Onit Logo

Onit

Cybersecurity Engineering & Operations Director

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in USA
150K-190K Annually
Expert/Leader
Remote
Hiring Remotely in USA
150K-190K Annually
Expert/Leader
Leads cybersecurity engineering and operations across AWS, SaaS products, corporate infrastructure, Microsoft 365, and AI-enabled applications. Owns security architecture, cloud controls, incident response, vulnerability management, application security, identity protection, automation, and security operations. Manages cybersecurity leaders and technical teams, oversees vendors and testing, and advises engineering, IT, product, compliance, and executives on risk reduction and secure growth.
The summary above was generated by AI
About Onit: 
We're redefining the future of legal operations through the power of AI. Our cutting-edge platform streamlines enterprise legal management, matter management, spend management and contract lifecycle processes, transforming manual workflows into intelligent, automated solutions.

We’re a team of innovators using AI at the core to help legal departments become faster, smarter, and more strategic. As we continue to grow and expand the capabilities of our new AI-centric platform, we’re looking for bold thinkers and builders who are excited to shape the next chapter of legal tech.
If you're energized by meaningful work, love solving complex problems, and want to help modernize how legal teams operate, we’d love to meet you.

Onit is seeking a Director of Cybersecurity Engineering & Operations to lead the technical cybersecurity function across our AI-driven legal operations SaaS platforms and corporate infrastructure. Reporting to the Vice President, Compliance and Security, this highly technical leader translates the organization's cybersecurity strategy into security architecture, engineering capabilities, and security operations that protect our products, cloud environments, employees, and corporate systems. The Director leads a cybersecurity manager and a team of security engineers and operations professionals, and partners closely with Cloud Engineering, Product Engineering, IT, and Compliance to reduce risk while enabling the company to build and operate securely.

Key Responsibilities:

     

    •    Develop and execute the cybersecurity engineering and operations strategy with the VP, Compliance and Security, translating risk and business priorities into technical roadmaps, architecture standards, and measurable outcomes (e.g., remediation performance, control coverage, incident response effectiveness, attack surface and posture trends).

    •    Lead the design and continuous improvement of security controls and guardrails across AWS and corporate environments, including cloud identity, network, workload, container/Kubernetes, and data protections, with security automation delivered as code (Terraform, Python, CI/CD, policy-as-code).

    •    Own technical security operations and incident response: detection, investigation, containment, eradication, and recovery; maintain and exercise IR plans, playbooks, and runbooks; build automated detection and response workflows across SIEM, SOAR, EDR, and cloud-native tooling; and coordinate executive, legal, and regulatory escalation with the VP.

    •    Own the vulnerability and exposure management program across applications, cloud, endpoints, and external attack surfaces, setting risk-based remediation SLAs and prioritizing by exploitability, exposure, and business impact while driving root-cause fixes for systemic weaknesses.

    •    Provide security leadership for Microsoft 365 and Entra ID (MFA, Conditional Access, privileged identity management, Just-In-Time access), corporate endpoint and email security, and for application and product security across the SDLC, including SAST/DAST/SCA, SBOMs, API security, threat modeling, a security champions program, and AI-enabled applications and integrations.

    •    Lead, mentor, and develop the cybersecurity manager, engineers, and security operations staff; define team structure, career paths, and operating processes that scale; manage security vendors, penetration testing, and managed security services; and serve as senior technical security advisor to Engineering, IT, Product, and executive leadership.

Required Skills:

     

    •    10+ years of progressive cybersecurity experience, including 5+ years in security leadership or management roles leading security engineering, security operations, or cloud security functions, with experience managing managers and technical teams.

    •    Deep expertise securing cloud-native enterprise SaaS applications, with strong hands-on AWS security experience (IAM, VPC, EC2, RDS, S3, EKS/ECS, logging, monitoring) and strong knowledge of Linux, networking, containers, and Kubernetes.

    •    Strong experience with security technologies including SIEM, EDR, CSPM, vulnerability management, WAF, and security monitoring platforms, and demonstrated experience building or improving incident detection and response programs.

    •    Experience securing Microsoft 365 and Entra ID environments (identity protection, MFA, Conditional Access, privileged identity management, access governance) and implementing privileged access management and Just-In-Time access architectures.

    •    Strong understanding of application and API security (SAST, DAST, SCA, SBOMs, secrets management, authentication/authorization) and experience with security automation and scripting using Python, Bash, Terraform, APIs, and CI/CD platforms, including Infrastructure-as-Code security and policy-as-code guardrails.

