Leena AI is seeking a visionary and accomplished Director of Security & Privacy Engineering to lead our efforts in protecting sensitive data ensuring compliance and building a robust security posture. This is a pivotal role reporting directly to the CTO & CEO with the responsibility of ensuring data security privacy and compliance across all customers. You will play a critical role in defining and executing a forwardthinking security strategy to protect sensitive data ensure regulatory compliance and respond to an evolving threat landscape.
Responsibilities:
- Develop and implement a comprehensive security and privacy program encompassing policies procedures standards and controls to safeguard data and systems.
- Incident Management & Risk Mitigation Lead the charge on detecting responding to and mitigating security and privacy incidents. Ensure business continuity through proactive risk management and threat intelligence.
- Conduct regular risk assessments to identify vulnerabilities and prioritize security initiatives.
- Define and execute quarterly business goals (QBRs) specific to security and privacy collaborating with crossfunctional teams.
- Provide expert guidance and support to Sales presales legal and engineering teams on security and privacy matters.
- Build and lead a highperforming team of security engineers.
- Handle customer inquiries and concerns related to information security and privacy.
- Manage all security operations including vulnerability management risk management SIEM and internal SOC.
- Stay abreast of evolving global and regulatory requirements and proactively ensure Leena AI meets compliance standards.
- Foster relationships with external security partners legal advisors and regulators to advance Leena AI s security and privacy objectives.
Qualifications:
- 10 years of leadership experience in security information security privacy or compliance roles in enterprise SaaS or cloud environments.
- Expertise in global compliance frameworks such as GDPR HIPAA CCPA SOC 2 ISO 27001 and NIST.
- Strong cloud security knowledge especially in AWS and multicloud environments..
- Experience leading Security Operations Centers (SOC) incident response and vulnerability management.
- Exceptional communication problemsolving and critical thinking skills.
- Exceptional leadership and communication skills to guide diverse teams collaborate crossfunctionally and engage with customers and regulators.
- Bachelors degree in a related field; Masters degree preferred.
security,iso 27001,soc 2 compliance,compliance,risk,risk management,vulnerability management,information security,team leadership,cloud security (aws, multi-cloud environments),gdpr compliance,customer engagement,security and privacy policies and procedures,security operations center (soc) management,compliance frameworks (gdpr, hipaa, ccpa, soc 2, iso 27001, nist),incident response,regulatory compliance,leadership and communication,security and privacy program development