Sr Director of Cybersecurity Engineering
Boost your chances before you apply.
Blue Yonder
Scottsdale, AZ, US
Summary
The Senior Director of Cybersecurity Engineering will lead teams responsible for designing and operating security controls across a multi-cloud SaaS platform. This role involves setting technical strategy for cloud, identity, and application security while ensuring alignment with regulatory frameworks and business goals.
Job Description
Role: Senior Director of Cybersecurity Engineering
Location: Dallas, TX preferred or US Remote
Synonymous Business Title (s): Sr. Director, Security Engineering
Overview:
Blue Yonder is looking for a Senior Director of Cybersecurity Engineering to lead the teams that design, build, and operate the technical security controls protecting our multi-cloud SaaS platform and the supply chains it powers.
This is a builder-leader role at the point where three disciplines meet: engineering systems, security controls, and regulatory expectations. The right leader is deeply fluent in all three and — critically — able to bring clarity and structure across them, translating dense control frameworks and audit obligations into engineering that scales, and translating engineering realities back into terms that satisfy auditors, regulators, and customers.
You will own the roadmap and delivery for Cloud & Infrastructure Security Engineering, Identity & Access Engineering, and Product / Application Security with opportunities for further growth, so you should be someone who can architect for the future without over-building for it today.
This role demands genuine depth in Azure security engineering — not familiarity, but the kind of hands-on-adjacent fluency that lets you set technical direction, review architecture, and hold your teams to a high bar.
What You’ll Do:
Lead and scale the engineering organization
- Own strategy, roadmap, and delivery across Cloud & Infrastructure Security Engineering, Identity & Access Engineering, and Product / Application Security.
- Lead a multi-team organization of managers and senior individual contributors; hire, develop, and retain top security engineering talent in a remote-first model.
- Set clear technical standards, engineering practices, and outcomes; build the operating cadence, metrics, and prioritization discipline that let the teams ship reliably.
- Architect the organization to absorb adjacent functions (e.g., Detection Engineering, Threat & Vulnerability Management) over time without disruption.
Cloud & infrastructure security engineering
- Set the technical direction for securing Blue Yonder's Azure-centered multi-cloud environment (Azure primary; AWS, GCP, and OCI in scope).
- Drive secure-by-default patterns, guardrails, and platform-level controls across network, compute, runtime, data, and identity layers.
- Oversee cloud security posture management, workload protection, secrets and key management, and infrastructure-as-code security.
Identity & access engineering
- Own the engineering behind identity governance, authentication, authorization, privileged access, and lifecycle/joiner-mover-leaver automation.
- Advance a Zero Trust access model across workforce and workload identities.
- Reduce standing privilege and drive toward least-privilege, auditable access at scale.
Product / application security
- Embed security into the SDLC — threat modeling, secure design review, SAST/DAST/SCA, and remediation workflows that developers can actually adopt.
- Partner with Product and Engineering to shift security left while maintaining velocity.
- Establish and track application security posture and risk-reduction outcomes.
Controls, compliance, and regulatory alignment
- Ensure engineered controls map cleanly to Blue Yonder's compliance obligations (ISO 27001, 27701, 22301, 42001; SOC 1 / SOC 2; ITGC) and produce durable, test-ready evidence.
- Support the certification and roadmap ambitions of the business, including public-sector and regulated frameworks (e.g., FedRAMP, CMMC).
- Serve as the engineering authority in audits, customer security reviews, and regulatory conversations — turning control requirements into implemented, attestable engineering.
Cross-functional leadership
- Partner closely with GRC, Security Operations, Product, Platform Engineering, and Customer Trust to align security engineering with enterprise risk and customer commitments.
- Communicate posture, risk, and progress clearly to executive leadership and, when needed, to customers.
What We’re Looking For:
Required Skills:
- 12+ years (10 years+ in cybersecurity, with a substantial portion in security engineering, cloud security, or platform security roles.
- 6+ years leading security engineering teams, including experience leading managers (leader-of-leaders), in a fast-moving SaaS or cloud-native environment.
- Deep, hands-on-adjacent Azure security expertise — you can set architecture direction, review designs, and hold engineering teams to a high technical bar. Working knowledge of a broader multi-cloud estate (AWS / GCP / OCI) expected.
- Demonstrated fluency across the intersection of engineering systems, security controls, and regulatory frameworks — and a track record of bringing clarity and structure where those three collide.
- Strong command of modern security engineering domains: cloud security posture and workload protection, identity and access, application/product security, and secure infrastructure/IaC.
- Experience operating in an audited environment (SOC 2 and/or ISO 27001 or equivalent), with a real understanding of how controls become evidence.
- Excellent executive communication: able to make complex technical and regulatory topics legible to engineers, executives, auditors, and customers alike.
