Job Description

We are growing! We are looking for a Security Engineering Lead who can work with in a hybrid or a remote set-up.

Who we are:

Founded in 2006, we’re proud to be a global business. From Shanghai to Paris, we have 12 offices and operate across four continents in 70 countries. We are home to over 250 professionals from around the world, working together to serve more than 230 luxury clients.

At CXG, we love to evolve, elevate, and transform experiences while bringing brand promises to life. We offer strategic solutions that impact performance and elevate the customer experience of some of the world’s most iconic premium and luxury brands.

What you will be doing:

The Security Engineering Lead owns and continuously improves the organization’s security posture across cloud platforms, enterprise systems, applications, AI solutions, and third-party services.

This is a hands-on leadership role combining governance, engineering validation, automation, and client-facing security representation. Security must be embedded into architecture, development workflows, AI adoption, and operational practices in a scalable and structured way.

Your duties will also involve:

Key Responsibilities

1. Security Governance & Risk

  • Own and maintain the ISMS aligned with ISO 27001
  • Manage risk assessment frameworks, policies, and security KPIs
  • Ensure alignment with client security requirements
  • Drive continuous maturity improvement

2. Vulnerability Management & Testing

  • Operate a structured vulnerability management program
  • Conduct internal scans and coordinate external penetration testing
  • Validate remediation and track resolution progress
  • Provide structured reporting on risk posture

3. Application & DevSecOps Security

  • Define secure coding standards and security gates
  • Implement SAST, DAST, and dependency scanning
  • Integrate security into CI/CD pipelines
  • Review high-risk features and validate remediation

Automation-first approach, with targeted manual validation when required.

4. Cloud, Infrastructure & Enterprise Security

  • Define and validate cloud security baselines
  • Review IAM models, network segmentation, firewall and WAF controls
  • Ensure encryption, logging, monitoring, and least-privilege principles
  • Lead Microsoft 365, Defender, endpoint, and identity security governance

Hands-on ownership of enterprise security controls.

5. Third-Party & Vendor Security

  • Assess vendor security posture prior to adoption
  • Maintain vendor risk framework
  • Respond to client security questionnaires and due diligence
  • Support contract-level security discussions

6. AI & Tool Security Governance

  • Assess security implications of new tools and AI platforms
  • Define guardrails for responsible AI and data usage
  • Ensure secure-by-design technology adoption

7. Incident Response & Preparedness

  • Maintain incident response plans and escalation procedures
  • Coordinate security incidents across environments
  • Lead post-incident reviews and corrective actions

8. Security Culture & Enablement

  • Promote security awareness and best practices
  • Train teams on secure development and operations
  • Continuously improve automation and controls

Security is a business enabler, not a blocker

What you will bring along:

  • 5+ years in cybersecurity, cloud security, or security engineering
  • Proven experience securing cloud and SaaS environments
  • Hands-on vulnerability management and penetration testing coordination
  • Experience implementing automated security controls
  • Experience with enterprise identity and endpoint security platforms
  • Vendor security assessment experience
  • ISO 27001 or similar governance exposure
  • Experience interacting with clients on security matters

Technical Skills

  • Strong cloud security and architecture validation expertise
  • Network security, firewall, and web application protection knowledge
  • DevSecOps and CI/CD security integration
  • Application vulnerability assessment capability
  • AI and third-party tool risk evaluation

Soft Skills

  • Strong ownership mindset
  • Risk-based decision making
  • Clear communicator with technical and non-technical stakeholders
  • Comfortable in client-facing discussions
  • Structured and composed during incidents
  • Automation and continuous improvement oriented
Share this job:
Please let CXG know you found this job on Remote First Jobs 🙏

8312 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like CXG

Find your next opportunity with companies that specialize in Customer Experience, Luxury Market Experts, Learning And Coaching Luxury Retail Professionals, and Market Research. Explore remote-first companies like CXG that prioritize flexible work and home-office freedom.

Potloc Logo

Potloc

Market insights provider

View company profile →
PDI Technologies Logo

PDI Technologies

Delivers software and services for convenience retail and petroleum wholesale businesses to increase productivity, profitability, and security.

View company profile →
Unify Consulting Logo

Unify Consulting

Custom consulting solutions

View company profile →
Qualtrics Logo

Qualtrics

5001-10000 www.qualtrics.com

Experience Management software for customer, employee, and product insights.

76 open positions →
84.51˚ Logo

84.51˚

1001-5000 www.8451.com

A retail data science, insights, and media company creating personalized shopper experiences.

1 open positions →
Apply Digital Logo

Apply Digital

A global experience transformation partner driving AI-powered change for multi-brand ecosystems.

19 open positions →

Project: Career Search

Rev. 2026.2

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply