\nAs the Senior Director of Information Security, you will build our security structure from the ground up and establish our security footprint to fit the needs of a growing organization. You will do this by working closely with cross-functional teams to identify potential risks and develop strategies to mitigate them. You will establish security policies, procedures, and guidelines, and enable compliance throughout the organization. In this role, you will apply a risk-informed approach to security and compliance, enabling the business to operate in safe and secure ways.\n\n \n\nKey Responsibilities \n\nSecurity Strategy: \n\n\n* \n\n\n* Develop and execute a comprehensive information security strategy that aligns with the organization's business goals and objectives.\n\n* Collaborate closely with the VP of Engineering, VP of Legal and Compliance, IT Director, and CTO on security strategy\n\n* Provide oversight for security governance and risk management, including risk assessments, vulnerability management, and incident response planning.\n\n* Develop and implement an incident response plan, including detection, containment, mitigation, and recovery strategies.\n\n* Promote a culture of security awareness throughout the organization by conducting training sessions and awareness campaigns.\n\n* Provide regular updates and reports to senior management and stakeholders on the state of information security within the organization.\n\n\n\n\n\n\n\n\nPolicy and Compliance: \n\n\n\n\n* Establish and maintain information security policies, standards, and procedures in compliance with relevant industry regulations (e.g., GDPR, PCI DSS, state Insurance Data Security laws) and best practices.\n\n* Coordinate and oversee internal and external security audits, assessments, and penetration testing activities.\n\n* Evaluate and implement security technologies and solutions to protect the organization's assets.\n\n* Evaluate and manage security risks associated with third-party vendors and service providers.\n\n\n\n\n\n\n \n\nWhat Youโll Bring\n\nExperience\n\n\n\n\n* Experience establishing a security program from the ground up to fit growing business needs as an individual contributor and leader\n\n* Proven management abilities\n\n\n\n* Experience guiding and growing teams of teams, balancing security, compliance and engineering needs with the needs of the business.\n\n* Demonstrated ability to leverage resources and teams to deliver multiple projects from start to finish in reasonable overlapping time frames\n\n* Experience developing a strategy or roadmap for your teams\n\n\n\n\n\n\n\n\nTeamwork\n\n\n\n\n* Defaults to a collaborative mindset to work with multiple stakeholders to maximize our resources\n\n* No Egos - focuses on the best outcomes for the security, engineering, and IT teams and the company over ownership of any particular project, process, or people, demonstrating high engagement and low attachment\n\n* Passion for fostering DE&I to build effective, capable teams\n\n\n\n\n\n\nAccountability\n\n\n\n\n* Comfortable making decisions, owning and being accountable for results\n\n* A high level of comfort navigating and making decisions and recommendations in environments of ambiguity\n\n\n\n\n\n\nProblem-solving\n\n\n\n\n* Bias towards action over perfection\n\n* Ability to juggle both a long term investment approach and an iterative approach to address immediate needs while understanding long term implications. \n\n* When presented with a complex problem, process, or existing system, you can consistently reduce the complexity to get more done with less work.\n\n\n\n\n\n\nRequirements\n\n\n* Typically requires 10+ years of experience across management and security domains\n\n* Familiarity and willingness to work with Agile methodologies\n\n* Excellent written and verbal communication\n\n* CISSP, CISM, or other cybersecurity certifications preferred, but not required\n\n* Working knowledge of one or more public cloud technologies (AWS, Azure, Google Cloud) and information security in a hybrid cloud environment\n\n* Risk management experience\n\n* Familiarity with PCI Data Security Standards and other financial industry-accepted security standards and frameworks\n\n* Working knowledge of PAM, SIEM, SSO, WAF, endpoint detection, and email threat management technology\n\n* Proficient with network and application security tools and best practices\n\n\n\n\n\n#LI-CB1\n\nOur stack (for reference)\n\nWe do not expect competency in this stack to be successful, but awareness in security concerns associated is a plus: \n\n\n* Backend/Core: Go & Postgresql\n\n* Frontend: Browser-based, VueJS, Webpack, Nuxt &, Tailwind\n\n* Research/Data Science: R, ArcGIS, H2O, & Python\n\n* Infrastructure: Google Cloud, specifically Cloud Run, Cloud Build, and CloudSQL, managed with Terraform. We use GitHub for code hosting and CircleCI for running our CI/CD pipelines.\n\n* Remote work tools: Slack, Zoom\n\n\n\n\n \n\n#Salary and compensation\n
No salary data published by company so we estimated salary based on similar jobs related to Testing, Cloud, Senior, Legal and Non Tech jobs that are similar:\n\n
$50,000 — $80,000/year\n
\n\n#Benefits\n
๐ฐ 401(k)\n\n๐ Distributed team\n\nโฐ Async\n\n๐ค Vision insurance\n\n๐ฆท Dental insurance\n\n๐ Medical insurance\n\n๐ Unlimited vacation\n\n๐ Paid time off\n\n๐ 4 day workweek\n\n๐ฐ 401k matching\n\n๐ Company retreats\n\n๐ฌ Coworking budget\n\n๐ Learning budget\n\n๐ช Free gym membership\n\n๐ง Mental wellness budget\n\n๐ฅ Home office budget\n\n๐ฅง Pay in crypto\n\n๐ฅธ Pseudonymous\n\n๐ฐ Profit sharing\n\n๐ฐ Equity compensation\n\nโฌ๏ธ No whiteboard interview\n\n๐ No monitoring system\n\n๐ซ No politics at work\n\n๐ We hire old (and young)\n\n
