Accommodations Plus International is seeking a Director of Cybersecurity to lead the API global cyber defense program. This onsite role oversees security operations, threat detection, incident response, and cloud security across AWS and Azure, partnering with a SOC MSSP and embedding secure practices into product development. The position is based in Melville, NY with a salary range of USD 170,000 to 190,000 per year and requires a bachelor’s degree along with seven or more years of cybersecurity experience.
Responsibilities
- Cyber Defense & Threat Intelligence: Develop and own the cyber defense strategy across threat intelligence, detection, incident response, and defense against product fraud and abuse. Translate adversarial research into actionable controls, detection rules, and response procedures.
- SOC Operations: Lead and oversee the SOC MSSP to ensure around-the-clock monitoring, investigation, and response. Establish performance standards, drive accountability, and continuously improve SOC effectiveness.
- Cloud Security: Manage the cloud security posture across AWS and Azure, applying defense-in-depth practices to protect cloud-native and hybrid environments.
- Security Engineering Partnership: Collaborate with engineering to embed security into product development from the ground up, promoting secure-by-default practices for cloud workloads and applications.
- Incident Response: Guide containment, recovery, and postmortem activities for security incidents and establish measurable benchmarks to track program maturity and ongoing improvement.
- Frameworks & Architecture: Apply NIST, MITRE ATT&CK, and the Cyber Kill Chain to shape security architecture, detection strategy, and response procedures, keeping architecture diagrams and documentation up to date.
- Metrics & Reporting: Create and maintain scorecards to measure SOC effectiveness and organizational risk, reporting actionable insights to security and business leadership.
- Automation & Innovation: Identify and deploy automation technologies to enhance threat detection, prevention, and response at scale.
- Team Development: Empower SOC analysts and other team members, fostering accountability, continuous learning, and strong cybersecurity practices.
Requirements
- 7–10+ years of progressive cybersecurity experience with demonstrated leadership in security operations, threat detection, and incident response.
- Proven track record managing a SOC or MSSP relationship, including 24x7 operational oversight and performance management.
- Hands-on experience with AWS and Azure, including cloud security posture management and securing cloud-native and hybrid environments.
- Strong background in threat intelligence and adversarial techniques, applying NIST, MITRE ATT&CK, and the Cyber Kill Chain.
- Experience developing security metrics and scorecards for both operational teams and executive leadership.
- Proven ability to lead incident response from containment through postmortem, with measurable program improvement benchmarks.
- Background in security engineering and architecture, with a plus for designing defensible systems.
- Working knowledge of CASB, SASE, firewalls, VPN, IDS, endpoint security, DLP, EDR/AV, and SIEM.
- Strong experience with Microsoft O365 security capabilities and administration.
- Familiarity with automation technologies supporting threat detection, prevention, and response.
- Proven ability to lead, develop, and motivate technical teams including SOC analysts.
- Excellent communication skills at staff and executive levels, translating complex security risks into clear business context.
- Ability to balance security requirements with business operations and innovation, earning credibility across technology and business units.
- Organized, efficient self-starter capable of managing multiple priorities with minimal supervision.
- Bachelor’s degree in Cybersecurity, Computer Science, MIS, or equivalent experience; Master’s degree is desirable.
- Preferred certifications (not required): GSEC, GCIA, GCIH, GCFE, GCFA, CISSP, CISM, or CISA.
Technologies
- CASB, SASE, firewalls, VPN, IDS, endpoint security, DLP, EDR/AV, SIEM
- Microsoft O365 security capabilities
- AWS, Azure
- NIST, MITRE ATT&CK, Cyber Kill Chain
Who we are
API is described as the global leader for crew accommodation solutions, providing a technology platform that streamlines crew planning and enhances travel operations. Our proprietary technology, mobile solutions, and experienced team work together to offer an end-to-end platform that integrates into client workflows.
Work Environment
The role operates in a professional office setting and routinely uses standard office equipment such as computers, phones, printers, and filing systems.
Physical Demands
The role requires regular speaking and listening activities, with standing and walking as needed, and frequent use of hands to operate equipment and reach for items.
AAP/EEO Statement
Accommodations Plus International is an Equal Opportunity Employer that does not discriminate on the basis of race, creed, color, religion, national origin, citizenship status, age, disability, sex, marital status, veteran status, sexual orientation, or any other characteristic protected by applicable laws. Our management team is dedicated to this policy across recruitment and employment.
Other duties
Duties, responsibilities and activities may change at any time according to business needs.