Hiring.Camp

Information Security Lead

LineVision, Inc.

·

Today

Salary
$125k – $140k/yr
Location
Boston, MA
Workplace
Hybrid, Onsite
Department
Security
Seniority
Lead
Experience
2+ years
Visa
Not sponsored
Source
Paylocity

Description

Description

Hybrid (2-4 days/week in office): Boston, MA Headquarters


Step into a pivotal Security Leadership role at a fast-growing grid intelligence company. LineVision’s customers include eight of the ten largest US utilities, which demand the highest levels of security in order to protect sensitive data and the electric grid from attack. You will lead LineVision to achieve a security posture that exceeds industry standards and gives customers the confidence they need to rely on LineVision.


Reporting to the VP of Security, IT, and Quality, you will have broad autonomy over security engineering, security operations, controls execution, governance, and compliance. You and a Security Analyst will own our SOC 2 Type II and ISO 27001 programs, risk management, incident response, penetration testing program, and customer security engagements. Partnering with IT, Platform, Hardware, and Customer Success, you will make security a strategic business advantage at LineVision.


If you want to build a security program that is seen as a strategic differentiator and wins customer trust, join us at LineVision, Built In Boston Best Places to Work!


Please note: Applicants must be currently authorized to work in the United States on a full-time basis. This position is not eligible for employment visa sponsorship. 


What will you do?

Core Responsibilities and Key Performance Objectives

  • Compliance Program Ownership: Own the annual audit cycle for SOC 2 Type II and ISO 27001 using the Vanta compliance platform, including all controls, internal audits, external audits, and nonconformity tracking to closure.
  • Risk Management & Governance: Lead the annual NIST CSF risk assessment, monthly Platform and Hardware risk reviews, and quarterly Governance, Risk & Compliance reviews. Maintain policies and report ISMS efficacy metrics to leadership.
  • Security Engineering: Conduct AWS cloud and Sensor penetration tests, ISA/IEC 62443 product security assessments, vendor and product risk assessments.
  • Security Operations: Oversee vulnerability management, CrowdStrike Falcon Complete detection rules, NextGen SIEM data feeds, and the MSSP relationship. Monitor open-source license compliance with FOSSA.
  • Incident Response & Resilience: Own the incident response program and plan, including the annual 3rd part tabletop, business continuity and disaster recovery exercises, and implementation of lessons learned.
  • Confidential Data Protection: Define and guide data management controls, ensuring rigorous application of policies and customer contractual obligations regarding confidential data. Partner with Platform, Hardware and IT to apply controls across all company systems and applications.
  • Customer & Sales Support: Lead responses to customer security questionnaires, contract security reviews, and customer-facing security presentations and material.
  • AI Security: Identify risks and define security standards for enterprise and product AI. Inform the AI governance program with risk assessments and recommendations.
  • Team Leadership: Coach and develop the security team.
  • This role requires participation in a compensated rotational on-call schedule. On-call responsibilities are a condition of employment for this position.

Within the first 3 months:

  • Establish operational rhythm with the security team, including 1-1s, goal-setting, and sprint planning.
  • Take ownership of the audit calendar, risk register, and security project portfolio.
  • Implement an intake and prioritization process for security work that surfaces trade-offs and schedule risk early.
  • Take over customer security questionnaires and contract reviews, and build a reusable response library.
  • Lead monthly security risk reviews.

Within the first 6 months:

  • Deliver SOC 2 Type II and ISO 27001 surveillance audits with no major nonconformances.
  • Complete an annual IEC 62443 security assessment of the product and track remediations.
  • Extend data controls beyond Google Drive to Atlassian, Slack, and email with the IT Lead.
  • Plan and conduct the incident response tabletop, and address findings.
  • Mature CrowdStrike detection rules and SIEM coverage.

Within the first year:

  • Propose a 2–3 year security roadmap that fulfills LineVision’s vision for security excellence, including tooling, budget, and resourcing as the company grows.
  • Reduce questionnaire effort per customer through self-service trust materials and a mature answer library.
  • Define security requirements for next-generation sensors and platform features.
  • Establish ISMS efficacy metrics reported quarterly to leadership.
  • Lead quarterly Governance, Risk & Compliance reviews with executive leadership.


