JOB OVERVIEW |
JOB TITLE | Director of Engineering & Security |
LOCATION | Remote |
REPORTS TO: | Managing Director |
| |
JOB SUMMARY |
ARRO, Powered by ISF, is a mission-critical SaaS platform that streamlines operational efficiency for the National Guard. Our product is designed to handle large-scale deployments, real-time data processing, and secure communication. We’re a growing, innovative team focused on delivering top-tier user experiences, and we’re seeking a dedicated Director of Engineering & Security to lead our support function. The Director of Engineering & Security is a transformational leader responsible for modernizing and scaling our engineering and security practices. This senior role sets the long-term vision while driving the cultural and technical changes needed to achieve it. The Director leads the shift from project-based delivery to a product-centric, agile organization, embedding secure-by-design principles across the software lifecycle, and professionalizing processes to achieve compliance readiness. This is a high-impact role with the mandate to shape the future of ISF’s engineering and security in support of ARRO’s mission. |
DUTIES & RESPONSIBILITIES |
Transformation & Organizational Leadership Lead the organization’s engineering and security transformation roadmap, aligning technology with product and business goals. Coach and develop managers and senior technical leaders, fostering a culture of autonomy, accountability, and trust. Drive hiring for critical roles (e.g., Software Architect) to strengthen technical depth and leadership capacity. Represent engineering and security in executive-level strategy, planning, and governance discussions.
Process & Professionalization Define and implement modern SDLC and Agile practices, with a focus on shortening delivery cycles and scaling DevSecOps maturity. Establish and continuously improve engineering quality, security, and compliance benchmarks. Approve and oversee high-level architectural direction in partnership with the Tech Lead and Software Architect.
Security & Compliance Own the organization’s security posture, embedding security into every stage of development and operations. Lead the organization toward achieving and maintaining compliance with SOC 2, FedRAMP, and other frameworks. Partner with external auditors, consultants, and internal leaders to ensure certification readiness and ongoing compliance.
Culture & Continuous Improvement Shape and reinforce an agile, product-oriented culture built on continuous learning, coaching, and psychological safety. Anticipate organizational and technical risks, communicate transparently, and drive proactive solutions. - Serve as a visible champion for engineering and security best practices across the company.
Success Metrics Within the first 12–18 months, success will be measured by: Improved team engagement, retention, and internal trust in engineering delivery. Measurable improvements in deployment frequency and reduction in incident rates. Compliance readiness for SOC 2 and/or FedRAMP within 12–18 months. Implementation of automated, secure CI/CD pipelines and infrastructure-as-code practices.
|
EDUCATION & CERTIFICATIONS |
- Bachelor's Degree in a technical field or equivalent work experience is preferred.
|
KNOWLEDGE & EXPERIENCE |
Strong hands-on expertise with DevSecOps practices: CI/CD pipelines, infrastructure as code (Terraform/ARM), automated testing, and security scanning.
|
SKILLS & ABILITIES |
Deep knowledge of modern cloud technologies (AWS, Azure, or GCP), containerization, serverless, and modern deployment patterns.
|
|