IT Security Technical Manager This is a HANDS ON TECHNICAL POSITION in which the ideal candidate will be able to function from not only a process and planning perspective but also be a key contributor to security architecture and technology decisions. This role will be responsible for the design, development, and implementation of new and innovative solutions to protect the Confidentiality, Integrity, and Availability of Jotform owned/ managed information assets. This is a full time, fully on-site position based out of our Vancouver, Canada office. Here’s what you will be doing: Ensure compliance with regulatory requirements and oversee incident response related to security, availability, and data privacy within the Jotform platform which is used by more than 30 million people worldwide. Maintain adherence to industry standards for a SaaS company while applying hands-on expertise in these areas. Ensure cybersecurity stays on the organizational radar. Identify and address potential vulnerabilities in our systems architecture, development processes, and other security practices. Detail out the security incident response program for business continuity, disaster recovery, and incident response plans. Continuously review technology proposals for security and privacy controls and recommend adjustments. Develop, publish, and maintain comprehensive information security standards, policies, procedures, and guidelines for our website in line with industry standards and best practices. Manage a team of global security engineers. Continuously educate our global DevOps Engineer and Developer teams on security awareness, arming them with the knowledge necessary to speak to our security confidently. Respond to client due-diligence requests for information security. Perform other miscellaneous duties as assigned. Education /Work Experience /Technical Requirements: Engineering degree from an accredited institution. Minimum 10 years of hands-on security experience in architecting, engineering, or administering SaaS solutions. An understanding of agile software development and secure software development lifecycles. In-depth knowledge of securing web applications and applicable laws and regulations like PCI-DSS, SOC 2, and HIPAA in a fast-paced regulated work environment. Professional Certification for one of the following GSEC/CISA/CISM/CISSP/CSCS/CEH or equivalents or willingness to obtain one within 8 months of the date of hire. Solid knowledge in network security, authentication protocols, cryptography, and network security principles. Proficiency in analyzing security logs, including but not limited to application logs, server logs, and network traffic, to detect suspicious activities. Hands-on experience with PHP, MySQL, Node.js, Docker, and Elasticsearch. Knowledge of securing these technologies and maintaining a secure infrastructure is a must. Personal Specification/Skills: High external focus for industry trends and cybersecurity threats. Enthusiasm and a high degree of adaptability. Strong diagnostic skills and holistic view for solution. Ability to clearly articulate complex concepts (both written and verbally). Strategic thinker who can translate vision to tangible execution and results. Able to work at incredible speed and with focus is a must for this role, candidates must be able to prioritize responsibilities to manage a large workload with very tight timelines. Seniority level: Director Employment type: Full-time Job function: Software Development Jotform is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law. #J-18808-Ljbffr