SitusAMC is where the best and most passionate people come to transform our client’s businesses and their own careers. Whether you’re a real estate veteran, a passionate technologist, or looking to get your start, join us as we work together to realize opportunities for everyone, we proudly serve.
At SitusAMC, we are looking to match your unique experience with one of our amazing careers, so that we can help you realize your potential and career growth within the Real Estate Industry. If you are someone who can be yourself, advocate for others, stay nimble, dream big, own every outcome, and think global but act local – come join our team!
The VP of Cloud & Application Security isn’t just a strategist but must be deeply technical, capable of rolling up their sleeves, and leading complex security initiatives across modern cloud environments and application stacks. This leader will define strategy, drive execution, and personally dive into architecture reviews, threat modeling, and hands-on validation when needed.You will play a pivotal role in safeguarding our organization's sensitive data and infrastructure within the cloud environment. Your responsibilities will include designing, implementing, and maintaining robust security measures to protect against cyber threats. You will collaborate with cross-functional teams to ensure compliance with industry standards and regulations, while also staying abreast of emerging security trends and technologies. Your expertise will be instrumental in mitigating risks and safeguarding our organization's digital assets in cloud platform like AWS and Microsoft Azure.
Essential Job Functions:
- Help build and define our cloud and application security posture. Enable cyber resilience. Help implement various zero trust initiatives.
- Design, implement, and maintain comprehensive security controls for cloud hosted infrastructure, applications and data.
- Lead hardening efforts such as IAM, network segmentation, PAM, workload protection, CI/CD integration, container/Kubernetes security, etc.
- Evaluate and implement cloud-native and third-party security tooling
- Monitor and respond to cloud security incidents and lead root cause analysis in a timely manner
- Mature existing AppSec program, including security SDLC, code scanning, SCA, threat modeling, and pen testing.
- Partner directly with engineering leaders to bake security into product roadmaps
- Design and implement secure coding standards and developer education programs
- Support hands-on code review and validation for high-risk or high-impact applications
- Develop and implement security policies, standards, and procedures to ensure compliance with industry best practices and regulatory requirements as it relates to cloud engineering.
- Stay up-to-date with the latest security trends, threats, and technologies to continuously improve our security posture
- Provide guidance and training to internal teams on cloud and AppSec practices
- Define KPIs and metrics that make security measurable and transparent
- Drive a culture of security across engineering, development, and product teams
Qualifications/ Requirements:
- Bachelor’s degree in a technical field from an accredited college/university, or equivalent job experience.
- Minimum of 8+ years of industry and/or relevant experience, typically with 2+ years in an AVP level role or external equivalent.
- At least 7 years of direct relevant work experience in cloud security engineering, application/product security or a similar role
- Relevant certifications such as CISSP, CEH, GIAC, ISSAP, CISM or other relevant security-focused certifications preferred
- Familiarity with cloud security principles and technologies (e.g., AWS and Azure).
- Highly motivated self-starter that can manage multiple deliverables independently in a fast-paced environment
- Broad knowledge across the security, insider threat, risk management and compliance domains.
- Proficiency in scripting and automation (e.g., Python, PowerShell, Terraform)
- Familiarity with container security technologies (Docker, Kubernetes).
- Have familiarity with infrastructure as code (IaC) tooling
- Knowledge of encryption and key management practices.
- Excellent risk based problem-solving, analytical, and communication skills.
- Ability to work independently and as part of a team.
#LI-AS1 #LI-Remote
Note: This job description is not intended to be all inclusive or exclusive. At any time, employees may perform other related duties as required to meet the ongoing needs of the organization and participate in additional trainings. SitusAMC does not accept unsolicited resumes from staffing agencies, search firms or any third parties. Any unsolicited resume submitted to SitusAMC in any manner will be considered SitusAMC property, and SitusAMC will not pay a fee for any placement resulting from the receipt of an unsolicited resume.
The annual full time base salary range for this role is
$135,000.00 - $180,000.00Specific compensation is determined through interviews and a review of relevant education, experience, training, skills, geographic location and alignment with market data. Additionally, certain positions may be eligible to receive a discretionary bonus as determined by bonus program guidelines, position eligibility and SitusAMC Senior Management approval. SitusAMC offers PTO and paid holidays, the terms of which are set forth in the program policies. All full time employees also are eligible to participate in various benefit plans, including medical, dental, vision, life, disability insurance and 401K; in each case in accordance with the terms of the applicable plans.
Pay Transparency Nondiscrimination Provision
SitusAMC is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.
Know Your Rights, Workplace Discrimination is Illegal
SitusAMC Denver, Colorado, USA Office
Denver, United States
Similar Jobs
What you need to know about the Colorado Tech Scene
Key Facts About Colorado Tech
- Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
- Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
- Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
- Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute



