OverviewAssociate Vice President (AVP), Security Engineering & Operations
Location: Remote – US Work Model: Remote
About the Role
This is a high-visibility leadership opportunity to build and scale a modern, AI-enabled security engineering and operations function at a global leader in content intelligence. The Associate Vice President (AVP), Security Engineering & Operations owns the strategy, architecture, and execution behind Hyland's security engineering and operations program — protecting the business, enabling engineering, compliance, and adjacent security teams, and reducing operational friction across the enterprise. Reporting to the CISO, this role embeds security into asset management, cloud operations, infrastructure, and automated workflows while driving continuous improvements in security posture, resilience, and incident readiness. The AVP leads the Security Operations Center (SOC), Enterprise and Cloud Security initiatives, and offensive/defensive security operations, partnering across the business to align security investment with enterprise growth, customer commitments, and innovation goals.
Here's What You'll Do
- Build and lead a highly efficient, AI-enabled Security Operations Center (SOC), delivering threat detection, exposure management, posture management, incident response, and digital forensics capabilities; define and own KPIs for SOC performance including MTTD, MTTR, and SLA adherence, driving measurable and continuous improvement
- Champion the adoption of AI and automation across security operations to sharpen detection accuracy, reduce alert noise, and scale coverage without linear headcount growth
- Direct and approve the design of enterprise security systems including zero trust architecture, network segmentation, and identity security; drive offensive and defensive security operations including red team engagements and blue team resilience to continuously test and strengthen Hyland's security posture
- Lead end-to-end ownership of multi-faceted and distributed vulnerability management programs, including prioritization frameworks and release gates tied to business risk; serve as a strategic partner to engineering, cloud, and infrastructure teams to embed security into system design, automation pipelines, and operational workflows
- Set the vision for the Security Engineering & Operations function, collaborating with senior management to define departmental strategy, roadmap, and budget; develop future leaders and build a management team bench capable of meeting the demands of rapid growth, fostering a culture of accountability and continuous improvement
- Act as an escalation point for complex, high-severity security issues and remove obstacles for security and stakeholder teams; partner across the business to align security investment with enterprise growth, customer commitments, and innovation goals
Technology Tools
- Multi-Cloud Environments (AWS, Azure, GCP)
- Cloud-Native Application Protection Platforms (CNAPP) / CSPM
- Identity & Access Management (IAM) / PAM
- Threat Intelligence Platforms
- Vulnerability & Exposure Management Tooling
- CI/CD Pipelines
- SIEM / SOAR Platforms
- EDR / XDR Solutions
- Zero Trust Architecture
Role Essentials
- Bachelor's degree in computer science, information security, engineering, or a related field, with 15+ years of progressive experience in cybersecurity or engineering leadership, including at least 5 years in SaaS cloud-native environments; up to 10% travel time required
- 8+ years of people leadership experience, including building, scaling, and directly managing multi-team security organizations through periods of rapid growth
- Proven track record of leading incident response, cloud security, or DevSecOps functions at enterprise scale; demonstrated fiscal responsibility and accountability in managing budgets with a track record for consolidating tooling expenses
- Deep expertise in DevSecOps, cloud-native security, security engineering, and automation, with exceptional knowledge of CI/CD, SRE, and multi-cloud operating environments
- Relevant certifications such as CISSP, CISM, SANS/GIAC, CCSP, or OSCP, with exceptional ability to design, implement, and prove security effectiveness through evidence-based testing and measurable outcomes
What We'd Like to See
- Deep familiarity with cloud-native security architecture to act as a deeply embedded partner to architecture and development teams
- Experience defining and owning KPIs for SOC performance and engineering delivery, with a focus on coverage gap closure
- Strong ability to build and maintain relationships with stakeholders, sharing threat intelligence and best practices across the organization
- Experience with zero trust architecture, network segmentation, and identity security design and implementation
- Strong people leadership skills with a proven track record of developing future leaders and building high-performance security teams