Director, Security (Enterprise Security)

Full Time
4 hours ago

Mission

Spearhead Databricks' security initiatives by orchestrating cutting-edge programs in Enterprise Security, while helping to drive the evolution of the company's comprehensive Security Program. Leverage advanced technologies, including AI and machine learning, to safeguard Databricks' corporate environment, ensuring the resilience and trustworthiness of Databricks, which powers data, analytics, and AI for over 10,000 organizations worldwide.

Opportunity

Databricks is on a mission to empower every organization to accelerate innovation through data and AI. Behind this mission is a company operating at a global scale—thousands of employees, a hybrid workforce, and a cloud-native ecosystem that powers the Databricks Lakehouse platform. Protecting this environment means securing the digital backbone that enables innovation, trust, and execution.

As the Director of Enterprise Security, you will lead all aspects of Databricks’ corporate and enterprise security strategy. This includes securing SaaS systems, endpoints, workforce identity, and corporate data across a highly distributed, multi-cloud environment. You’ll design a security program that enables business velocity while defending Databricks from evolving cyber risks—balancing protection, productivity, and scale in a fast-moving, AI-driven environment.

Candidates must be eligible to obtain and maintain a U.S. government clearance at the Secret level or higher.

Outcomes

  • Strategic Partnerships and Influence: Own, develop, and drive the Enterprise Security vision, priorities, and OKRs by building deep, cross-functional partnerships —ensuring alignment across department leadership and the company's overall mission.Security Architecture and Design: Own the long-term strategic roadmap for enterprise security, ensuring the architecture anticipates future business needs, technical evolution, and resource investment strategies.
  • Data Security and Governance: Lead the creation of robust data protection standards and processes that prioritize customer and employee trust, ensuring sensitive corporate data is managed responsibly and securely across SaaS and internal platforms.
  • SaaS and Cloud Application Security: Embed security by design into the selection, integration, and management of business-critical SaaS and cloud applications—collaborating across teams to ensure solutions meet the highest standards of customer and enterprise protection.
  • Endpoint Security and Workforce Enablement: Enable a culture of innovation and productivity by delivering an endpoint security program that is user-centric, scalable, and adaptable—protecting corporate systems without compromising speed or autonomy.
  • System Hardening and Configuration Standards: Establish and maintain evidence-based STIGs and security baselines for corporate and SaaS environments, driving consistent security hygiene and enabling rapid, secure adoption of new technologies.
  • Identity and Access Management: Champion a unified, data-driven IAM strategy that empowers secure and frictionless access to corporate resources, supporting Databricks’ global workforce and collaboration while aligning with zero-trust principles.
  • Automation and Operational Maturity: Accelerate organizational maturity by leveraging automation, data-driven insights, and proactive budget/resource planning  to optimize security processes, elevate response times, and drive measurable efficiency across the security function.

Competencies

  • Visionary Strategic Leadership: Proven ability to create a clear and compelling vision for the entire Enterprise Security function , effectively decompose the long-term strategy into goals, and communicate complex topics to executive stakeholders and the board.
  • Enterprise Security Expertise: Extensive experience architecting and managing security programs for global, cloud-native organizations, including identity management, endpoint security, data protection, and SaaS governance in hybrid and remote environments.
  • Identity and Access Governance: Advanced knowledge of zero-trust principles and hands-on experience building and optimizing IAM strategies across multi-cloud and multi-SaaS platforms to ensure effective, user-centric access control.
  • Data Protection and Privacy Leadership: Demonstrated success developing robust corporate data security programs, including encryption, data loss prevention (DLP), and secure data lifecycle management, with a strong commitment to privacy and regulatory alignment.
  • Organizational Influence & Partnership: Exceptional ability to influence across all relevant departments  (IT, Engineering, Legal, People, Finance) to embed security best practices, mitigate organizational risk, and drive adoption of secure processes organization-wide.
  • Team & Talent Ownership: Proven expertise in owning the hiring practices for the department, coaching managers , and developing high-performing, globally distributed teams, fostering a culture aligned to and promoting Databricks Culture Principles.
  • Technological Innovation: In-depth understanding of emerging enterprise security technologies—including AI-driven threat intelligence, automation, and cloud security posture management—with a track record of leveraging technology to elevate security operations.
  • Operational Excellence: Results-oriented approach in scaling enterprise security programs, leveraging analytics and automation to drive measurable efficiency, resilience, and business empowerment.
  • Compliance and Industry Knowledge: Practical experience with relevant enterprise compliance standards such as SOC 2, ISO 27001, and FedRAMP, and success in operationalizing control frameworks in complex, cloud-centric organizations.
  • Hyper-Growth Experience: Direct security leadership experience in hyper-growth SaaS or cloud companies is highly preferred, with an ability to adapt strategy and operations to ongoing business scale and transformation.

 

About Databricks

Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook.BenefitsAt Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit https://www.mybenefitsnow.com/databricks. 

Our Commitment to Diversity and Inclusion

At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics.

Compliance

If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.