
Director - Information & Application Security
3d3 days agoFieldwire by Hilti
San Francisco, US · Full-time · $220,000 – $300,000
About this role
We are seeking a highly skilled Director, Information Security to join Fieldwire, a leading provider of Construction Software solutions. This Line of Defense 1 role involves defining, owning, and implementing the product security program while ensuring compliance with legal and regulatory requirements. The position demands a strategic thinker with strong delivery and communication skills along with in-depth knowledge of product security protocols, technologies, and standards.
The Director will act as Product Business Information Security Officer and develop the Fieldwire product security improvement plan. Core duties include identifying and assessing product security risks and threats while collaborating with management to integrate security measures into the software product and business processes. The role also requires reporting on security incidents and supporting the Head of Construction SW Security & GRC.
You will work closely with other Information Security Officers within Hilti and the Group CISO. Key activities involve analyzing regulatory developments such as NIST, CRA, NIS2, and the EU AI data act, translating them into actionable requirements, and overseeing implementation. The Director independently manages business projects related to information and product security from requirements through to delivery.
Additional focus areas include owning Fieldwire SOC2 certification, supporting Group ISO27001 certification, and coordinating internal and external audits. The role contributes to continuous improvement of the security architecture, ICS, and ICT & cyber risk management while taking responsibility for topics such as Cloud & AI Security or technical risk analysis.
Requirements
- Bachelor’s or master’s degree in computer science, Information Technology, Information Security, Cybersecurity, or a related field
- Several years of experience in a security officer role in SW/IT security
- Multiple years of experience in product/SW security
- In-depth knowledge of security protocols, technologies, and standards such as ISO 27001, SOC2, NIST
- Experience in developing and implementing security programs
- Proficiency in security frameworks, risk management, incident response, and security architecture
- Certifications such as CISSP, CISM, CISA, or equivalent are advantageous
- Technical understanding in areas such as Cloud & AI Security, IAM, Endpoint Security, Data Security, SDLC, DevSecOps, Application Security
Responsibilities
- Act as Product Business Information Security Officer for Fieldwire
- Develop, own and implement Fieldwire product security improvement plan
- Identify and assess product security risks and threats
- Collaborate with management to integrate security measures into the SW product and business processes
- Analyze regulatory and legal developments such as NIST, CRA, NIS2, and EU AI data act and oversee implementation
- Independently manage business projects related to information and product security from requirements to implementation
- Own and maintain Fieldwire SOC2 certification and support Group ISO27001 certification
- Coordinate internal and external audits in information and product security
Similar roles

DevSecOps Engineer
2d2 days agoYPO
US · Full-time · $145,000 – $185,000

DevSecOps Engineer I
2d2 days agoPratt & Whitney Canada
Aguadilla, PR · Full-time · $55,000 – $75,000

Experienced Analyst - OT Cybersecurity Engineering
3d3 days agoJohnson & Johnson
São Paulo, BR · Full-time · BRL 144,000 – BRL 216,000

Software Engineer II - Security
4d4 days agoAurora Innovation
Pittsburgh, US · Full-time · $126,000 – $181,500