๐ Please reference you found the job on Remote OK, this helps us get more companies to post here, thanks!
When applying for jobs, you should NEVER have to pay to apply. You should also NEVER have to pay to buy equipment which they then pay you back for later. Also never pay for trainings you have to do. Those are scams! NEVER PAY FOR ANYTHING! Posts that link to pages with "how to work online" are also scams. Don't use them or pay for them. Also always verify you're actually talking to the company in the job post and not an imposter. A good idea is to check the domain name for the site/email and see if it's the actual company's main domain name. Scams in remote work are rampant, be careful! Read more to avoid scams. When clicking on the button to apply above, you will leave Remote OK and go to the job application page for that company outside this site. Remote OK accepts no liability or responsibility as a consequence of any reliance upon information on there (external sites) or here.
\nAbout Vestmark\n\nHeadquartered outside of Boston, MA, Vestmark is a leading provider of portfolio management and trading solutions for the wealth management industry. Supporting over $1.5 trillion in assets and 5 million accounts, Vestmark is a trusted partner to some of the largest and most respected wealth management firms, offering an innovative SaaS platform and comprehensive suite of outsourced services. Founded in 2001 with the mission of improving investment outcomes for all investors, Vestmark is a privately-owned company on the forefront of innovation and disruption of the FinTech industry.\n\nTHE ROLE\n\nVestmark is seeking a SQL Server Database Administrator to design, implement and support scalable data management solutions. The DBA will collaborate with the engineering team to create standardized delivery of data management solutions that are aligned with enterprise strategy and architecture.\n\nResponsibilities\n\n\n* Perform Database Administration for MS SQL Server and other database tools\n\n* Troubleshoot and resolve database issues\n\n* Tuning and Optimization using Native Monitoring and Troubleshooting Tools\n\n* Monitor, troubleshoot, and resolve failed tasks or database issues on a variety of database engines including Microsoft SQL Server and PostgreSQL\n\n* Proactive performance and resource monitoring\n\n* Ensure backup, high availability and disaster recovery\n\n* Configure and monitor replication clusters\n\n* Conduct security and compliance reviews\n\n* Perform load testing for table and index design\n\n\n\n\nQualifications\n\n\n* Bachelor's degree in Engineering, Computer Science, Information Technology or equivalent work experience\n\n* 5+ years of hands-on administration with combinations of SQL server 2008 and above\n\n* Experience with High Availability (HA) and Disaster Recovery (DR) options for SQL server\n\n* Strong knowledge of Performance Tuning/Optimization\n\n* Direct working experience with virtualization\n\n* Experience managing security within the SQL Server environment\n\n* Expert-level knowledge of backups, restores, recoveries, and clones\n\n* Experience working with Windows Servers and Active Directory (AD)\n\n* Experience with Transparent Data Encryption (TDE)\n\n* Knowledge of BI, SSIS, SSRS, and SSAS\n\n* Knowledge of programming skills in T-SQL, PowerShell, VBScript\n\n\n\n\nCompetencies\n\n\n* We before Me โ We identify and hire those who put the needs of the team first and aspire to bring out the best in others.\n\n* Knowledge Explorer โ We identify and hire curious, articulate, and pro-active problem solvers who adapt to the challenges at hand using creative collaboration.\n\n* Positive Energy โ We value levity and encourage a glass half full mentality.\n\n* Own It โ We understand, we empathize, and we are accountable to the end.\n\n\n\n\nWhat Vestmark Offers\n\nVestmark offers the ability to develop strong relationships with colleagues who enjoy collaborating, a flexible work-life balance, managers who respect and listen to their ideas and a competitive salary and benefits.\n\nVestmark also offers a strong value-based culture while working on challenging projects in an exciting Fintech industry committed to helping regular investors reach their goals.\n\nVestmark is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Vestmark prohibits employment discrimination on the basis of race, color, religion, gender identity, sex, sexual orientation, pregnancy, national origin, age, disability status, protected military or veteran status, and genetic information.\n\n#LI-BR1\n\n \n\n \n\n#Salary and compensation\n
No salary data published by company so we estimated salary based on similar jobs related to Database Admin, Microsoft and SaaS jobs that are similar:\n\n
$65,000 — $90,000/year\n
\n\n#Benefits\n
๐ฐ 401(k)\n\n๐ Distributed team\n\nโฐ Async\n\n๐ค Vision insurance\n\n๐ฆท Dental insurance\n\n๐ Medical insurance\n\n๐ Unlimited vacation\n\n๐ Paid time off\n\n๐ 4 day workweek\n\n๐ฐ 401k matching\n\n๐ Company retreats\n\n๐ฌ Coworking budget\n\n๐ Learning budget\n\n๐ช Free gym membership\n\n๐ง Mental wellness budget\n\n๐ฅ Home office budget\n\n๐ฅง Pay in crypto\n\n๐ฅธ Pseudonymous\n\n๐ฐ Profit sharing\n\n๐ฐ Equity compensation\n\nโฌ๏ธ No whiteboard interview\n\n๐ No monitoring system\n\n๐ซ No politics at work\n\n๐ We hire old (and young)\n\n
