Director, DevSecOps – Trust Engineering
Software Engineering | Cambridge | ID: 10031
Director, DevSecOps – Trust Engineering
Teamwork makes the stream work.
Roku is changing how the world watches TV
Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our mission is to be the TV streaming platform that connects the entire TV ecosystem. We connect consumers to the content they love, enable content publishers to build and monetize large audiences, and provide advertisers unique capabilities to engage consumers.
From your first day at Roku, you'll make a valuable - and valued - contribution. We're a fast-growing public company where no one is a bystander. We offer you the opportunity to delight millions of TV streamers around the world while gaining meaningful experience across a variety of disciplines.
About the Team
The Trust Engineering Team builds platforms used by all cloud engineers at Roku. Together, these components are designed to be a secure and cost-effective platform of services Roku engineers use globally. Our team owns the following segments:
- Bug Bounty Program
- Threat Hunting
- Attack Surface Management
- Threat Intelligence
- Incident Response
- Security Infrastructure as Code
- FinOps
- Security Architecture and Engineering
Our team members are smart, collegial, collaborative, and focused on building the best-in-class platform. We foster a culture of experimentation, looking for the best idea to take the day. As a leader on this team, our Director, DevSecOps, models this behaviour: If we’re not trying new things, we’re not growing. And, we need to grow and adapt so that Roku stays on top.
About the Role
As Director, DevSecOps, you will lead Trust Engineering’s Security Operations organization. Key areas of your work include:
Team Leadership
- Hire, lead, mentor, and manage top Sec talent (e.g, threat intelligence, attack surface management, security operations team members).
- Provide technical leadership to your team, with a focus on simplifying and accelerating operations
- Continue to build a world-class team of Trust engineers by attracting and hiring high-quality talent across the US, UK, and India. We are expanding in India, so part of your time in this role will involve working closely with the rest of engineering in support of a development center there. This includes strategizing and actively participating in efforts to attract the best talent there.
Technical Leadership
- Lead our trust platform, providing automation and tools to development, security observability, and cloud security governance
- Oversee the operations of the Vulnerability Management program, including periodic penetration tests, and managing remediation activities.
- Utilize expertise in cyber security architecture and engineering in support of programs, proposals, and corporate objectives.
- Analyze the current security environment to detect critical deficiencies and recommend solutions for improvement through the development of cyber capability reference architectures and knowledge of current threat landscape.
- Analyze industry technology and market trends to determine their potential impact on the enterprise / product security posture.
- Provide regular, timely reporting on information security topics as required.
Strategy & Stakeholders
- Support the design and implementation of a Threat Intelligence strategy to align with our organization's objectives.
- Proactively identify information security deficiencies and opportunities for improvement to enable effective risk management and to deliver business value.
- Utilizing user and internal stakeholder feedback, collaborate with Roku senior management and align roadmaps, communication strategy, and evolution of our platform.
- Act as a product manager for the organization. Design mechanisms to deeply understand our internal customers’ platform use and pain points. (For example: Create automation of security infrastructure as code aligned with company CICD pipelines)
- Negotiate with external vendors to drive Roku’s cloud security governance program and security tooling, (e.g., build vs buy)
- Lead stakeholder engagement sessions to capture business and product requirements to evaluate cyber solutions and aid in the development and deployment of technology across the enterprise.
- Direct the creation or modification of cyber defense architectures, cyber engineering plans, and team construction for programs and proposals.
We're Excited If You Have
Leadership Skills
- You enjoy building a world-class team, attracting, inspiring, and retaining top talent
- You have excellent soft skills and can effectively communicate and drive alignment with a diverse set of people, ranging from developers to Roku executives.
- You enjoy the challenge of building internal platforms, cross-team collaboration, influencing the direction of the work, and substantively contributing to system architecture
- Provide technical leadership to the team with your experience and focus on simplifying and accelerating developer experience. Lead developer platform, application hosting platform, observability and cloud governance
- You are self-driven and enjoy taking complete ownership of initiatives
Technical Skills
- Experience developing and deploying cyber security programs, specifically Threat Intelligence & Vulnerability Management programs and knowledge operating other aspects of security including security operations, incident response, forensic analysis, identity and access management, data protection, penetration testing, web application security testing, etc.
- 10+ years in a strategic engineering leadership role, setting vision and leading teams of 5+ people with excellent experience in leading and evolving managers.
- Experience designing and implementing DevSecOps, Security & Access management policies.
- Experience with cloud cost governance involving forecasting and managing costs
- Demonstrated ability to engage senior leadership and drive strategic outcomes
- Demonstrated ability to work with internal users as customers
- Working knowledge of security products in on-prem, hosted and SaaS models, including GRC platforms, SIEM/SOAR tools, firewalls, vulnerability identification, network security, end point protection, etc.
- Strong architectural abilities towards building a holistic security tools / frameworks
- Knowledge of Kubernetes, Istio, and Envoy
- Experience with observability tools like Prometheus, Grafana, Loki, Sumo Logic, XSIAM, etc.
