate about their craft. We are a global technology company headquartered in Toronto with key offices in London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul. Join us! As Cohere scales its enterprise AI platform and accelerates its position as a leader in sovereign AI solutions, we need a strategic Corporate Development leader to drive high-impact partnerships, M&A, and long-term business development. This role will focus on expanding Cohere’s ecosystem through strategic alliances, channel relationships, and targeted acquisitions that support our growth in regulated industries, government sectors, and global markets. Key Responsibilities M&A Strategy: Evaluate and execute acquisitions or investments in complementary technologies that strengthen our core platform, particularly in compute infrastructure, specialized AI capabilities, and regulatory compliance tools Lead due diligence processes with cross-functional teams to ensure technical integration feasibility and strategic alignment Manage post-merger integration to maximize value realization and revenue synergies Market Expansion: Support entry into new verticals and geographies through targeted collaborations with industry leaders and government partners Develop market entry strategies that address regulatory requirements and sover
Who are we? Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems. We’re training and deploying frontier models for enterprises who are building AI systems. We believe that our work is instrumental to the widespread adoption of AI and we are looking for folks that want to be part of that. We obsess over what we build. Each one of us is responsible for contributing to increasing the capabilities of our models and the value they drive for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all passionate about their craft. We are a global technology company headquartered in Toronto with key offices in London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul. Join us! Head of EMEA Public Sector (Germany) Why this role? As our Head of Sales EMEA Public Sector you will spearhead year-over-year revenue growth by developing and executing on enterprise level PUBSEC customer acquisition strategies across the region. You will drive long-term success through strategic development, coaching, and expanding Cohere’s presence in EMEA public sector, anchored in Defense. In this pivotal leadership role, you will cultivate and guide our EMEA PUBSEC sales team to exceed revenue targets and organizational goals, while fostering a culture of excellence and innovation. Candidates must be based in Germany to be considered for this career opportunity. As our Head of EMEA PUBSEC you will: Develop, execute, and lead a comprehensive go-to-market growth strategy and sales plan for EMEA PUBSEC, driving revenue growth and market expansion working with the North American Public Sector and other regional sales teams. Provide sales and operational leadership to Cohere’s EMEA PUBSEC sales team, ensuring alignment with company objectives and priorities. Partner with Marketing, Product, and Engineering teams to synchronize s
Get new head of security incident management jobs by email
Daily job updates · Unsubscribe anytime