Director Security Operations
Listed on 2026-03-12
-
IT/Tech
Cybersecurity, Security Manager
#We Are Paramount on a mission to unleash the power of content... you in?
We've got the brands, we've got the stars, we've got the powerto achieve our mission to entertain the planet - now all we're missing is... YOU! Becoming a part of Paramount means joining a team of passionate people who not only recognize the power of content but also enjoy a touch of fun and uniqueness. Together, we co-create moments that matter - both for our audiences and our employees - and aim to leave a positive mark on culture.
The Director of Streaming Security Operations is in charge of keeping Paramount's Streaming platforms secure at scale, particularly during high‑traffic moments and live events, while still enabling teams to proceed quickly. This is a hands‑on leadership role embedded within SRE, distinct from traditional corporate Info Sec or compliance positions. The focus is on applicable, operational security outcomes: responding to incidents, operating and tuning tooling, managing risk honestly, and making sure security works in the real world.
You'll work closely with Corporate Information Security, SRE Infrastructure, Platform, CI/CD, Observability, and Product teams to ensure security predictable, integrated, and operationally useful.
Security Operations, Incident Leadership & Team Leadership
- Lead security response for production incidents impacting Streaming platforms
- Operate within the SRE incident command model during security events
- Participate in live monitoring and on‑call coverage for major Streaming events
- Partner with Corporate Information Security during incidents, including timely escalation and information sharing
- Drive post‑incident security analysis and remediation tracking
- Lead and evolve a team of security engineers and security operations specialists
- Provide technical mentorship and hands‑on guidance when needed
- Build sustainable on‑call practices
- Own Streaming Security tooling, including WAFs, bot mitigation, DDoS protection, vulnerability management, and runtime protection
- Ensure tools are fully operationalized, tuned, and integrated into CI/CD, platform, and observability workflows
- Consolidate and retire tools that do not produce actionable signals
- Act as a primary stakeholder for corporate security tooling used by Streaming
- Translate enterprise security policy into actionable streaming‑specific requirements
- Manage streaming‑wide security exceptions, compensating controls, and evidence
- Surface risk transparently and recommend prioritization or acceptance when remediation is not immediately feasible
- Maintain visible backlogs for long‑term fixes and risk reduction Corporate & Cross‑Functional Partnership
- Serve as the primary Streaming liaison to Corporate Information Security
- Represent Streaming realities, constraints, and risks to enterprise stakeholders
- Partner with SRE, Platform, CI/CD, and Product teams to embed security early without blocking delivery
- Minimize surprise through communication and stakeholder awareness
- Operationalize security requirements imposed by content providers, partners, and vendors
- Govern partner integrations including OAuth, subscription bundles, and shared access
- Ensure contractual security obligations are tracked, auditable, and implemented
- Lead access reviews, audits, and offboarding for vendors and partners
- Experience leading or participating in real production security incidents
- Deep understanding of incident command and on‑call operations
- Demonstrated ability to remain technically hands‑on when required
- Experience operating in environments with centralized corporate security and federated engineering teams
- Demonstrated ability to balance security requirements with delivery velocity
- Experience with security tooling in large‑scale, consumer‑facing platforms
- Proficient communication skills and executive presence
- Bachelor's degree or equivalent experience in computer science, engineering, or a related technical field
- Progressive technical management experience demonstrating increasing scope, impact, and responsibility
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).