yoinka

Director, ProdSecOps

Genius Sports

London, England, United KingdomStaff
Sign in to applyVerified 1h ago
Location
London, England, United Kingdom
Work model
On-Site
Level
Staff
Posted
14h ago

Skills

AWSAgileCybersecurityKubernetes

About this role

By bringing together next-gen technology and the finest live data available, Genius Sports is enabling a new era of sports for fans worldwide, delivering experiences that are more immersive, interactive and personalized than ever before. Learn more at geniussports.com.

Role Overview

This is a transformational role. The Director is expected to lead the organization from fragmented, task-based security handling into a mature, agile program — modernizing how security is embedded across engineering, redefining operational efficiency, and setting how the cybersecurity function operates and perceived across the business.

This role leads the combined Product Security and Security Operations function at Genius Sports. It is a program leadership role responsible for embedding security into how products are designed, built, and shipped — and for owning the full threat detection and incident response pipeline end-to-end.

The Director sets direction for a global team spanning secure development lifecycle, security architecture, threat modeling, vulnerability and exposure management, offensive security, cloud security, security monitoring, and incident management. The role translates cyber risk into business risk and drives the conversation leadership can act on.

Strong experience across both Product Security and SecOps is required. This is a leader-coach role in a lean, high-ownership team operating in a regulated sports data and betting environment.

Key Responsibilities

Program Leadership

• Lead the transformation. Act as the agent of change from fragmented security tasks to a mature program, reshape team structure, ways of working, and organization growth.

• Own the ProdSecOps program — vision, goals, and delivery across both product security and security operations functions.

• Define and lead the product security framework — mapping assets, ownership, and cyber risk to business value.

• Build and maintain a cyber risk management view that is aggregate, contextual, and actionable for leadership.

• Lead, develop, and grow a distributed team across multiple regions and time zones.

• Set team objectives aligned to functional and company-level OKRs. Own delivery against them.

Product Security

• Drive shift-left security — embed threat modelling, secure design review, and SDL practices into the development lifecycle.

• Own the security architecture direction, including zero trust principles and secure design patterns.

• Own vulnerability and exposure management across application, cloud, and infrastructure layers — risk-based prioritization, engineering ownership models, and remediation SLAs.

• Oversee application security testing — SAST, DAST, SCA — and the offensive security program including pen testing and red team engagements.

• Own cloud security posture across the estate — CSPM, container and Kubernetes security, IaC review.

Security Operations

• Own threat detection and telemetry fidelity end-to-end — high-fidelity signals into SIEM, log source coverage across endpoint, SaaS, cloud, and network.

• Own incident management — ensure the incident response plan is defined, tested, and executable, with clear escalation paths and playbooks.

• Drive detection engineering — use case development, correlation rules, alert tuning, and measurable noise reduction.

• Manage the MSSP relationship — enforce SLAs, drive false-positive

Director, ProdSecOps at Genius Sports — London, England, United Kingdom | Yoinka