Back to Jobs
Automox
Engineering & Architecture 11h ago

Vice President of IT and Security

Automox
United StatesUnited States
Full-time
$250,000–$270,000 USD
Senior-Level

Job Description

Key Skills Required

Master these to land this role

Product SecuritySecurity EngineeringSOC 2Incident ResponseLeadershipIT Operations

Want to know if you're a match for this job?

Calculate My Match Score

Are you ready to own something big? Automox is turning IT admins into IT heroes by replacing traditional tools with their award-winning cloud-native endpoint management platform. Their product works autonomously, and so do their teams. They value a ‘one team’ mentality where everyone’s unique skills contribute to an environment that encourages collaboration and ownership. At Automox, you’re enabled to do your best work, grow your career, and have an impact that will be noticeable.

We’re looking for an experienced leader of IT and Security teams to join their team as Vice President of IT and Security. This is a hands-on, agile role that requires both attention to detail and the ability to think broadly across a range of technical domains. Success in this role will depend on building strong, authentic relationships with leaders across the business to deliver practical, solutions-oriented guidance. This role is ideal for a proven leader who is eager to grow within a fast-paced B2B SaaS company and gain hands-on experience across multiple domains under the guidance of their SVP of Operations & General Counsel. If you’re excited to blend security and IT expertise with business impact, they’d love to connect.

Team Leadership and Org Building

Seven direct reports across five disciplines. Building the team is the job, not the overhead.

  • Lead and coach a high-performing Security & IT organization by developing strong technical talent and building succession depth across critical roles and capabilities.
  • Shape the IT and Security organization for current execution and near-term scale, coordinating efforts between CorpSec, ProdSec, GRC, and IT.
  • Own the IT and Security budget, and connect headcount and tooling spend to the risk each actually reduces.
  • Build a culture of clarity and ownership across two teams.
  • Set the standards, SLAs, and runbooks that let both teams execute consistently.
  • Represent both functions in leadership discussions, and translate operational risk into terms the executive team can act on.
  • Partner with Engineering, Product, DevOps, People Ops, and Finance on shared programs: onboarding and offboarding, SaaS rollouts, migrations, and compliance.
  • Partner with Sales to support security reviews by Automox’s most sophisticated customers.

Detection and Incident Response

You own how Automox sees threats and how Automox responds to them. This experience must be hands-on and recent.

  • Own incident response end to end: detection, triage, containment, eradication, recovery, and the post-incident review that changes what happens next time.
  • Build and tune detections against real adversary behavior rather than vendor defaults, and measure them by what they catch and what they miss.
  • Run the on-call rotation, escalation paths, and severity model, and keep the runbooks current enough that someone else can execute them at 2 a.m.
  • Report honestly on posture, including what you cannot yet see.

Product Security

  • Own the ProdSec program and partner with Engineering and Product to embed security into the development lifecycle.
  • Run vulnerability management across the product, including triage, ownership, and time-to-fix accountability.
  • Build the relationships that get security work into sprints without escalation, and know when escalation is the right answer anyway.
  • Surface product risk early, with recommendations attached.

IT Operations

  • Set and execute the strategy for endpoints, identity, and SaaS at scale, covering MDM, patch compliance via Automox, hardware lifecycle, and zero-touch provisioning across macOS and Windows.
  • Own the IAM program: provisioning, group design, MFA, and access reviews.
  • Own the company’s core Artificial Intelligence, SaaS, and cloud technology ecosystem, including collaboration, source control, and secrets management platforms, ensuring tools are secure, scalable, cost-effective, and appropriately utilized.
  • Track KPIs across ticket responsiveness, patch and MDM coverage, access reviews, and IT spend, and use them to drive improvement.
  • Serve as a senior Automox power user and a direct feedback channel to Product and Engineering.

Governance, Risk, and Compliance

Automox has an established SOC 2 program. You are inheriting it, not building it.

  • Keep SOC 2 running as continuous evidence collection and control operation rather than an annual scramble, and own the audit relationship.
  • Maintain the risk register and vendor review process, and keep both connected to what the security roadmap actually funds.

What You Bring

Experience

  • 8+ years managing people, including performance management, hiring, and developing engineers into stronger engineers.
  • 12+ years in security engineering or security operations, with hands-on detection engineering and incident response as a core part of that time. You have run real incidents, not just reviewed them.
  • Experience partnering with an engineering organization on product security, with results you can point to.
  • Direct IT operations responsibility, or a combined security and IT role.
  • A track record of turning strategy into execution with measurable outcomes.
  • Working knowledge of SOC 2 sufficient to keep an existing program healthy. You do not need to have built one.

Technical

  • Detection engineering across endpoint, identity, cloud, and SaaS telemetry, including SIEM or equivalent log pipeline design.
  • Practical knowledge of adversary tradecraft and how it shows up in your data.
  • Application and cloud security fundamentals strong enough to review a design and be useful in the review.
  • A modern identity provider, MDM for macOS and Windows, collaboration suite administration, source control administration, and cloud IAM.
  • Working Linux experience.
  • Working familiarity with PowerShell, bash, and Python, and sound judgment reviewing AI-generated automation for correctness and security.
  • Sound judgment on architectural and tooling trade-offs.
  • Leadership

    • Balances longer-horizon planning against daily operational demand across two functions.
    • Clear and credible in both technical and executive conversations, and action-oriented on risk.
    • Calm and decisive under incident pressure, and candid afterward about what went wrong.
    • A culture builder who is data-driven and energized by leaving things better than they were.

How would you rate this job post?

See what other professionals think about this role.

banner

Automox is a premier, enterprise-grade IT automation platform engineered to orchestrate massive-scale endpoint management and cyber-hygiene ecosystems. Operating as a cloud-native "autonomous endpoint" hub, the company eliminates the operational friction of traditional, legacy management models—which frequently suffer from fragmented on-premises hardware, clunky VPN dependencies, and disconnected patch-management silos—by seamlessly deploying advanced "Worklet" telemetry, rigorous policy-driven automation architectures, and cohesive cross-platform integration frameworks. Moving beyond rigid legacy software paradigms, Automox empowers global IT and security teams to dynamically synchronize their OS, third-party software, and configuration update pipelines across Windows, macOS, and Linux devices with elite, scalable, and audit-ready execution. Under the hood, their sophisticated proprietary operational infrastructure—bolstered by AI-powered automation and a lightweight persistent agent—natively manages complex global multi-region endpoint ingestion, instantaneous automated vulnerability remediation, and compliance-hardened policy enforcement, providing the necessary operational foundation to support the modern, high-velocity digital economy. What sets Automox apart is its uncompromising dedication to frictionless IT-orchestration; by bridging the gap between highly technical, performance-intensive endpoint management demands and accessible, high-velocity cloud-native interfaces, the firm empowers modern commercial organizations to radically accelerate their security-deployment velocity, eliminate systemic administrative-bottlenecks, and build an unassailable foundation for continuous commercial and institutional dominance in the modern, AI-transformed global-technology landscape.

Safety First

  • Never pay for a job application.
  • Do not share sensitive bank info.
  • Verify the client before starting work.
Learn More