Eltropy

Director of Information and Data Security

Eltropy$200K — $300K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in cybersecurity or information security with leadership responsibility.
  • Experience in SaaS environments across security operations, cloud security, and identity management.
  • Hands-on expertise in incident response, vulnerability management, and endpoint security.
  • Experience collaborating with Engineering and DevOps to enhance security for cloud applications.
  • Familiarity with secure development practices and threat modeling.
  • Ability to coordinate security remediation efforts, including vulnerability management activities.
  • Strong communication skills for conveying risks and priorities to leadership.

Responsibilities

  • Define and enhance the security architecture across cloud and data protection.
  • Lead the operational security program and incident response processes.
  • Strengthen identity and access governance frameworks.
  • Oversee endpoint security and IT security governance.
  • Direct business continuity and disaster recovery planning and testing.
  • Collaborate with cross-functional teams to ensure product security in SaaS offerings.
  • Establish a secure development framework and training for developers.

Benefits

  • Healthcare, dental, and vision insurance included.
  • 401(k) retirement savings plan with company match.
  • Generous paid time off and vacation policy.
  • Opportunities for professional development and growth.
  • Flexible work arrangements with a strong focus on work-life balance.
Full Job Description
Location: Santa Clara, CA (4 days onsite)
Total Compensation: $200,000-$300,000
Role Summary

We are seeking a Director of Information Security to lead and strengthen Eltropy's security architecture, operational security program, IT security governance, and product security practices. This role will work closely with Engineering, DevOps and Product teams to build a scalable and resilient security foundation for a high growth SaaS Fintech.

This is a leadership role for someone who can operate strategically while also bringing strong hands-on experience across security operations, cloud and infrastructure security, product security, vulnerability management, and modern security governance. The role will lead the company's overall security posture across internal systems and enterprise operations, while partnering with Engineering and Product teams to embed security into the design, development, and operation of our platform, including AI-enabled capabilities.
Responsibilities
  • Define and enhance Eltropy's security architecture across cloud infrastructure, identity and access, endpoint security, logging, monitoring, and data protection.
  • Lead the operational security program, including incident response processes, security runbooks, monitoring, and escalation frameworks.
  • Strengthen identity and access governance, including role-based access controls, privileged access management, joiner/mover/leaver processes, and periodic access reviews.
  • Oversee endpoint security, asset inventory, and IT security governance across the organization.
  • Lead business continuity and disaster recovery planning, readiness, and testing.
  • Partner with SRE / DevOps, Engineering, and Product teams to govern product security for the SaaS platform.
  • Establish and maintain a secure development framework, including secure SDLC practices, secure coding standards, threat modeling, code scanning, security reviews before release, and developer security training.
  • Oversee the vulnerability management program across applications, cloud infrastructure, endpoints, and third-party dependencies.
  • Manage remediation tracking for annual penetration tests and coordinate with Engineering and relevant teams on remediation efforts.
  • Define and strengthen security and governance controls for internal AI tool usage and AI-enabled product capabilities.
  • Develop practical guardrails for AI security, customer data privacy, and responsible use of AI technologies across internal and customer-facing environments.
  • Partner cross-functionally to provide visibility to leadership on security risks, remediation priorities, and program maturity.
Required Qualifications
  • 10+ years of experience in cybersecurity, information security, security engineering, or related roles, including leadership responsibility.
  • Experience in a SaaS environment with responsibility across multiple security domains such as security operations, cloud security, IT security, identity and access management, or product security.
  • Strong hands-on experience with incident response, vulnerability management, endpoint security, identity and access controls, and centralized logging and monitoring.
  • Experience partnering with Engineering and DevOps teams to strengthen cloud and application security.
  • Experience establishing or improving secure development practices, including secure SDLC, threat modeling, code scanning, and release security reviews.
  • Experience coordinating remediation of security findings, including penetration test findings and vulnerability management activities.
  • Demonstrated ability to lead cross-functionally and influence technical, operational, and compliance stakeholders.
  • Strong written and verbal communication skills, including the ability to clearly communicate risks, priorities, and recommendations to senior leadership.
Preferred Qualifications
  • Experience in fintech, regulated SaaS, or environments serving financial institutions.
  • Experience working in organizations with SOC 2 or similar security and compliance frameworks.
  • Experience with business continuity and disaster recovery planning and testing.
  • Experience with AI security, AI governance, or security review of AI-enabled product capabilities.
  • Familiarity with data protection and privacy considerations in customer-facing SaaS environments.
  • Experience building or scaling security programs in a high-growth company.


About Eltropy

Eltropy is a software company that provides a secure messaging platform for financial institutions. The platform enables financial institutions to communicate with their customers via text messaging, which is a more convenient and efficient way to communicate than traditional methods such as email or phone. Eltropy's platform is designed to be compliant with regulations such as the Telephone Consumer Protection Act (TCPA) and the Financial Industry Regulatory Authority (FINRA) rules. The company was founded in 2013 and is headquartered in Redwood City, California.
Learn more about Eltropy
Size
50 employees
Industry
Net Income
-$500,000
Founded
2013
5 Year Trend
+50%
Revenue
$1 million

Similar Jobs

More Jobs at Eltropy

More Information Technology Jobs

Find similar Director of Information and Data Security jobs: