Head of Security job opportunity at Protege AI.



Date bot
Protege AI Head of Security
Experience: 8-years
Pattern: FullTime
apply Apply Now
Salary:
Status:

Job

Copy Link Report
degreeOND
loacation Remote, None
loacation Remote....None
Auto GPT Summarize Enabled

Company Overview:We are building Protege to solve the biggest unmet need in AI — getting access to the right training data. The process today is time intensive, incredibly expensive, and often ends in failure. The Protege platform facilitates the secure, efficient, and privacy-centric exchange of AI training data.Solving AI’s data problem is a generational opportunity. We’re backed by world-class investors and already powering partnerships with some of the most ambitious teams in AI. The company that succeeds will be one of the largest in AI — and in tech.We’re a lean, fast-moving, high-trust team of builders who are obsessed with velocity and impact. Our culture is built for people who thrive on ambiguity, own outcomes, and want to shape the future of data and AI.PurposeWe're hiring our first Head of Security to own security end-to-end: strategy, architecture, operations, and culture. This is a hands-on leadership role and you won't have a large team beneath you (yet), so you need to be comfortable building the program from the ground up while still getting into the technical weeds. You'll report directly to the VP of Engineering and work closely with engineering, product, and legal.This is a high-impact role where you'll shape how we earn and keep the trust of AI companies and our data partners.What You’ll Do:Mature the Security & Compliance ProgramAudit and improve the existing security program by identifying gaps, prioritizing improvements, and bringing more structure to what exists.Formalize security policies and frameworks appropriate for our stageOwn and evolve our compliance posture. We have SOC 2 Type II in place and you'll maintain it, improve our controls, and provide automation wherever neededEnsure compliance with HIPAA and other healthcare data regulations, and build a robust PHI protection programProtect the Data PipelineSecure the end-to-end lifecycle of training data which includes ingestion, processing, storage, preparation, and deliveryPartner with engineering to embed security into CI/CD pipelines, cloud infrastructure, and data workflowsBe Technical and Hands-OnConduct threat modeling, architecture reviews, and code-level security assessmentsLead incident response when things go wrongEvaluate and deploy security toolingEnable the BusinessTranslate security risks into business language for the executive team and boardServe as the security face to customers, fielding security questionnaires, supporting sales cycles, and building trust with AI company partners and customersBuild a security-aware culture across the company through training and lightweight processes that don't slow teams downScale the FunctionDecide what to build, what to buy, and what to outsourceSet the roadmap for how security evolves from Series A through a rapid growth stageWhat Success Looks Like:30 days: Learn and AssessComplete a thorough audit of the existing security program, infrastructure, tooling, and policiesMeet with every team lead to understand their workflows, data handling practices, and where security creates friction or blind spotsReview our SOC 2 Type II and HIPAA controls and identify areas where we're passing but brittle vs. areas that are solidMap the full training data lifecycle end-to-end from a security and risk perspective60 days: Prioritize and Start BuildingPresent a security roadmap with quick wins (first 90 days) and longer-term initiatives (6–12 months), tied to business risk, not just best practicesClose the highest-severity gaps identified in your assessmentUpgrade incident response programEstablish yourself as the go-to security partner for engineeringIdentify the highest-leverage automation opportunities90 days: Fully OwnYou've taken full ownership of our SOC 2 compliance cycle and have a plan for any additional certifications or frameworks the business needsYou've fielded at least one customer security review or questionnaire and can represent our posture confidently to prospectsThe team sees security as an enabler, not a bottleneckAt least one meaningful security workflow has been automatedThe security roadmap is in execution with measurable progressWhat You Bring:Must Haves8+ years in security roles, with at least 2 years in a leadership capacityDeep technical foundation: you've worked as or alongside engineers and can credibly review architecture, infrastructure, and codeExperience building or significantly maturing a security program at an early-stage or high-growth company (not just maintaining one at a large enterprise)Strong understanding of cloud security (AWS, GCP, or Azure), identity/access management, and data protection at scaleHands-on experience with compliance frameworks (SOC 2, ISO 27001). You’ve maintained certifications and know how to expand scope without over-engineering the problemHands-on experience with HIPAA complianceComfort operating as an individual contributor and a leader simultaneouslyNice to HavesExperience securing data pipelines or working with data-intensive platformsExperience working in a data infrastructure companyBackground in AI/ML or companies selling to technical buyersExperience with data provenance, lineage tracking, or data governance in ML contextsFamiliarity with supply chain securityPrior experience as a customer-facing security leader

Other Ai Matches

Product Manager, Platform Applicants are expected to have a solid experience in handling Platform related tasks
Solutions Engineer, Media Applicants are expected to have a solid experience in handling Media related tasks
Partner Data Operations Lead (Healthcare) Applicants are expected to have a solid experience in handling Job related tasks
Business Development Representative Applicants are expected to have a solid experience in handling Job related tasks