We are seeking a Director of Information Security to own our information security strategy and policy. This individual will prioritize a strategic roadmap to mitigate risk against all relevant threat vectors (including application/product security and employee security), monitor the effectiveness of the security program, and interface with regulators and third parties to represent and defend Arcadia’s posture. The ideal candidate is detail-oriented and data-driven, with an excitement for problem-solving and working collaboratively with others in a fast-paced, highly dynamic environment.
This role is based in Washington, D.C., or New York City, NY, though we are open to considering a remote candidate and will report directly to the Head of Engineering. Additionally, this candidate will collaborate frequently with other engineers as well as the Product, Enterprise Solutions, IT, Legal and Regulatory, Operations, and Analytics & Data Science teams.
Eliminating carbon footprints, eliminating carbon copies.
Here at Arcadia, we cultivate diversity, celebrate individuality, and believe unique perspectives are key to our collective success in creating a clean energy future. Arcadia is committed to equal employment opportunities regardless of race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, protected veteran status, or any status protected by applicable federal, state, or local law. Please note that we are unable to offer visa sponsorship for this position at this time
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Target Annual Compensation Range for this role will be $165,000 to $295,000. There will also be a competitive benefits and equity (bonus if applicable) component to the package. The exact compensation at which this job is filled will be determined by the skills, experience, and location of the qualified candidate.
Thank you
Create a Job Alert
Interested in building your career at Arcadia? Get future opportunities sent straight to your email.
Apply for this job
------------------
Autofill with MyGreenhouse
First Name*
Last Name*
Preferred First Name
Email*
Phone
Country*
Phone*
Location (City)*
Locate me
Resume/CV*
AttachAttach
Dropbox
Google Drive
Enter manuallyEnter manually
Accepted file types: pdf, doc, docx, txt, rtf
Cover Letter
AttachAttach
Dropbox
Google Drive
Enter manuallyEnter manually
Accepted file types: pdf, doc, docx, txt, rtf
Education
School*
Select...
Degree*
Select...
End date year*
Add another
What are your pronouns? (optional)
LinkedIn Profile
Website
Do you currently live in the U.S.?*
Select...
What city do you currently live in?*
If Yes, what state do you currently live in?*
Select...
What is your zip code? *
Are you legally eligible to work in the U.S.?*
Select...
Will you now or in the future require visa sponsorship for employment at Arcadia?*
Select...
Have you personally served as the primary leader/owner (not just a contributor) for achieving SOC 2 Type II certification from start to audit completion at a previous company?*
Select...
Have you personally implemented and maintained IAM policies and security controls in AWS (or equivalent cloud provider) in a production environment for at least 2 years?*
Select...
How many security incidents have you personally led the response for (as incident commander or primary coordinator) that required communication with external stakeholders (customers, partners, regulators, or law enforcement)?*
Select...
How many of the following compliance certifications/frameworks have you successfully implemented from inception to completion? (SOC 2 Type II, ISO 27001, GDPR compliance program, CCPA compliance program, HIPAA, PCI-DSS, FedRAMP, NIST CSF)*
Select...
0
What is the largest security team you have directly managed (direct reports only, not dotted-line or cross-functional)?" *
Select...
SOC 2 Type II audits evaluate controls based on Trust Services Criteria. Which of the following is NOT one of the five official Trust Services Criteria?*
Select...
Submit application