AdTechTalent
Engineering6 days agoHybrid

Tatari

Head of Security

securityAWSKubernetesIAMincident responserisk managementSOC 2AILLMsSaaSAdTechprivacyCCPAsecurity automation

Key details

Salary

$200K – $250K

Employment type

Full-time

Seniority

Lead

Years experience

5-10

Location

New York, US

Full job description

Lead the Security Engineering team at Tatari, a late-stage AdTech SaaS company. Develop and execute the security roadmap for application, infrastructure, and corporate security. Manage incident response, risk management, security policies, and privacy programs including CCPA compliance. Collaborate with engineering and legal teams to integrate security best practices. Oversee customer security reviews and vendor relationships. Requires leadership experience in information security at a high-growth SaaS company, strong AWS and Kubernetes security skills, incident response expertise, risk management program experience, and knowledge of AI in security workflows. Compensation includes $200,000-$250,000 salary plus equity and benefits. Hybrid work model with 2 days per week in office in New York, NY.

What you'll do

  • Build and execute Tatari's security roadmap across application, infrastructure, and corporate security
  • Own incident response end-to-end (detection, containment, communication, post-mortem), and serve as the Security representative to executives
  • Own detection and monitoring across our AWS environment
  • Run our risk management program (intake, triage, acceptance, reporting), ensuring leadership receives clear and actionable visibility into our risk posture
  • Lead our Security Policy Advisory Group and develop internal policies, external-facing documentation, and security training
  • Partner with Legal on our privacy program as it evolves to meet AdTech-specific obligations (CCPA and other US state privacy laws)
  • Partner with Engineering teams to enable seamless integration of security best practices throughout the development lifecycle
  • Own customer-facing security: questionnaires, due diligence, compliance attestations, and security review calls
  • Report up to exec staff and board on posture, incidents, and program maturity
  • Manage relationships with external cybersecurity vendors

Requirements

  • Meaningful time leading information security teams at a high-growth SaaS company
  • Strong AWS and Kubernetes security expertise (IAM, networking, data protection, and threat detection)
  • Led incident response, including stakeholder communication and post-mortems
  • Built or significantly scaled a security risk management program
  • Track record of hiring, developing, and retaining security engineers
  • Broad knowledge across application, infrastructure, and corporate security, with deep expertise in multiple areas
  • Succeeded in leading security programs through SOC 2 and additional frameworks
  • Hands-on use of AI in security workflows (threat detection, vulnerability management, security automation), including working knowledge of how LLMs introduce new attack surfaces
  • Industry-recognized security certifications (e.g., CISSP, CISM) are a plus

Tech stack

AWSKubernetesIAMAILLMs

Benefits

Total compensation ($200,000-$250,000)Equity compensationHealth insurance coverage for you and your dependents401K, FSA, and commuter benefits$150 monthly spending account$1,000 annual continued education benefit$500 Newbie Productivity PerkUnlimited PTO and sick daysMonthly Company Wellness Day OffSnacks, drinks, and catered lunches at the officeTeam building eventsHybrid RTO of 2 days per week in office

Apply now

This MVP uses a placeholder application flow. In production, this section can connect to an external apply URL or a native application form.

Similar jobs

More roles worth a look

Related opportunities based on specialty and working model so candidates can keep momentum.