Director, Security Engineering

Company: Optimizely
Apply for the Director, Security Engineering
Location: London
Job Description:

Overview

In this role you own Optimizely’s security program end to end, shaping strategy, governance, and operations to outpace AI-driven threats. You will lead incident response, build scalable security platforms, and drive AI governance across the organization. You’ll partner with sales, audits, and executive teams to communicate risk and ensure secure-by-default software lifecycles. This is a chance to influence security at scale in a fast-growing MarTech company and advance AI security maturity.

Responsibilities

  • Co-own hardened infrastructure and platform security, including network, identity, secrets, and telemetry pipelines.
  • Partner on control framework, audit evidence, third-party risk, and enterprise risk reporting.
  • Lead reliability engineering efforts, unify incident tooling and postmortem discipline.
  • Scale security as a core capability with automation and self-service tooling.
  • Consolidate tools and manage vendor/partner security for efficiency.
  • Leverage AI to improve triage, evidence collection, and review processes.
  • Drive security governance for AI features, prompt handling, and anomaly detection.
  • Oversee enterprise architecture and risk-based vulnerability management.
  • Lead incident command, tabletop exercises, and communications for high-severity events.
  • Direct people, process, and technology initiatives across cloud, identity, data, and AI security.

Key requirements

  • 10+ years in security engineering or operations within cloud-native SaaS, with people leadership experience.
  • Hands-on detection and response capability and ability to read detections and queries.
  • Proven incident command involving customer and regulatory notifications.
  • Deep cloud security expertise (AWS or Azure), containers, IaC, CI/CD, and IAM.
  • Practical automation skills (Python, Go) and ability to expand coverage efficiently.
  • Working understanding of AI/ML security and attacker techniques.
  • Experience with customer security reviews, audits, escalations, and executive briefings.
  • Strong collaboration and influence across security, compliance, risk, and reliability teams.
  • Excellent written and verbal communication for engineers, executives, and customers.
  • Nice to have: OWASP Top 10 for LLMs, NIST AI Risk Management, MITRE ATLAS, SOC 2, ISO 27001.
  • collaboration
  • influence
  • communication
  • cloud security (AWS/Azure)
  • identity and access management
  • containers

…

Posted: September 14th, 2026