Head of Security
The Company
Private Tech was founded in early 2022 by Palantir and Anduril alums with deep expertise in privacy and national security. While running Palantir’s US national security business, our CEO became passionate about privacy and security on mobile devices. Our mission is to be a force for good in global wireless.
At Private Tech, we are not just another cellular service provider; we are the architects of a privacy-centric movement that starts with the devices in your pocket. We are building a cellular network that helps citizens, including those responsible for our nation’s security, regain control of their own data.
We believe that where we are, where we go, and whom we are with are among our most personal information and should be kept private. Privacy is not something you achieve by limiting yourself or by doing less, it is a set of features to be built so you can do more. We have raised money from Andreessen Horowitz and other top-tier VCs, and are excited to grow the team.
The Team
We are relentless builders, constantly pushing the boundaries of what's possible and bringing to life ideas that have never before existed. Innovation is at the core of everything we do. At Private Tech, we trust our team to deliver greatness and empower them to make a profound impact. As a member of our team, you will collaborate seamlessly with our diverse group of talented engineers and other team members, enjoying dynamic interactions with colleagues from across the organization.
The Role
Private Tech is seeking a highly skilled and experienced Head of Security to develop and implement a comprehensive IT security strategy and ensure the protection of our customers' data and privacy. As the Head of Security, you will play a critical role in designing and implementing a robust security framework that addresses the unique needs of both government and consumer customers. Your expertise will be instrumental in aligning our security practices with relevant industry standards, regulations, and best practices.
To join our team, you should be excited to:
Dive into a well-funded but early-stage startup. We’re in a scrappy phase- be comfortable getting a little uncomfortable.
Reclaim some of the personal privacy we have all sacrificed as smartphone adoption has grown.
Flex your technical skills on hard, important problems with serious implications for consumer privacy and national security.
Be accountable to critical deadlines, and enjoy knocking them out of the park with the support of a high-performing team.
Push the envelope! We are using very new technology in novel ways.
Work in person! While we all take work-from-home days and there are no facetime requirements or set hours here, our default work location is our DC or NY offices. We enjoy the informal culture and serendipity that in-person work enables.
We offer competitive salary, benefits, and equity with early-stage upside.
Responsibilities
Develop and execute a comprehensive IT security strategy: Design and implement an overarching security strategy that addresses the specific needs of both government and consumer customers. Align the strategy with relevant industry standards, regulations, and best practices, such as ISO 27001, NIST Cybersecurity Framework, FISMA, FedRAMP, NIST SP 800 series, and CJIS.
Establish and enforce security policies and procedures: Create and maintain robust security policies, standards, and procedures. Ensure compliance with applicable privacy regulations and security controls.
Conduct risk assessments: Perform comprehensive risk assessments to identify potential security risks and vulnerabilities. Develop and implement mitigation strategies to address identified risks, considering the specific privacy concerns of consumer customers, government security requirements, and guidelines.
Implement secure architecture and infrastructure: Collaborate with the engineering and infrastructure teams to design, deploy, and maintain a secure MVNO platform. Select appropriate security technologies and solutions that meet both government security requirements and consumer privacy expectations.
Manage security incidents and investigations: Lead investigations into security incidents, data breaches, unauthorized access, and other potential security breaches. Develop and implement incident response plans that align with both government incident reporting requirements, as specified in FISMA, FedRAMP, NIST SP 800 series, and CJIS, and consumer privacy expectations.
Build and lead a security team as the company grows: Recruit, mentor, and manage a team of security professionals with expertise in both government and consumer security practices. Provide guidance, training, and development opportunities to enhance their skills and knowledge in both domains and ensure compliance with relevant frameworks.
Qualifications
Bachelor's or master's degree in computer science, information security, or a related field. Relevant certifications such as CISSP, CISM, or GIAC are highly desirable.
Extensive experience in IT security: Minimum of 8 years of progressive experience in IT security, including experience in both government and consumer security domains. Familiarity with government security frameworks such as FISMA, FedRAMP, NIST SP 800 series, and CJIS is essential.
Strong knowledge of security best practices: In-depth understanding of information security concepts, best practices, industry standards, and frameworks. Familiarity with relevant regulations such as GDPR, CCPA, and other regional privacy laws.
Technical expertise: Proficiency in network security, application security, cloud security, encryption, identity and access management, security monitoring, and incident response. Experience with secure software development lifecycle (SSDLC) practices is beneficial.
Our Culture
We are builders, and we choose to spend our time building things that matter. Many of our people have backgrounds in Defense Tech as well as the defense and intelligence community. We build to win.
We hire excellent people, give them outsized responsibility, and trust them to execute at a high level. Everyone here has a track record of solving hard problems throughout their careers.
We believe that personal privacy and national security interests are not inherently at odds, and can be reconciled via strong technology.
We believe that companies exist to build awesome things and take care of their people. Our benefits reflect that– top-tier health care, 401(k) matching, and a generous vacation policy (that we actually use).
We hire candidates of any race, color, ancestry, religion, sex, national origin, sexual orientation, gender identity, age, marital or family status, disability, Veteran status, and any other status. Achieving diversity across these categories will serve to make our company stronger and our product better.
How to apply
Apply using this link.
We reserve the right to make use of any unsolicited resumes received from outside recruiting agencies and / or individual recruiters without being responsible for payment of any fees asserted from the use of unsolicited resumes.