How to succeed in this role

Key Competencies

  • Ownership: take full responsibility for the security program's outcomes, from audit results to customer confidence.
  • Planning & Prioritization: absorb interrupt-driven work (questionnaires, incidents, audit requests) while keeping long-term projects on schedule, and raise a flag early when something must slip.
  • Communication: explain risk clearly to engineers, executives, customers, and auditors; tailor the message to the audience.
  • Judgment: make risk-based decisions that balance security with business velocity.
  • People Leadership: develop direct and cross-functional team members and delegate meaningful ownership rather than doing the work yourself.

Essential Skills

  • 6+ years in information security, with at least 2 years in a lead or people-management role.
  • Direct ownership (not only support) of SOC 2 Type II and ISO 27001 audits.
  • Experience conducting risk assessments with NIST CSF or an equivalent framework.
  • Hands-on experience with penetration test management, vulnerability management, and EDR/SIEM tooling (CrowdStrike preferred).
  • Experience with AWS cloud security.
  • Experience responding to enterprise customer security questionnaires and contract requirements.
  • CISSP, or a commitment to earn it within 18 months of start date.

What Sets the Best Candidates Apart

  • Experience with OT/ICS or IoT security, including IEC 62443.
  • Familiarity with utility sector requirements (CEII, NERC CIP) or other regulated critical infrastructure.
  • Experience leading incident response for a real event.
  • Experience with Vanta or similar compliance automation.
  • Experience in AI Governance and/or assessing the security of AI tools and features.

Reporting & Team Structure

  • Reports to the VP of Security, IT & Quality.
  • Manages the Security Analyst.
  • Partners with the IT Lead on IT controls, identity, endpoint security, and CEII controls.
  • Partners with Platform, DevOps, and Hardware teams on vulnerability remediation, SDLC evidence, and disaster recovery.
  • Partners with Customer Success and Sales on customer security engagements, and with Legal on contract terms and incident response.

Interview Process

  • Apply Online.
  • Round 1: Phone screen (Recruiter)
  • Round 2: Hiring Manager Interview
  • Round 3: Panel Interviews
    • Panel 1: Technical competency & experience
    • Panel 2: Teamwork, culture fit, and customer presence
  • Final Round: Leadership Team & Hiring Manager Sign-Off


What does joining LineVision mean for you?

  • Impact. Your talent, time, and energy will critically impact our success in accelerating our mission of providing utilities with grid intelligence to enable affordable, reliable power.
  • Ownership. You will hold broad responsibilities with high autonomy and trust in a communicative, collaborative, and fast-paced environment.
  • Flexibility. You will be empowered to maintain work-life balance with trust-based PTO and a flexible work schedule. 
  • Real World Innovation. You will join a motivated and high-performing team working with cutting edge, patented technology to help solve key obstacles to meet the demands of an AI-powered future.


Who we are…

LineVision is a grid-enhancing technology company enabling electric utilities to deliver affordable, reliable power and accelerate the electrification of the global economy. Our grid intelligence platform delivers the most accurate, network-wide dynamic line ratings and enables safer, more reliable grid operations with a combination of optical sensors and advanced environmental modeling. LineVision's global customer base includes eight of the ten largest US utilities, including National Grid, Southern Company, and Exelon. 

We are LineVisionaries: 

  • We are Innovators: We light the way with tenacious creativity and do good work. 
  • We are Empowered: With high trust and high autonomy, the floor is yours, and the opportunity is ours.
  • We are Welcoming: Come as you are, our doors are open. We are better together. 
  • We are Trusted Partners: We elevate our customer champions through shared thought leadership. We deliver on commitments.
  • We are All In: We are building a community of passionate individuals who want to dent the universe. 

Message to applicants applying to work in the U.S.

The base salary range for this role is $125,000-140,000 USD. Final compensation will be determined based on experience, skills, education, and other relevant qualifications. This role is also eligible to participate in a company bonus plan. In addition to base salary, LineVision offers a comprehensive benefits package, including medical, dental, vision and disability insurance, commuter benefits, a 401(k) with company match, and trust-based paid time off. Benefits are subject to eligibility requirements.


