Skip to content

Open nowPosted 27 hours ago

Director of Information Security

Efficient Computer22 open roles

Where
San Fransisco, Bay Area OR Pittsburgh, PA OR Austin, TX OR Remote
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDirector of Information SecurityEfficient Computer · San Fransisco, Bay Area OR Pittsburgh, PA OR Austin, TX OR Remote
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Efficient Computer's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. Efficient Computer postings stay open a median of 43 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.5%3 days
  3. 8.0%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 27 hours ago

Efficient Computer median: 43 days open

The posting

Efficient Computer is rethinking computing from the ground up to solve one of AI's biggest challenges: energy. Our Fabric architecture delivers a 10–100x improvement in energy efficiency for general-purpose computation, including AI, while supporting familiar programming languages and software frameworks—unlocking new possibilities for autonomous machines, intelligent infrastructure, wearables, and space systems. With our first processor, Electron E1, now shipping in volume and more than $97 million in Series B financing recently announced, we're accelerating customer deployments and scaling our architecture to data center performance. Join us to build the hardware and software that bring intelligence wherever it's needed and help shape the next generation of computing.

Efficient Computer is looking for its first dedicated security leader. You’ll decide what good security looks like here, and then build it. That means owning how we protect our intellectual property, how we meet the security standards our defense and government customers require, how we handle export-controlled technology, and how our engineering environment is designed and hardened.

At the start, you’ll be a team of one. Alongside the security program, you’ll own information technology end to end: devices, identity, onboarding and offboarding, and the systems that keep a fast-growing, multi-site company running. As we scale, we’ll hire a dedicated IT Manager, and you’ll help bring them on and hand off day-to-day IT operations so you can focus fully on security. If you want to build both functions from the ground up and then decide how they grow, this is that job.

This is a hands-on role. You’ll write and own policy, but you’ll also be in the consoles, the configurations, and the architecture reviews. If you’re looking for a security role run entirely through documents and meetings, this isn’t it.

You’ll sit on our Operations team, report to our Head of Legal and Compliance, and hold a standing seat in engineering architecture review.

What You’ll Do

Protect what matters most

  • Design and enforce how our source code, compiler toolchain, and hardware designs are protected: classification, encryption, storage, and who can reach what.
  • Own the access model across our engineering systems: repository permissions, token and credential governance, and recurring access reviews.
  • Establish controls for sensitive technical data we hold under third-party confidentiality obligations.
  • Build and maintain the evidence that we take reasonable measures to protect our trade secrets

Security engineering and architecture

  • Secure a developer-heavy, multi-platform engineering environment where off-the-shelf tooling doesn’t always fit, and make hardening work for engineers rather than against them.
  • Secure our software supply chain end to end: dependencies, build pipelines, release integrity, and the compiler itself.
  • Own network and infrastructure security architecture, including build-vs-buy and in-house-vs-managed decisions.
  • Work with our technology vendors and service providers as a technical peer, not a ticket queue.
  • Own detection, logging, and incident response, and write the playbooks you’ll run.

Compliance

  • Own and mature our NIST SP 800-171 and CMMC programs: assessments, system security plans, POA&Ms, SPRS, remediation, and audit readiness.
  • Lead the security side of customer, partner, and investor diligence, including security questionnaires and government customer reviews.
  • Establish policies and controls for handling sensitive and controlled information, and train employees on them.

Export control

  • Own the technical implementation of our export control obligations: access segregation, U.S.-person gating for controlled technology, and deemed export analysis for system and repository access.
  • Partner with Legal on classification, licensing, and restricted party screening.

AI and data governance

  • Set and administer how AI tools are used against our most sensitive material: which tools are approved, how they’re provisioned, and how sensitive data stays where it belongs.
  • Own AI tool spend and seat management, so budget goes where it delivers value (not every task needs a frontier model).
  • Serve as the company’s data protection and privacy lead.

IT operations (to start)

  • Own day-to-day IT across all offices: hardware, software, accounts, and access. No ask is too small, and you’ll build systems so the small asks stay small.
  • Run onboarding and offboarding end to end: provisioning, deprovisioning, access reviews, and equipment lifecycle.
  • Manage the device fleet and MDM: configuration baselines, patching, disk encryption, and endpoint security.
  • Administer identity and access: SSO, MFA, automated user provisioning, and role-based access across our SaaS stack.
  • Own office IT infrastructure across multiple sites: networking, Wi-Fi with certificate-based authentication, conference rooms and AV, and physical access systems where applicable.
  • Manage IT vendors, licensing, and renewals, and keep spend sensible.

Strategy and scale

  • Build the security and IT roadmap for where we need to be as headcount, offices, and customer requirements grow, and drive it, rather than waiting for requirements to arrive.
  • Advise leadership on security and IT strategy, budget, and build-vs-buy decisions.
  • Help hire our first dedicated IT Manager, hand off day-to-day operations, and lay the groundwork for a security and IT team.

What We’re Looking For

  • 7+ years in information security, including time as the founding or sole security owner at a company—or as the person who built a program that didn’t exist before you arrived.
  • Genuine hands-on depth. You can configure the control, not just specify it, including on developer workstations and build infrastructure that don’t look like a standard corporate fleet.
  • Practical experience securing source code and developer infrastructure: source control platforms, CI/CD, secrets management, and cloud infrastructure.
  • Working knowledge of NIST SP 800-171, CMMC, or a comparable federal framework—ideally having taken a company through an assessment—and the judgment to know what matters and what’s ceremony.
  • Enough IT operations depth to run it well on your own for a while: MDM, identity providers and SSO, automated user lifecycle management, and multi-site networking.
  • Comfort with identity and access architecture: SSO, MFA, least privilege, and access reviews at a pace that doesn’t exhaust people.
  • A service mindset paired with strategic judgment. You take pride in fast, friendly support and in knowing which problems to solve permanently.
  • Clear written communication. You document what you build, and you can explain a security decision to an engineer who disagrees with it—and change your mind when they’re right.
  • Willingness to travel roughly 25% of the time between our offices.
  • Due to the nature of our work and applicable export control regulations, this position requires U.S. person status (U.S. citizen or lawful permanent resident).

Nice to Have

  • Experience with export-controlled technical data (EAR or ITAR), CUI, or a facility clearance process.
  • Semiconductor, hardware, or EDA environments—or any setting where the engineering toolchain drove the security design.
  • Experience supporting federal or defense customer security requirements.
  • Security certifications (e.g., CISSP, GIAC, CMMC CCP or CCA). Useful signal, not a substitute for hands-on depth.
  • Scripting and automation (e.g., Python, Bash, infrastructure as code).
  • Experience rolling out or governing AI tools in a company setting.

We offer a competitive base salary for this role, generally ranging from $180,000 to $230,000, plus a 10% annual bonus, meaningful equity, and comprehensive benefits. Final compensation will depend on experience, level, and location, with flexibility for the right candidate.

Why Join Efficient?

Build what's next. At Efficient, you'll tackle big challenges with room to take ownership and make an impact. We back you with competitive pay, equity, a 401(k) match, company-paid benefits, paid parental leave, and flexibility—plus opportunities to grow your skills and career as we scale.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Efficient Computer's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Efficient Computer's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Efficient Computer's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.