- Company Name
- Sentry
- Job Title
- Head of Security
- Job Description
-
Job title: Head of Security
Role Summary: Lead the design, execution, and continuous improvement of a comprehensive security program for a multi‑tenant SaaS platform and open‑source product. Own security strategy, policy, operations, and cross‑functional collaboration to safeguard data, infrastructure, and software across the organization.
Expectations: Drive measurable risk reduction, establish security by default, and deliver scalable processes that support rapid product development. Build and mentor a high‑performance security team, align security objectives with business goals, and report posture to executive leadership and board.
Key Responsibilities:
- Design, implement, and operate controls, guardrails, and monitoring for a modern, high‑scale, multi‑tenant SaaS.
- Partner with IT & Compliance on identity and access management, endpoint security baselines, vendor risk, policy, and audits.
- Develop and execute a multi‑year security strategy, OKRs, and roadmaps; communicate risks, trade‑offs, and outcomes to executive leadership.
- Build application and product security programs: bug bounty, penetration testing, red teaming, secure SDLC, and training.
- Prioritize automation and tooling to reduce manual toil and improve risk metrics.
- Recruit, hire, and develop world‑class security talent across AppSec, ProdSec, and GRC.
- Influence product roadmaps and customer‑facing security features (MFA, audit logging, data controls).
- Explore and advocate for future security‑adjacent product opportunities.
- Manage audit evidence for SOC 2/Type II, ISO 27001, and other relevant frameworks; drive remediation and close findings.
- Communicate security posture and incidents to leadership and board as needed.
Required Skills:
- Deep expertise in at least two of: application/product security, infrastructure security, corporate/IT security.
- Proven ability to build and manage security programs (bug bounty, pen testing, red teaming, secure SDLC, training).
- Demonstrated SaaS security experience with multi‑tenant architecture, cloud controls, and customer‑facing assurances.
- Strong technical foundation (software engineering or CS degree).
- Leadership experience managing security teams, setting strategy, and executing roadmaps.
- Excellent collaboration with cross‑functional teams (Engineering, Product, IT, Compliance).
- Experience with auditors (SOC 2/Type II, ISO 27001) and evidence collection.
- Strong communication skills for executive and board level reporting.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or equivalent software engineering experience.
- Relevant certifications such as CISSP, CISM, CEH, or equivalent are highly desirable.
San francisco, United states
Hybrid
Senior
01-02-2026