At a Glance
- Tasks: Lead the Security and Compliance Engineering team, developing security strategies and improving incident response.
- Company: Viator, a Tripadvisor company, is the top marketplace for unforgettable travel experiences.
- Benefits: Enjoy competitive pay, flexible work options, tuition assistance, and travel perks.
- Why this job: Join a dynamic team focused on innovation and making travel extraordinary while enhancing security.
- Qualifications: Proven leadership in security within software development; strong technical skills in cloud security required.
- Other info: Remote work available from the UK, Poland, or Portugal; hybrid options in Oxford, London, or Lisbon.
The predicted salary is between 43200 - 72000 £ per year.
Viator, a Tripadvisor company, is the leading marketplace for travel experiences. We believe that making memories is what travel is all about. With industry-leading flexibility and last-minute availability, it's never too late to make any day extraordinary.
Viator is seeking an experienced Director of Security with a blend of software engineering and security engineering skills to lead our Security and Compliance Engineering team, reporting to the head of our engineering platform. This role can be either remote from anywhere in the UK, Portugal, or Poland, or a hybrid setup based out of our Oxford, London, or Lisbon offices.
You will be responsible for developing and implementing security strategies across the Security Engineering and Security Operations teams, as well as liaising with other teams delivering parts of our overall security posture. The ideal candidate will have a proven track record of building and/or implementing and improving the maturity of security programs in Cloud-based E-Commerce Marketplaces and possess excellent leadership and communication skills. You must have significant engineering acumen as this is a highly technology-driven role.
What You Will Do:- Assess security risks and identify initiatives to address the biggest security risks we face and take them through to delivery.
- Own and improve the Security Incident response process.
- Own and improve Viator’s ability to detect and respond.
- Own the Risk and Compliance programs.
- Consult with product engineering or other engineering platform teams to integrate security and compliance best practices into their engineering designs.
- Implement tools for automating security processes (e.g. secrets management).
- Design and lead our security champions program.
- While the core focus of the role is on leadership, strategy, and executive communications, you should have enough technical skills/understanding of our stack to manage and challenge a highly technical team and help them arrive at strong decisions.
- Prior experience in managing a security team within a software product development company, including performance management of your direct reports and teams.
- You approach security with a DevOps mindset.
- You prefer security by enablement, automation, and guardrails over gates and roadblocks.
- You have familiarity with securing and operating on public Cloud (AWS, GCP, Azure) providers.
- The ability to guide and mentor other members within the team and improve the way we collaborate, learn, and share ideas.
- Demonstrated excellence participating on cross-functional teams in fast-paced environments, both in terms of technical leadership and hands-on coding.
- You possess domain knowledge of common information security, business continuity, and privacy management frameworks, regulatory requirements, and applicable standards such as ISO 27001, SOC 2, HIPAA, GDPR, PCI, FedRamp, SOX, etc.
- You are an excellent written and verbal communicator.
- You can articulate complex cybersecurity concepts to both technical and non-technical audiences.
- Leading security initiatives impacting an engineering platform.
- Experience securing large scale distributed systems.
- Demonstrated experience developing AWS or other cloud native applications.
- Experience with CI/CD, Gitlab, and Terraform.
- Familiarity with the PCI DSS.
- Experience in managing multiple engineering/security teams.
- Competitive compensation packages, including base salary, annual bonus, and equity.
- Flexible work arrangements with a remote-friendly approach.
- Flexible schedule promoting work-life balance.
- Donation matching for charitable contributions.
- Tuition assistance for career development.
- Lifestyle benefit for personal spending.
- Travel perks for employee development.
- Employee assistance program for personal support.
- Health benefits with great coverage.
- We aspire to lead.
- We’re relentlessly curious.
- We’re better together.
- We serve our customers, always.
- We strive for better, not perfect.
- Our workplace is for everyone.
If you need a reasonable accommodation or support during the application or the recruiting process due to a medical condition or disability, please reach out to your individual recruiter or send an email to let us know the nature of your request. Please include the job requisition number in your message.
Director of Engineering, Security (Viator) employer: TN Portugal
Contact Detail:
TN Portugal Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Director of Engineering, Security (Viator)
✨Tip Number 1
Familiarise yourself with Viator's core values and mission. Understanding their focus on customer service and teamwork will help you align your responses during interviews, showcasing how your leadership style complements their culture.
✨Tip Number 2
Highlight your experience with cloud security and compliance frameworks relevant to the role. Be prepared to discuss specific projects where you've successfully implemented security strategies in cloud environments, as this will demonstrate your technical acumen.
✨Tip Number 3
Prepare to articulate complex cybersecurity concepts clearly. Since the role requires communication with both technical and non-technical teams, practice explaining your past projects in a way that is accessible to all audiences.
✨Tip Number 4
Network with current or former employees of Viator on platforms like LinkedIn. Engaging with them can provide insights into the company culture and expectations, which can be invaluable during your interview process.
We think you need these skills to ace Director of Engineering, Security (Viator)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security and engineering. Focus on your leadership roles, technical skills, and any specific achievements related to security programs in cloud-based environments.
Craft a Compelling Cover Letter: In your cover letter, express your passion for security and compliance in the tech industry. Mention how your background aligns with Viator's mission and values, and provide examples of how you've successfully led security initiatives in previous roles.
Showcase Technical Acumen: Demonstrate your understanding of security frameworks and cloud technologies in your application. Use specific terminology and examples that reflect your familiarity with AWS, GCP, or Azure, as well as your experience with CI/CD processes.
Highlight Communication Skills: Since the role requires excellent communication skills, include examples of how you've effectively communicated complex cybersecurity concepts to both technical and non-technical audiences. This will show your ability to bridge gaps between teams.
How to prepare for a job interview at TN Portugal
✨Showcase Your Leadership Skills
As a Director of Engineering, Security, you'll need to demonstrate your leadership capabilities. Prepare examples of how you've successfully led teams in the past, particularly in security and compliance contexts. Highlight your ability to mentor and guide team members.
✨Understand the Technical Stack
Familiarise yourself with the technical stack used by Viator, especially in cloud environments like AWS, GCP, or Azure. Be ready to discuss how you can manage and challenge a highly technical team, and provide insights into security best practices relevant to their operations.
✨Communicate Complex Concepts Clearly
You’ll need to articulate complex cybersecurity concepts to both technical and non-technical audiences. Practice explaining key security principles in simple terms, as effective communication is crucial for this role.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about potential security risks Viator might face and how you would address them. This will showcase your strategic thinking and risk management abilities.