About the roleThe
Director, Cloud & Security Engineering owns cloud and security engineering across Microsoft Azure and AWS, along with network and security architecture, identity, threat detection and incident response, and vulnerability management, and produces the technical evidence needed for audits and customer security reviews. The role also owns the business-facing side of IT: demand intake and prioritization, and rolling roadmaps with priority functions so requests don't drop or get routed around IT. This role works closely with the Director of IT Operations and Infrastructure. This is a hands-on director role - leading a small senior team while staying technical enough to serve as an escalation point, with the team growing based on company needs.
ResponsibilitiesCloud & Security Engineering Strategy- Own cloud engineering across Microsoft Azure and AWS and set network and security architecture standards, including threat modeling and solution-level requirements
- Own build-vs-buy decisions, vendor and contract relationships for network and security platforms, and the domain's operating budget
Identity, Detection & Response- Direct identity security: privileged access, MFA, conditional access, and non-human identities
- Lead threat detection and incident response - playbooks, tabletop exercises, post-incident review - and report security posture and risk to leadership
Vulnerability & Compliance- Drive vulnerability management and remediation to closure against defined SLAs
- Produce the technical evidence needed for audits and customer security reviews
Email, SaaS & AI Security- Direct email and collaboration security: anti-phishing and BEC controls, DMARC/SPF/DKIM enforcement
- Govern SaaS security posture - OAuth and third-party app access, shadow-SaaS discovery, vendor security review - and set enablement-first guardrails for AI tools
Business Engagement- Own intake and prioritization of business demand through a single documented process
- Maintain rolling roadmaps with priority functions (starting with NOS and Legal) and feed those priorities into annual planning and budget
- Coordinate supported functions' cloud usage with engineering platform owners
People Leadership- Lead and develop the engineering team, serve as a hands-on escalation backup, and grow the team based on company needs
Experience- 10+ years in security and/or network engineering, including 4+ years leading technical staff or programs
- Cloud engineering and security depth across Microsoft Azure and AWS
- Deep identity security experience: privileged access management, MFA, conditional access, and non-human identities
- Experience building or maturing incident response (playbooks, tabletops) and owning vulnerability management with remediation SLAs
- Hands-on familiarity with the enterprise stack - SSE/zero-trust access (e.g., Zscaler), next-generation firewalls (e.g., FortiGate), EDR, SIEM, MDM - deep enough to direct the work and back up the team
- Fluency with compliance frameworks (NIST 800-53, CMMC, or equivalent) and producing audit-ready technical evidence
- Demonstrated experience partnering directly with business functions and managing demand against real capacity
- Strong communication skills; translates security risk for leadership and IT plans for the business
Preferred Experience- Experience in regulated industries (nuclear, defense, energy, or federal); familiarity with 10 CFR 73.54 and NRC cybersecurity requirements
- Relevant certifications: CISSP, CISM, CCSP, or equivalent
- Experience transitioning outsourced or contractor-run security functions in-house
- Experience securing AI tooling, large language models, or agentic workflows
Benefits- Competitive compensation packages
- 401k with company match
- Medical, dental, vision plans
- Generous vacation policy, plus holidays
Estimated Starting Salary RangeThe estimated starting salary range for this role is $198,000 - $228,000 annually less applicable withholdings and deductions, paid on a bi-weekly basis. The actual salary offered may vary based on relevant factors as determined in the Company's discretion, which may include experience, qualifications, tenure, skill set, availability of qualified candidates, geographic location, certifications held, and other criteria deemed pertinent to the particular role.