Skip to main content
Dynata

VP, Security & Compliance

RemoteUnited States only· UTC-6…UTC-5· Prefers United States
Published
Role
Security
Experience
Lead
Employment
Full-time
Company size
Enterprise
$200k–$220k/yr
Check eligibility

Open to US only · UTC-6…UTC-5 · Prefers United States. Set where you work from to check your eligibility.

The listing prefers candidates in United States.

No BS summary

Senior security & compliance leader (VP) to own enterprise security, AI security governance, and compliance programs. Requires deep cloud security (AWS/Azure/GCP), SOC 2/ISO/GDPR/CCPA experience, and hands-on AI/LLM security expertise. Candidate ideally located in US Eastern or Central time zones and experienced in regulated, data‑intensive environments (banking/financial services preferred).

Core skills

AI/LLM securityCloud security (multi-cloud)

Required skills

Cloud security (AWS)Cloud security (Azure)Cloud security (GCP)Zero TrustSIEMSOARSplunkMicrosoft SentinelCrowdStrikeVulnerability managementCVE lifecycleDLPMicrosoft PurviewSymantec DLPForcepointAI/ML securityNIST AI RMFLLM securityData architecture (Snowflake)MS FabricIAMSOC 2ISO 27001GDPRCCPA/CPRAHIPAAPenetration testing oversight

Optional skills

CCSPCISSPCISMCISACRISCCGEITNIST AI RMF PractitionerClaude Cowork (Anthropic)

What you'll do

  • Own Dynata's enterprise security strategy — define the roadmap, prioritize investment, and align security controls with business objectives across cloud, corporate applications, and data platforms.
  • Establish and maintain a Zero Trust security architecture spanning AWS, Azure, and GCP environments.
  • Oversee threat intelligence, vulnerability management (CVE reduction), and incident response programs.
  • Drive Cloud Security Hardening initiatives and set security standards within the Cloud Center of Excellence (CCoE).
  • Build and own Dynata's AI Security governance framework — establish policies, controls, and risk guardrails for the company's AI/ML portfolio including MS Fabric, Snowflake, Copilot, and LLM-based tools.
  • Lead AI risk assessment and model governance aligned with NIST AI RMF, EU AI Act, and emerging regulatory requirements.
  • Define controls for LLM-specific threats: prompt injection, data exfiltration via AI, model inversion, and adversarial inputs.
  • Partner with EDMS and Engineering teams to embed AI security-by-design in DataHub, lakehouse architectures, and AI product development.
  • Own and manage all major compliance certifications and audits: SOC 2 Type II, ISO 27001, GDPR, CCPA/CPRA, and HIPAA where applicable.
  • Monitor the regulatory landscape and proactively identify/respond to emerging privacy and AI regulation in the US and EU.
  • Manage third-party and vendor risk management programs across the technology supply chain.
  • Partner with Legal and Finance to respond to client security questionnaires, audits, and contractual security requirements.
  • Own and manage Dynata's Security Operations Center (SOC) — including 24/7 monitoring coverage, alert triage, escalation protocols, and continuous improvement.
  • Lead all internal and external security audits — coordinate audit preparation, evidence collection, control testing, and finding remediation.
  • Manage relationships with external auditors, assessors, and penetration testing partners.
  • Drive SIEM/SOAR optimization — tune alerting, reduce false positives, and improve analyst efficiency.
  • Establish SOC KPIs and SLAs: MTTD, MTTR, alert-to-ticket ratio, and analyst utilization — reported to leadership monthly.
  • Serve as a standing member of Dynata's Data Governance Committee and AI Governance Committee, providing security and privacy perspectives.
  • Participate in strategic task forces (M&A due diligence, vendor evaluations, regulatory response).
  • Partner with Product and Engineering to embed security into the SDLC and platform rollouts.
  • Serve as executive sponsor for security in major technology programs (BOS → D365 migration, inBrain Azure migration, Dynata+ Phase 3).
  • Recruit, develop, and retain a Security & Compliance team of 6–15 FTEs.
  • Present to executive leadership and the board — deliver quarterly security posture reviews, risk dashboards, and compliance status updates.

What they require

  • Bachelor's degree in computer science, Information Technology/Systems, Cybersecurity or related field (Graduate degree desirable).
  • 15 years of progressive experience in Information Security, Cybersecurity, or a related discipline.
  • 5+ years in a people-management role leading security and/or compliance teams of 6 or more.
  • Proven track record building or maturing security programs at a Fortune 500, PE-backed, or highly regulated company (banking, financial services, healthcare, or large-scale data/tech platforms strongly preferred).
  • Hands-on AI/ML security experience: securing LLM deployments, generative AI products, or data science environments — ideally including model risk management frameworks from financial services.
  • Deep cloud security expertise across AWS, Azure, and/or GCP — including cloud-native security tooling, IAM, and multi-cloud governance.
  • Strong compliance program ownership: SOC 2, ISO 27001, GDPR, CCPA — you've run the audits, not just supported them.
  • Experience managing SOC operations including 24/7 monitoring, alert triage, and incident response.
  • Proven experience with SIEM/SOAR platforms and SOC workflow automation.
  • Experience managing third-party/vendor risk and leading audit engagements.
  • Executive presence & communication skills for presenting to C-suite and board.
  • Ability to recruit and lead a team (6–15 FTEs) and foster a security-first culture.

Benefits

  • A discretionary incentive program may be provided as part of the compensation package
  • Full range of medical and other benefits dependent on full-time employment status
  • Accommodations available upon request for all aspects of the selection process
  • Inclusive and accessible work environment; Equal Opportunity Employer

global provider of sampling solutions in marketing research

Market ResearchEnterprise
$200k–$220k/yr