\n\n#Location\nWakefield, Massachusetts, United States
๐ Please reference you found the job on Remote OK, this helps us get more companies to post here, thanks!
When applying for jobs, you should NEVER have to pay to apply. You should also NEVER have to pay to buy equipment which they then pay you back for later. Also never pay for trainings you have to do. Those are scams! NEVER PAY FOR ANYTHING! Posts that link to pages with "how to work online" are also scams. Don't use them or pay for them. Also always verify you're actually talking to the company in the job post and not an imposter. A good idea is to check the domain name for the site/email and see if it's the actual company's main domain name. Scams in remote work are rampant, be careful! Read more to avoid scams. When clicking on the button to apply above, you will leave Remote OK and go to the job application page for that company outside this site. Remote OK accepts no liability or responsibility as a consequence of any reliance upon information on there (external sites) or here.
This job post is closed and the position is probably filled. Please do not apply. Work for Everly Health and want to re-open this job? Use the edit link in the email when you posted the job!
๐ค Closed by robot after apply link errored w/ code 404 3 years ago
Everly Health is the leading digital health company at the forefront of the $300 billion dollar virtual diagnostics-driven care industry. Our mission is to improve the lives of millions with a fully integrated digital care platform for consumers and businesses. We continue to innovate in the space by delivering more care to more people on a seamless diagnostics-driven platform. \n\nEverlywell, the consumer-initiated at-home laboratory testing brand within Everly Health, has helped over 1 million people manage their health and wellness with easy at-home tests, physician-reviewed results and actionable intelligence delivered digitally in days. You know your body best, and we believe information about the way your body works should be fully visible and available to you however and whenever you need it.\n\nWe are looking for a seasoned data scientist with a specialty in extracting & assessing large datasets, segmentation and predictive modeling using complex optimization algorithms focused on increasing participant engagement of client programs within Everly Healthโs commercial business unit: Everly Health Solutions.ย \n\nYou will be working closely with the Engagement Strategy team, as well as Sales, Delivery and Analytics, to analyze our online & offline communication channels, how they work together - and the efficacy and incrementality of each. You will be responsible for conducting deep analyses around audience profiling and segmentation to enable more effective / efficient engagement spend and participant insights. The ideal candidate has experience with SQL & Tableau, multi-attribution methodology and behavioral segmentation.ย \n\nYouโre joining a โstartup team within a startup,โ so if youโre looking for an opportunity to build & optimize from scratch to add value -- this is the role for you.ย \n\n*Remote Optional*\n\nYou'll Love Working Here:\n\nยทย Venture backed by top-tier firms\nยท The opportunity ahead knows no bounds\nยทย Open vacation policy\nยท Employee discounts\nยท Paid parental leave\nยท Health benefits\nยท 401(k)\n\nNO EXTERNAL RECRUITERS - INDIVIDUAL APPLICANTS ONLY\n\nEverly Health is committed to providing equal employment opportunities in all employment practices. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship status, marital status, age, disability, protected veteran status, sexual orientation or any other characteristic protected by law.\n\nHIPAA Disclaimer: This role will be in an environment that has access to protected health information (PHI) and all security standards to protect PHI must be followed. \n\n#Salary and compensation\n
No salary data published by company so we estimated salary based on similar jobs related to Data Science, Medical and Non Tech jobs that are similar:\n\n
$80,000 — $125,000/year\n
\n\n#Benefits\n
๐ฐ 401(k)\n\n๐ Distributed team\n\nโฐ Async\n\n๐ค Vision insurance\n\n๐ฆท Dental insurance\n\n๐ Medical insurance\n\n๐ Unlimited vacation\n\n๐ Paid time off\n\n๐ 4 day workweek\n\n๐ฐ 401k matching\n\n๐ Company retreats\n\n๐ฌ Coworking budget\n\n๐ Learning budget\n\n๐ช Free gym membership\n\n๐ง Mental wellness budget\n\n๐ฅ Home office budget\n\n๐ฅง Pay in crypto\n\n๐ฅธ Pseudonymous\n\n๐ฐ Profit sharing\n\n๐ฐ Equity compensation\n\nโฌ๏ธ No whiteboard interview\n\n๐ No monitoring system\n\n๐ซ No politics at work\n\n๐ We hire old (and young)\n\n
\n\n#Location\nAustin, TX (Remote)
# How do you apply?\n\nThis job post has been closed by the poster, which means they probably have enough applicants now. Please do not apply.