Director of Cyber Security
Utah, United States
Beyond, Inc.
Welcome to Beyond+ | Helping you make the most of your home, from furnishing, financing, protection, and beyondWe Go Beyond:
At Beyond, we believe that everyone should “Be You!”. Beyond is a community that upholds a culture of understanding, acceptance, and respect. We believe a person’s individuality, traits, beliefs, and characteristics should be valued and embraced. Living by this ethos is essential to the success of our business. Our goal is to foster a more inclusive environment where every employee visibly demonstrates inclusive behaviors and respect for individuals.
The Director of Cybersecurity at Beyond is a strategic leadership role reporting to the CISO and responsible for advancing a business-aligned security program that protects customers, associates, and enterprise operations. This role oversees core domains such as application security, data protection, detection and response, and infrastructure security—embedding cybersecurity across cloud, and digital environments. Success in this role means enabling innovation while proactively managing cyber risk across the business.
Responsibilities
· Lead a high-performing cybersecurity team to defend enterprise and customer assets, scaling capabilities across cloud, corporate, and digital commerce environments.
· Embed cybersecurity into the technology lifecycle, partnering with engineering, DevOps, and product teams to deliver secure-by-design solutions across applications, infrastructure, and consumer platforms.
· Translate threat intelligence into proactive defenses, driving real-time threat detection, response, and risk mitigation efforts against fraud, ATO, and other adversarial techniques.
· Enhance Beyond’s cybersecurity posture through automation, scalable controls, and early integration of security across cloud operations, infrastructure, and business processes.
· Own the cybersecurity roadmap, aligning technical initiatives to business strategy, enterprise risk management, and regulatory priorities (e.g., PCI DSS, CCPA, GDPR).
· Serve as a strategic partner to Legal, Compliance, and IT, guiding policy development, incident response, and audit readiness for internal and external stakeholders.
· Champion a risk-aware culture through security awareness programs, tabletop exercises, and consistent coaching of business and technical teams.
· Monitor the evolving threat landscape, prioritize emerging risks, and ensure rapid response to vulnerabilities or security events across all tiers of the business.
Qualifications
· 10+ years of progressive experience in information security, with 5+ years leading cross-functional security teams in complex, high-growth environments.
· Proven track record of designing and scaling modern security programs across cloud, application, and infrastructure domains in a product-centric organization.
· Deep knowledge of security frameworks (e.g., NIST CSF, MITRE ATT&CK), with practical experience operationalizing controls and risk management practices.
· Hands-on experience with security tooling across cloud, endpoint, SIEM/SOAR, vulnerability management, and application security pipelines.
· Strong understanding of the e-commerce threat landscape, including fraud, account takeover (ATO), and supply chain attacks.
· Skilled at driving organizational alignment on security initiatives across engineering, legal, IT, and compliance stakeholders.
· Exceptional communicator with ability to translate risk into business impact and influence at all levels, including executive and board-facing interactions.
· Demonstrated experience building inclusive, high-performing teams and mentoring emerging security leaders.
. Experience hiring and leading diverse teams
Education/ Licensing/Certification:
Graduation from an accredited institution with a bachelor’s degree in Information Technology, Computer Science or a related field or any combination of education and/or experience is required.
Physical Requirements
This position requires the incumbent to sit, stand and perform general office functions. The incumbent may also be required to lift 25 pounds or more occasionally. Bending, stooping and reaching are also frequently required.
Equal Employment Opportunity
It is company policy to provide equal employment opportunity for all applicants and associates. This policy includes our commitment to ensure that all employment decisions are made without regard to race, color, religion, gender, national origin, disability, pregnancy, veteran status (including Vietnam era veterans), age, sexual orientation, gender identity, or any other non-job-related characteristic protected by law.
Who We Are:
We’re a passionate group of collaborative problem solvers and creative innovators, working on cutting-edge technology. From building award-winning retail applications (with amazing AR functionality) to creating leading blockchain and machine learning technologies, each of us embodies a unique value and contributes a diverse perspective to the team.
What We Offer:
401k (6% match)
Flexible Schedules
Tuition Reimbursement, Leadership Development Program, & Mentorship Program
Employee Resource Groups (LatinX, Black Employee Network, LGBTQIA+, Women’s Network, Women In Tech)
And More…
*Benefits vary based on position, tenure, location, and employee election
Physical Requirements:
This position requires you to sit, stand and perform general office functions. You may also be required to lift up to 25 pounds occasionally. Bending, stooping and reaching are also frequently required.
Equal Employment Opportunity:
It is our policy to provide equal employment opportunity for all applicants and associates. This policy includes our commitment to ensure that all employment decisions are made without regard to race, color, religion, gender, national origin, disability, pregnancy, veteran status (including Vietnam era veterans), age, sexual orientation, gender identity, or any other non-job-related characteristic protected by law.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Automation Blockchain CCPA CISO Cloud Compliance Computer Science DevOps E-commerce GDPR Incident response Machine Learning MITRE ATT&CK NIST PCI DSS Risk management SIEM SOAR Strategy Threat detection Threat intelligence Vulnerabilities Vulnerability management
Perks/benefits: 401(k) matching Career development Flex hours Startup environment Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.