At LineVision there’s no such thing as a "perfect" candidate. We are looking for exceptional people who want to make a positive impact through their work and facilitate an organization where everyone can thrive. So whatever background you bring with you, please apply if this role would make you excited to come to work every day.


LineVision embraces AI, and we understand leveraging AI in your job search. As an actual member of LineVision's hiring team reviews every application, we kindly ask that any final materials you submit reflect your own voice and authentic human experience. 


Meet our team, and understand our mission:  https://www.linevisioninc.com/about-us

Skills

AWSPenetration TestingSIEMSOCDevOpsRisk ManagementComplianceSOC 2ISO 27001CISSP

Similar Jobs

30

Information Security Lead

Dexory·Verda Park +1·Hybrid, Onsite

1mo ago

Information Security Lead

Secfix·Remote-Europe·Remote

1mo ago

Lead, Information Security

Pearson·London, GB·Hybrid

1mo ago

Information Security Lead

Alloy Therapeutics·Waltham, MA·Remote

2mo ago

Information Security Lead

Tcw·Los Angeles, CA·Hybrid

3mo ago

Information Security Lead

Proscia

4mo ago

Information Security Lead

Clicktherapeutics·New York, NY +1·Hybrid, Onsite

7mo ago

Lead Information Security Engineer, ITC

Nike·INDIA TECHNOLOGY CENTER

Today

Lead Information Security Engineer, ITC

Nike·INDIA TECHNOLOGY CENTER

Today

Tech Risk and Control Lead, Information Security

JPMorgan Chase·Singapore, SG

3d ago

Tech Risk and Control Lead, Information Security

JP Morgan Chase·Singapore, SG

3d ago

Deputy Director - Information Security Lead

Pepsi Co·Hyderabad, TS

3d ago

Information Security Lead Auditor

Alcumus·Middlesborough, UK·Onsite

4d ago

Lead Information Security Engineer

Peak6Group·Chicago, US

4d ago

Lead Information Security Engineer-AppSec Champion

Wells Fargo·111443-IND-HYDERABAD-INTL HYD WF CENTRE BLK B8 Twr-4, India

4d ago

Lead Information Security Engineer

Wells Fargo·141278-NC-CIC Customer Information Ctr, US +2·Remote, Hybrid, Onsite

4d ago

Lead Information Security Engineer - Cyber Ops (Threat Monitoring)

Svb·IND - KA - Bangalore - Outer Ring Road, India·Hybrid

5d ago

Lead Information Security Analyst, ITC

Nike·INDIA TECHNOLOGY CENTER·Remote

1w ago

SOC Shift Lead - Information Security

Elevancehealth·GA-ATLANTA, 740 W PEACHTREE ST NW +8·Remote, Hybrid, Onsite

1w ago

Lead Information Security Analyst, Continuous AI Risk Management Expert (T & I) (Telework/Hybrid)

Cbcrc·Montreal - MRC, Canada +1·Remote, Hybrid, Onsite

1w ago

Lead Information Security Analyst, Data Protection Specialist (T & I) (Telework/Hybrid)

Cbcrc·Montreal - MRC, Canada +1·Remote, Hybrid, Onsite

1w ago

Lead Information Security Analyst, Vulnerability and External Attack Surface Management (T & I) (Telework/Hybrid)

Cbcrc·Montreal - MRC, Canada +1·Remote, Hybrid, Onsite

1w ago

Tech Lead - Information Security DLP

Aristocrat·Noida Office, India·Hybrid

1w ago

Lead, Information Security - Governance, Risk & Compliance

Spe·Culver City, CA·Hybrid

2w ago

Lead Information Security Engineer, ITC

Nike·INDIA TECHNOLOGY CENTER

2w ago

Lead, Information Security (Defensive)

Tabby·KSA

2w ago

Founding Information Security Lead

Flodesk·Remote·Remote

3w ago

Lead Information Security Engineer- Architect

Wells Fargo·110380-IND-BENGALURU-INTL BLR Twr-1&2 CARNATION, India

4w ago

Sr. Associate, Technical Information Security Lead

Pfizer·GRC - Thessaloniki, Chortiatis

4w ago

Sr. Associate, Technical Information Security Lead

Pfizer·GRC - Thessaloniki, Chortiatis

4w ago