Profound Logo

Profound

Head of Security

Posted 7 Days Ago
Be an Early Applicant
In-Office
New York, NY, USA
300K-375K Annually
Senior level
In-Office
New York, NY, USA
300K-375K Annually
Senior level
Lead and build Profound's security program and IT operations. Own security strategy, compliance (SOC 2 Type II, ISO/GDPR), incident response, application and cloud security (AWS/GCP), vendor and audit management, and customer-facing security reviews. Hire and grow the security team while remaining hands-on with detection, vulnerability management, secure architecture, and security tooling. Role is on-site in Union Square, NYC.
The summary above was generated by AI

Profound is the marketing platform for the age of AI search. The way brands reach people is being rewritten — AI models like ChatGPT, Perplexity, and Google AI Mode are now the answer layer between companies and their customers. We built the platform marketers use to understand, measure, and win in that world: the analytics, intelligence, and agent automation that turn AI search from a threat into a competitive advantage.

We went from 0 to a $1B valuation in 18 months. Revenue grew 100x last year. Our customers include 15% of the Fortune 500 like Walmart, Wayfair and U.S. Bank, and innovators like Ramp, MongoDB, and Figma. We are backed by Sequoia, Kleiner Perkins, LSVP, and Khosla Ventures — and we are moving fast enough that the people joining now are building the playbook everyone who comes after them will run.

About the Role

As our Head of Security you will build and lead the company's security program as it scales into a trusted enterprise platform. This is a foundational, high-impact role: you'll own security strategy end-to-end while staying hands-on, working alongside an existing Security Engineer to mature Profound's program from "does the right things" to "provably does the right things at enterprise scale."

You'll also own IT for the company, making this a role that spans technical security leadership and the practical, day-to-day systems that keep the company running securely.

This is a player-coach role. You should be comfortable setting strategy and talking to enterprise customers' security teams one day, and rolling up your sleeves on a threat model, an incident, or an endpoint policy the next.

What You'll Do

Security Strategy & Leadership

  • Own and evolve Profound's overall security strategy, roadmap, and risk posture as the company scales

  • Own the build-out and growth of the entire security function and team.

  • Serve as the executive-level owner of security in customer conversations, RFPs, and security reviews with enterprise and Fortune 100 prospects and customers

  • Partner closely with Engineering, Product, and Leadership to embed security into the SDLC and product roadmap

Governance, Risk & Compliance

  • Own and mature Profound's compliance posture (SOC 2 Type II and beyond — e.g. ISO 27001, GDPR, and other frameworks as enterprise customers require)

  • Drive audits, policy development, vendor risk management, and control operations

  • Manage relationships with auditors, pen testers, and security vendors

Technical Security

  • Provide technical direction and oversight for application security, cloud security (AWS/GCP), and infrastructure hardening

  • Own incident response: build the program, run tabletop exercises, and lead the response when needed

  • Guide and review the Security Engineer's work on detection, vulnerability management, and secure architecture

  • Evaluate and implement security tooling (SIEM, EDR, vulnerability scanning, etc.)

IT

  • Own IT operations for the company: identity and access management (SSO/MDM), endpoint security, employee onboarding/offboarding, SaaS security posture, and internal tooling

  • Set and enforce IT policies that scale with headcount growth without creating unnecessary friction

What We're Looking For

  • 8+ years in security, with progressively increasing scope, including experience owning a security program (not just executing within one)

  • Prior experience as a first or early security hire at a high-growth startup, ideally SaaS/B2B, strongly preferred

  • Hands-on technical depth — this is not a purely strategic/managerial role. Comfortable engaging directly on application security, cloud security, and incident response

  • Direct experience owning SOC 2 (Type II) and driving compliance programs; experience with additional frameworks (ISO 27001, GDPR, etc.) a plus

  • Experience leading and developing a small team

  • Comfortable being the face of security to enterprise customers, including technical security reviews and questionnaires

  • Experience owning or partnering closely with IT function preferred

  • Excellent communicator who can translate technical risk into business terms for executives and customers alike

Why This Role

  • Build a security program from the ground up at a company at the center of the shift to AI-driven search

  • High visibility — this role sits close to leadership and directly influences enterprise sales and customer trust

  • A strong Security Engineer already on the team, with a clear mandate to grow the function further

  • Fast-growing, well-funded company (Series C, $1B valuation) with strong momentum

Location

This is an on-site role based in our Union Square, NYC office, designed for builders who thrive on speed, iteration, and meaningful impact.

For this role, the expected base salary range is $300,000 to $375,000. Profound’s total compensation package is designed to be competitive and includes base salary, equity, and a full range of benefits and perks. Final compensation will depend on factors such as your skills, experience, qualifications, and location, and will be determined during the interview process. Our recruiting team will share more details about the full compensation package and benefits as you move through hiring.

Note: All official communication from Profound will come from a @tryprofound.com email address. If you're contacted by anyone using a different domain, please disregard and report it as spam.

#LI-PRO

Note: All official communication from Profound will come from a @tryprofound.com email address. If you're contacted by anyone using a different domain, please disregard and report it as spam.

HQ

Profound New York, New York, USA Office

New York, NY, United States

Similar Jobs

4 Days Ago
Hybrid
New York City, NY, USA
Senior level
Senior level
Artificial Intelligence • Fintech • Payments • Social Impact • Analytics • Financial Services • Automation
Lead and scale security engineering: define strategy, hire and mentor team, manage IAM, cloud security and multi-tenant data isolation, run detection and incident response, own vulnerability management, support SOC2/PCI compliance, and secure AI systems.
Top Skills: Ai/Ml SecurityCloud SecurityIdentity And Access ManagementIncident ResponseMulti-Tenant ArchitecturePciSecurity Monitoring/SiemSoc 2Vulnerability Management
7 Days Ago
In-Office
New York City, NY, USA
150K-200K Annually
Senior level
150K-200K Annually
Senior level
Food • Internet of Things
Lead corporate IT strategy and build a greenfield IT operating model across US and UK. Own identity and access, endpoint/MMD standards, SaaS consolidation, vendor management, security posture, incident readiness, AI governance, training, and alignment with field IT for multi-site retail operations.
Top Skills: Ai GovernanceEndpoint SecurityIamMdmSaaS
7 Days Ago
In-Office
New York, NY, USA
275K-325K Annually
Senior level
275K-325K Annually
Senior level
Artificial Intelligence • Fintech • Software • Financial Services
Lead and own Moment's end-to-end security program: AppSec, cloud infrastructure security, IAM, vulnerability management, detection, and incident response. Build and hire the security team, scale programs for top-tier financial clients, manage SOC 2 and regulatory audits, run the Trust Center, represent security to customers, and lead incident response and postmortems.
Top Skills: AppsecAWSCspmIamKubernetesSecurity ToolingSoc 2

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account