Own the InfoSec, AWS, and identity/endpoint security policy set — draft, review, and maintain with leadership and the external security partner• Drive the compliance runway (SOC 2, PCI-DSS, NIST CSF) — gap analysis, audit-ready evidence, and the security/compliance work processes and tracking• Own vendor and provider security review (third-party risk management) across identity, endpoint, network, and cloud tooling, including new-tool evaluation• Define and drive identity, endpoint, and incident response operations — SSO, EDR, alert routing, triage and escalation• Maintain the application/asset inventory and own the launch-readiness security checklist as scope and timeline evolve• Lead the inventory and management of externally facing product documentation (privacy policy, terms, in-app legal/policy docs) to maintain compliance AI Strategy & Platform Governance. • 8+ years in a technical role spanning security, cloud/platform engineering, or software delivery, with hands-on ownership of a security or compliance function• Demonstrated experience turning ambiguous, fast-moving requirements into documented, adoptable policy and process• Working fluency in AWS (IAM, logging, security tooling) and modern identity/endpoint stacks (SSO, EDR)• Exposure to compliance frameworks (SOC 2, PCI-DSS, NIST CSF, ISO 27001), and genuine fluency adopting and governing AI tools and platforms• Clear written and verbal communication — this role writes policy, presents tradeoffs to leadership, and partners daily with engineering• Certifications: Security+, AWS certifications, or similar are a plus — DingoBlu supports pursuing relevant certifications on the job The Person We Need.