- Experience with AI in automating security processes and to optimizing
- Knowledge of Gitlab, Artifactory, Docker, Terraform, CI/CD, and a good understanding of different deployment architectures
- Knowledge of common automation tools such as Terraform or CloudFormation.
- Experience with cloud security models, network security architecture, security policy development, responding to security incidents and coordinating incident activities.
- Knowledge of Enterprise Security compliance frameworks such as MITRE, FISMA, NIST 800-53, NIST 800-53A, NIST 800-37, ISO2700 and FIPS 199.
- Bachelor’s in Computer Science, or equivalent work experience
#LI-GL1
Benefits
Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Our employees can take time off work for vacation and other personal reasons to balance their evolving work and life needs. It's important to note that not every benefit is available in all locations or for every role. For details specific to your location, please consult with your recruiter.
The Roku Culture
Roku is a great place for people who want to work in a fast-paced environment where everyone is focused on the company's success rather than their own. We try to surround ourselves with people who are great at their jobs, who are easy to work with, and who keep their egos in check. We appreciate a sense of humor. We believe a fewer number of very talented folks can do more for less cost than a larger number of less talented teams. We're independent thinkers with big ideas who act boldly, move fast and accomplish extraordinary things through collaboration and trust. In short, at Roku you'll be part of a company that's changing how the world watches TV.
We have a unique culture that we are proud of. We think of ourselves primarily as problem-solvers, which itself is a two-part idea. We come up with the solution, but the solution isn't real until it is built and delivered to the customer. That penchant for action gives us a pragmatic approach to innovation, one that has served us well since 2002.
To learn more about Roku, our global footprint, and how we've grown, visit https://www.weareroku.com/factsheet.
By providing your information, you acknowledge that you have read our Applicant Privacy Notice and authorize Roku to process your data subject to those terms.
Thanks for considering a role at Roku. Take a moment to complete the form below. We ask that you remove any photos from your resume or CV before submitting your application.
Additionally, providing false, misleading, or inaccurate information or responses will void this application and disqualify you from consideration. If employed by Roku, it will result in the immediate termination of employment regardless of when Roku discovers misleading or inaccurate information.
Application
Thank you for applying for a role at Roku! We appreciate your interest in joining our team. We have received your application and will review it thoroughly.
Related Jobs
SEC Reporting and Technical Accounting Analyst | Finance | 2025-04-04T20:14:06.134Z | 10201 | San Jose | California | United States | San Jose, California | Finance | Finance | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 11 Professional - 10% / 90% | |||
Senior Software Engineer, Web Full Stack | Software Engineering | 2025-04-04T20:13:13.568Z | 10210 | Cambridge | England | United Kingdom | Milton, Cambridge, England | Software Engineering | Software Engineering | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 10 Senior Professional - 15% / 85% | |||
Senior Software Engineer, Machine Learning | Software Engineering | 2025-04-04T20:12:11.643Z | 10209 | Bengaluru | Karnataka | India | Embassy Golf Links Business Park, Domlur, Bengaluru, Karnataka | Software Engineering | Software Engineering | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 11 Professional - 10% / 90% | |||
Program Manager | Program Management | 2025-04-04T20:12:17.403Z | 10206 | Santa Monica | California | United States | Santa Monica, California | Programming | Programming | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 10 Senior Professional - 15% / 85% | |||
Account Executive, Roku Ads Manager | Advertising | 2025-04-04T20:12:34.173Z | 10111 | Chicago | Illinois | United States | Chicago, Illinois | Sales | Sales | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 11 Professional - 10% / 90% | |||
UX Product Designer, Ads Manager | User Experience | 2025-04-04T20:12:52.829Z | 10177 | Boston | Massachusetts | United States | Boston, Massachusetts | User Experience | User Experience | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 11 Professional - 10% / 90% | |||
Senior Software Engineer, Front-End | Software Engineering | 2025-04-04T20:02:20.604Z | 10030 | Bengaluru | Karnataka | India | Embassy Golf Links Business Park, Domlur, Bengaluru, Karnataka | Software Engineering | 226 - APPS | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 11 Professional - 10% / 90% | |||
Sr. Manager, Developer Experience | Partner Management | 2025-04-04T20:14:13.995Z | 10205 | San Jose | California | United States | San Jose, California | 371 - Developer Community | 371 - Developer Community | Teamwork makes the stream work. Roku is changing how the world watches TV Roku is the #1 TV streaming platform in the US and Mexico, and we've set our sights on powering every television in the world. Roku pioneered streaming to the TV. Our missio... | 8 Senior Manager - 25% / 75% |

This website uses cookies and similar technologies for tracking job application status, including application-related emails, as described in our Applicant Privacy Notice and Cookie Policy. By selecting "I Accept", you consent to our use of these cookies and technologies on this website.
These cookies are critical for the ongoing operation of the site. Without these cookies, your use of the site could be disrupted or compromised.
These cookies allow you to manage your experience on the site. For instance, allowing the site to remember your cookie consent preferences for future visits.