Preferred/Bonus Qualifications:
- Experience supporting or achieving FedRAMP, CMMC, or other regulated/public-sector frameworks.
- Hands-on experience with a mature security tooling stack — e.g., CNAPP/CSPM, EDR, IGA/PAM, DSPM, SIEM, and cloud-native security services (Microsoft Defender / Purview).
- Background in identity governance and Zero Trust at enterprise scale.
- Prior experience standing up or maturing Detection Engineering and/or Threat & Vulnerability Management functions.
- Relevant certifications such as CISSP, CCSP, or Azure security certifications.
- Engineering or software development background earlier in career.
Leadership Attributes We Value:
- Structure-bringer. You walk into ambiguity — overlapping frameworks, tangled ownership, competing priorities — and leave behind clarity, sequencing, and a plan.
- Builder, not just operator. You've built teams and capabilities from an early state, not only run mature ones.
- Translator. You move fluidly between the engineer's whiteboard, the auditor's control matrix, and the executive's risk narrative.
- High bar, high trust. You set demanding standards and develop people to meet them.
#LI-MH1
-------------------------------------------
The annual salary range for this position is $186,288 - $241,702
The salary range information provided, reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual salary will be commensurate with skills, experience, certifications or licenses and other relevant factors. In addition, this role will be eligible to participate in either the annual performance bonus or commission program, determined by the nature of the position.
At Blue Yonder, we care about the wellbeing of our employees and those most important to them. This is reflected in our robust benefits package and options that includes:
-
Comprehensive Medical, Dental and Vision
-
401K with Matching
-
Flexible Time Off
-
Corporate Fitness Program
-
A variety of voluntary benefits such as; Legal Plans, Accident and Hospital Indemnity, Pet Insurance and much more
At Blue Yonder, we are committed to a workplace that genuinely fosters inclusion and belonging in which everyone can share their unique voices and talents in a safe space. We continue to be guided by our core values and are proud of our diverse culture as an equal opportunity employer. We understand that your career search may look different than others, and embrace the professional, personal, educational, and volunteer opportunities through which people gain experience.
Our Values
If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.
Blue Yonder is the AI company for supply chain. As the world leader in end-to-end digital supply chain transformation, Blue Yonder offers a unified, AI-driven platform and multi-tier network that empowers businesses to operate sustainably, scale profitably, and delight their customers—all at machine speed. A pioneer in applying AI solutions to the most complicated supply chain challenges, Blue Yonder’s modern innovations and unmatched industry expertise help more than 3,000 retailers, manufacturers, and logistics service providers confidently navigate supply chain complexity and disruption.
Blue Yonder is proud to be an Equal Opportunity Employer. We want you to bring your authentic self to work every day. We know that the best businesses are diverse and inclusive. Our unique talents make for great ideas, empathetic workplaces and drive results. We welcome all job applicants, so apply today.
Please Be Advised: Any communications from a Blue Yonder representative related to an open position at Blue Yonder will come from an @blueyonder.com email address. We will not hire through text message, social media, or email alone, and any interviews will be conducted in-person or through a secure video call. We will not ask you for sensitive information nor will we ask you to pay anything during the hiring process. If you see suspicious activity or believe that you have been the victim of a job posting scam, you should report it to your local law enforcement authorities. To learn more about other potential job scams click here.
Founded
1985
Company size
5,001-10,000 employees
Industry
Software Development
Org type
Privately Held
Headquarters
Scottsdale, Arizona
Blue Yonder is the AI company for supply chain. As the world leader in end-to-end digital supply chain transformation, Blue Yonder offers a unified, AI-driven platform and multi-tier network that empowers businesses to operate sustainably, scale profitably, and delight their customers—all at machine speed. A pioneer in applying AI solutions to the most complicated supply chain challenges, Blue Yonder’s modern innovations and unmatched industry expertise help more than 3,000 retailers, manufacturers, and logistics service providers confidently navigate supply chain complexity and disruption.
Blue Yonder is proud to be an Equal Opportunity Employer. We want you to bring your authentic self to work every day. We know that the best businesses are diverse and inclusive. Our unique talents make for great ideas, empathetic workplaces and drive results. We welcome all job applicants, so apply today.
Please Be Advised: Any communications from a Blue Yonder representative related to an open position at Blue Yonder will come from an @blueyonder.com email address. We will not hire through text message, social media, or email alone, and any interviews will be conducted in-person or through a secure video call. We will not ask you for sensitive information nor will we ask you to pay anything during the hiring process. If you see suspicious activity or believe that you have been the victim of a job posting scam, you should report it to your local law enforcement authorities. To learn more about other potential job scams click here.
Founded
1985
Company size
5,001-10,000 employees
Industry
Software Development
Org type
Privately Held
Headquarters
Scottsdale, Arizona