Lead the information security function at 7AI, building programs and policies from the ground up in a pivotal startup environment.
Posted by employer 2 weeks ago
First seen on Joblaze 1 week ago
Last verified on the company career page 2 hours ago
Skills & Technologies
AI in the day-to-day
Our platform pairs a federated SIEM with AI agents that detect, investigate, respond, and hunt.
Requirements
Not disclosed in this posting: compensation, work arrangement, visa sponsorship.
Joblaze summary
The Director of Information Security at 7AI is responsible for establishing and leading the company's information security programs, policies, and incident response strategies. This role requires a strong background in IT security, familiarity with compliance frameworks, and the ability to communicate complex concepts to diverse teams. Ideal candidates will have over seven years of hands-on experience and a track record of building security functions from the ground up, making it well-suited for seasoned professionals looking to shape a pivotal security landscape in a rapidly evolving startup.
Joblaze insights
Quick facts
From the original posting
7AI is the foundational AI security company. Founded in 2024 by Cybereason co-founders Lior Div and Yonatan Striem-Amit, we came out of stealth in February 2025 to take on the non-human work of the SOC. Our platform pairs a federated SIEM with AI agents that detect, investigate, respond, and hunt, plus dedicated threat hunting and threat intelligence, with humans on the loop.
Backed by $166 million in total funding from investors including Index Ventures and Blackstone, we're building the AI foundation for security operations in the agentic era, and we're still early. That's the appeal: you'll join at a pivotal stage where your work shapes what 7AI becomes, alongside security veterans who've built this before. Our culture runs on respect, collaboration, and a shared bar for excellence, all pointed at one goal, delivering real outcomes for the customers who trust us to defend them.
You'll take ownership of information security and information systems, building the programs, policies, and team behind them. You'll lead security operations, compliance, and incident response, and work across the company so our systems, data, and people meet the standards we hold ourselves to. This is a foundational role: you're building the function from the ground up, not maintaining what's already there.
Maintain and improve the company's information security practices, tools, and procedures.
Monitor internal systems for vulnerabilities or breaches, and lead incident response.
Develop, implement, and enforce security policies and standards across the organization.
Lead compliance initiatives for frameworks including SOC 2, ISO 27001, ISO 42001, and GDPR.
Run internal risk assessments, coordinate third-party audits, and track findings to resolution.
Own identity and access management, applying least-privilege principles across the company.
Run security training and awareness programs for employees across every department.
Assess and manage the security posture of third-party vendors and cloud services.
Work with engineering and IT to build security into systems and workflows from the start.
Track emerging threats, technologies, and regulatory changes that affect the company's security posture.
Build and lead a team to execute and scale security and information systems work.
Drive automation across the company to raise security maturity in both product and information security.
Partner with platform teams to support the company's growth.
7+ years of hands-on experience in information security, IT security, or a related field.
Familiarity with common security and compliance frameworks (SOC 2, ISO 27001, NIST, GDPR, etc.).
Strong understanding of modern IT infrastructure: cloud services, SaaS, access controls, security architecture.
Excellent communication skills. You can translate complex security concepts for non-technical teams.
Experience managing teams and driving cross-functional projects.
Relevant certifications (e.g., CISSP, CISM, CompTIA Security+, ISO 27001 Lead Implementer).
Exposure to secure software development practices (DevSecOps, secure SDLC, etc.).
Experience in security operations and/or incident response.
Experience in a startup or small company environment.