    •    Hands-on AI tool proficiency: experience using AI tools and LLM-based assistants in security work (e.g., AI-assisted alert triage, investigation, detection engineering, and automation), including crafting effective prompts, evaluating output accuracy, and integrating AI into security workflows. Experience securing AI-enabled applications, LLM integrations, and APIs is a plus.

    •    Ability to communicate complex cybersecurity risks to engineering leaders, executives, and non-technical stakeholders, and to balance risk reduction with business objectives and engineering velocity.

    •    Preferred: experience with multi-tenant SaaS security, CrowdStrike, Cloudflare (WAF and Zero Trust), DevSecOps, and offensive security or red-team programs; familiarity with SOC 2, ISO 27001, NIST, or FedRAMP technical controls; and certifications such as CISSP, CCSP, AWS Security Specialty, or GIAC.

At Onit, we’re committed to offering fair and competitive compensation. In addition to base pay, associates are eligible for an annual discretionary bonus. The final base salary you receive will reflect factors such as your skills, education, experience, and work location.

Benefits & Perks That Support You:
Onit offers a comprehensive total rewards package designed to support the whole employee at work and beyond:
Health Coverage Choices: Three medical plan options, plus dental and vision, so you can choose what fits best.  Employees on our HDHP plan also receive employer contribution to the HSA.
Retirement Savings: 401(k) with a 100% match on the first 3% and 50% on the next 2% of employee contributions.
Time Away: Flexible paid time off, 7 sick days, and 9 paid company holidays annually.
Family Support: Exceptional paid leave for birth parents, non-birth parents, and caregivers.  Onit also offers surrogacy and adoption reimbursement.
Income Protection: 100% employer-paid life and disability insurance.
Additional Coverage Options: Voluntary benefits including hospital indemnity, critical illness, accident, and even pet insurance.
Tax-Advantaged Accounts: Healthcare FSA, HSA, and dependent care FSA.
Community Engagement: One paid volunteer day each year to give back to the community.

Our Commitment to Applicants
We know that not everyone will check every box in a job description. At Onit, we value diversity, inclusion, and authenticity. If you’re excited about this role but your experience doesn’t align perfectly with every qualification, we encourage you to apply. You may be exactly who we’re looking for.

This position will remain open for applications for 7 calendar days from the posting date.

Onit Austin, Texas, USA Office

Austin, United States, 78759

Similar Jobs

36 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
225K-305K Annually
Senior level
225K-305K Annually
Senior level
Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Leads Motive’s global security compliance, privacy, risk, audit, customer trust, and AI governance functions. Builds integrated controls across ISO, SOC, PCI DSS, FedRAMP, GDPR, and related frameworks; manages audits, privacy operations, international regulatory readiness, customer security reviews, policies, training, and human risk. The role also establishes AI-first automation, AI governance, and a path to FedRAMP while leading a distributed team and partnering across Legal, Engineering, Product, IT, Finance, Sales, and Customer Success.
Top Skills: Ai GovernanceCcpaCloud-Native SaasContinuous Control MonitoringCpraData ResidencyEu Ai ActFedrampGdprIso 27001Iso 27701Iso/Iec 42001Law 25LgpdMexican LfpdpppNist Ai Risk Management FrameworkPci DssPipedaSoc 1Soc 2Trust Portals
36 Minutes Ago
Remote or Hybrid
39K-233K Annually
Mid level
39K-233K Annually
Mid level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Own and grow a West Hollywood sales territory through extensive in-person prospecting, business visits, demos, partnerships, and full-cycle deal closing. Build pipeline, sell Square’s software and hardware ecosystem to local businesses, manage Salesforce activity and forecasts, support onboarding, develop referrals, and consistently exceed sales quotas.
Top Skills: Payment Processing TechnologySalesforce
36 Minutes Ago
Remote or Hybrid
CA, USA
264K-395K Annually
Entry level
264K-395K Annually
Entry level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Lead complex card-acquiring projects from design through production, building reliable payment systems, tooling, testing frameworks, and network integrations. Work hands-on with ISO messages, routing, authorization, clearing, settlement, reconciliation, interchange, and tokenization. Set technical direction, mentor engineers, improve reliability, participate in on-call operations, and establish standards adopted across teams. The role requires deep acquiring expertise and experience operating large-scale financial systems.
Top Skills: Ai Coding AgentsCard-Network IntegrationsIso 20022Iso 8583Payment Tokenization

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account