JOBSEARCHER

Director of IT, Information Security & Compliance

About Sciens LogisticsSciens Logistics is a rapidly growing global logistics and supply chain company offering freight brokerage, air and ocean forwarding, contract logistics, and time-critical aviation services across the US, Europe, India, and LATAM.As we scale toward $100M+ in revenue and expand regulated operations, we are entering a critical growth and compliance phase. This role will define our IT, security, and compliance foundation for years to come.This is not a passive leadership role. We are hiring a builder.Director of IT, Information Security & ComplianceLocation: Houston, TX In officeEmployment Type: Contract to full-timeThe RoleThe Director of IT, Information Security & Compliance will own the end-to-end design, security, and governance of Sciens’ global IT environment. This individual will personally build and secure systems, implement NIST-based controls, and prepare the organization for C-TPAT cybersecurity requirements.You Will Act As The Company’sIT ArchitectSecurity LeadCompliance OwnerHands-on Systems EngineerTrusted Advisor to Executive LeadershipKey ResponsibilitiesSecurity and ComplianceLead implementation of NIST 800-53 or 800-171 controls and close identified gapsPrepare and maintain C-TPAT cybersecurity documentation and controlsDesign and enforce Zero Trust and least-privilege access modelsOwn incident response, disaster recovery, and business continuity planningImplement security awareness training and phishing simulationsEstablish vendor risk management and third-party security reviewsPrepare the company for future SOC 2 and ISO 27001 auditsIT Infrastructure and Systems (Hands-On)Secure and manage Microsoft 365 including Entra ID, Intune, Defender, and PurviewImplement endpoint management and MDM across all devicesEnforce MFA, conditional access, and SSOSecure SharePoint, OneDrive, Teams, and external sharingSecure Salesforce, CargoWise, Revenova, and custom TMS platformsImplement logging, monitoring, and SIEM using Microsoft Sentinel or similar toolsDesign secure network architecture across offices, VPNs, and cloud servicesManage backups, data retention, DLP, and asset lifecycleArchitecture and DataMap data flows across TMS, WMS, CRM, finance, and customs systemsDefine data classification and access policiesSecure APIs and system integrationsEstablish security standards for new SaaS tools and vendorsPolicy, Governance, and ReportingWrite and maintain IT and security policiesCreate SOPs for onboarding, offboarding, and access reviewsLead internal risk assessments and executive reportingAct as point of contact for auditors, customers, and regulatorsLeadership and GrowthBuild and mentor a small IT and security team over timeTransition day-to-day support to junior staff or an MSPDefine and execute an IT roadmap aligned with business growthAdvise leadership on technology risk and investment decisionsRequired Experience7–12 years of total IT experience3–5+ years in security, compliance, or infrastructure leadershipHands-on experience implementing NIST 800-53 or 800-171Experience with C-TPAT cybersecurity requirements or similar regulated frameworksDeep experience with Microsoft 365 security stackExperience securing SaaS-heavy, remote-first environmentsExperience writing and implementing security policiesExperience working with auditors, customers, or regulatorsBackground in logistics, transportation, warehousing, manufacturing, healthcare, or another regulated industryPreferred ExperienceSOC 2 or ISO 27001 experienceLogistics, 3PL, freight forwarding, or customs brokerage exposureExperience with CargoWise, Salesforce, NetSuite, or RevenovaAzure or AWS security experienceSIEM implementation experiencePrior first security hire or IT transformation roleExperience supporting global teamsCompensationCompetitive salaryEnd of year bonusClear growth path to VP or CIOHigh visibility executive-facing roleWhat Will Make You SuccessfulYou enjoy building, not just managingYou are comfortable operating in fast-moving environmentsYou balance speed with securityYou communicate clearly with executives and operatorsYou take ownership and follow through