Job Overview
Employment Type
Full-time
Compensation
Salary
Range $145,000.00 - $180,000.00
Benefits
Dental Insurance
Health Insurance
Paid Time Off
Vision Insurance
401K with company match
Job Description
Arrivia is a prominent technology company specializing in powering the travel experiences behind many of the world's leading membership and loyalty brands. Through its innovative private travel marketplace, Arrivia provides members with unparalleled access to deeply discounted cruises, resorts, and hotels. The platform built and maintained by Arrivia is a sophisticated, cloud-native distributed system that handles everything from booking and servicing to reward fulfillment across various loyalty programs. With a commitment to cutting-edge technology and seamless user experience, Arrivia has carved out a distinct niche in the travel and loyalty industry, making travel more accessible and enjoyable for its diverse membership base.
The role of Director - Data Security & Governance at Arrivia is a critical leadership position focused on protecting the integrity and confidentiality of the company’s vast and valuable data assets. As the guardian of data security, this director-level role is responsible for implementing and overseeing robust data classification procedures, data loss prevention strategies, and encryption protocols that collectively ensure the secure handling of data across multiple channels and environments. The successful candidate will lead the Data Security team and have comprehensive ownership of key controls including Data Security Posture Management (DSPM) across cloud, SaaS, and endpoint infrastructure. This position also entails governance responsibilities related to the use of artificial intelligence within the organization, ensuring sensitive training data and automated responses are securely managed and compliant with regulatory standards.
Reporting directly to the Chief Information Officer (CIO), the Director will be a strategic partner in shaping Arrivia’s data governance framework, emphasizing compliance with major international standards such as ISO 27001, HIPAA, PCI, GDPR, and considerations around Personally Identifiable Information (PII). The role demands not only technical expertise in data security tools like Microsoft Purview, Symantec, and Forcepoint but also a strong leadership presence capable of guiding teams through complex security challenges. A Certified Information Systems Security Professional (CISSP) certification is a mandatory qualification, underscoring the level of expertise and commitment expected from the candidate.
Arrivia is a fully remote company based in the United States, offering a flexible work environment that accommodates talent from most states with some exceptions. The position is full-time and offers a competitive salary range of $145,000 to $180,000 annually. Additionally, the company provides a suite of benefits including comprehensive medical, dental, and vision insurance, paid time off, and a 401k plan with company match. Beyond the compensation package, the opportunity to directly influence the safety of member data worldwide, work closely with executive leadership, and lead initiatives around data governance and security make this an exceptional leadership career opportunity.
Applicants should be prepared to engage in an innovative hiring process designed to evaluate real-world security problem-solving skills rather than solely relying on traditional resume screening. This involves completing a challenge that simulates day-to-day responsibilities, including risk classification and control placement, followed by a video explanation. This approach enables Arrivia to assess practical ability and governance judgment, giving candidates a clear path to the security leadership team interviews without needing referrals. Overall, this role is ideal for seasoned data security professionals passionate about safeguarding data and enabling secure, scalable technology platforms in the travel sector.
The role of Director - Data Security & Governance at Arrivia is a critical leadership position focused on protecting the integrity and confidentiality of the company’s vast and valuable data assets. As the guardian of data security, this director-level role is responsible for implementing and overseeing robust data classification procedures, data loss prevention strategies, and encryption protocols that collectively ensure the secure handling of data across multiple channels and environments. The successful candidate will lead the Data Security team and have comprehensive ownership of key controls including Data Security Posture Management (DSPM) across cloud, SaaS, and endpoint infrastructure. This position also entails governance responsibilities related to the use of artificial intelligence within the organization, ensuring sensitive training data and automated responses are securely managed and compliant with regulatory standards.
Reporting directly to the Chief Information Officer (CIO), the Director will be a strategic partner in shaping Arrivia’s data governance framework, emphasizing compliance with major international standards such as ISO 27001, HIPAA, PCI, GDPR, and considerations around Personally Identifiable Information (PII). The role demands not only technical expertise in data security tools like Microsoft Purview, Symantec, and Forcepoint but also a strong leadership presence capable of guiding teams through complex security challenges. A Certified Information Systems Security Professional (CISSP) certification is a mandatory qualification, underscoring the level of expertise and commitment expected from the candidate.
Arrivia is a fully remote company based in the United States, offering a flexible work environment that accommodates talent from most states with some exceptions. The position is full-time and offers a competitive salary range of $145,000 to $180,000 annually. Additionally, the company provides a suite of benefits including comprehensive medical, dental, and vision insurance, paid time off, and a 401k plan with company match. Beyond the compensation package, the opportunity to directly influence the safety of member data worldwide, work closely with executive leadership, and lead initiatives around data governance and security make this an exceptional leadership career opportunity.
Applicants should be prepared to engage in an innovative hiring process designed to evaluate real-world security problem-solving skills rather than solely relying on traditional resume screening. This involves completing a challenge that simulates day-to-day responsibilities, including risk classification and control placement, followed by a video explanation. This approach enables Arrivia to assess practical ability and governance judgment, giving candidates a clear path to the security leadership team interviews without needing referrals. Overall, this role is ideal for seasoned data security professionals passionate about safeguarding data and enabling secure, scalable technology platforms in the travel sector.
Job Requirements
- cissp certification
- minimum five years of experience in data security and governance
- experience leading teams
- proficiency with data loss prevention tooling
- knowledge of data security posture management
- understanding of encryption techniques and key management
- familiarity with regulatory frameworks like iso 27001, hipaa, pci, gdpr
- ability to work remotely within allowed states
- strong communication and leadership skills
Job Qualifications
- five or more years in data security and governance
- experience managing a data security team
- hands-on experience with DLP tools such as Microsoft Purview, Symantec, or Forcepoint
- knowledge of data security posture management across cloud, SaaS, and endpoints
- strong understanding of encryption at rest and in transit
- experience with key management and key lifecycle
- knowledge of ISO 27001, HIPAA, PCI, GDPR, and PII compliance
- CISSP certification
Job Duties
- lead the data security team
- own data classification processes and data loss prevention across egress channels
- manage data security posture across cloud, SaaS, and endpoints
- oversee cryptography standards, key management, and tokenization
- implement data governance controls for artificial intelligence systems
- collaborate with the CIO on data security strategy
- ensure compliance with ISO 27001, HIPAA, PCI, GDPR, and PII regulations
Job Criteria
Experience
Mid Level (3-7 years)
Job Location
Your Profile Is Visible To Hiring Managers Across OysterLink.
We'll match you with best jobs
Get job offers faster


Search For More Opportunities:
How Candidates Get Hired Faster
Apply to 2–3 similar roles
Complete profile & get best matches
Check new opportunities daily

