Director, P&T Operations - Incident Management & Risk
Build and lead incident management frameworks to reduce enterprise risk
Establish a consistent Product & Technology-wide incident management framework including standards, roles, severity definitions, escalation paths, and follow-through expectations. Strengthen post-incident practices so actions are owned, tracked to completion, and translated into systemic improvements. Partner with Engineering and Security leaders to improve incident readiness, response effectiveness, and operational resilience across security ...
Why This Role?
Enable the CTO and Security leadership team to operate effectively at executive and board-committee level
Key Responsibilities
- Establish a consistent P&T-wide incident management framework with clear standards and escalation paths
- Bring together existing incident practices across teams to create greater consistency and visibility
- Strengthen post-incident practices so actions are owned, tracked, and translated into systemic improvements
- Partner with Engineering and Security leaders to improve incident readiness and response effectiveness
- Help connect enterprise risk areas like responsible AI, application security, and data protection into a coherent leadership view
Requirements
- Experience designing and improving organizational operating mechanisms
- Ability to bring structure to complex cross-functional problems
- Experience driving action and accountability in technology operations
- Background in incident management, security operations, or enterprise risk
Required Skills
Indonesia Context
- Working Hours Overlap:
- Flexible — work your own hours
View Original Description from Ashby Job BoardsShow more
Original description from Ashby Job Boards
Hi there! Thanks for stopping by 👋 Are you actively looking for a new opportunity? Or just checking the market? Well… you might just be in the right place! We're looking for a Director, P&T Operations - Incident Management & Risk to join our Product & Technology Operations team. In this role, you'll build and lead the operating mechanisms that help Product & Technology respond effectively to incidents, reduce enterprise risk, and give leaders clear visibility into where attention and action are needed. You'll bring together fragmented processes and practices, establish common standards, improve communications and follow-through, and ensure the right data reaches engineering teams, executives, and security leaders. You'll work at the intersection of Product & Technology Operations, Engineering, Security, and executive leadership. The scope spans operational and security incidents, vulnerability management, and the mechanisms used to identify, assess, track, and reduce technology risk. You'll also help connect broader enterprise risk areas - including responsible AI, application and infrastructure security, identity and access, data protection, digital supply-chain risk, shadow IT/AI, security compliance, and operational resilience - into a coherent leadership view without becoming the functional owner for each domain. This is not a traditional PMO role. We're looking for someone who can design and improve how the organization operates, bring structure to complex cross-functional problems, drive action and accountability, and enable the CTO and Security leadership team to operate effectively at executive and board-committee level. WHAT YOU'LL BE DOING UNIFY AND EVOLVE INCIDENT MANAGEMENT - Establish a consistent P&T-wide incident management framework, including clear standards, roles, severity definitions, escalation paths, communications, and expectations for follow-through. - Bring together existing incident practices across teams, preserving what works while creating greater consistency, clarity, and organizational visibility. - Strengthen post-incident practices so actions are owned, tracked to completion, and translated into systemic improvements rather than isolated fixes. - Partner with Engineering and Security leaders to continuously improve incident readiness, response effectiveness, and operational resilience. STRENGTHEN SECURITY INCIDENT AND VULNERABILITY OPERATIONS - Partner with Security and Engineering to strengthen the operating mechanisms for security incidents and vulnerability management, including intake, prioritization, ownership, remediation tracking, escalation, and reporting. - Create clear visibility into material vulnerabilities, remediation progress, aging, exceptions, and areas requiring leadership intervention. - Ensure security incidents and vulnerabilities connect into broader P&T incident, risk, and executive reporting mechanisms while maintaining clear functional ownership within Security and Engineering. - Help identify recurring breakdowns in process, ownership, or controls and drive cross-functional improvements. CREATE AN INTEGRATED VIEW OF TECHNOLOGY RISK - Build the mechanisms that give P&T and Security leadership a clear, actionable view of material technology and operational risks, trends, mitigations, and decisions required. - Partner with domain owners across responsible AI and AI governance, application and infrastructure security, digital supply-chain risk, identity and access management, Zero Trust, data protection, shadow IT/AI, security compliance, and operational resilience. - Translate complex risk information into clear priorities, tradeoffs, and actions without duplicating the accountability of the teams that own each risk domain. - Identify patterns across incidents, vulnerabilities, and risk signals and use them to inform priorities and systemic improvement. IMPROVE REPORTING, COMMUNICATIONS, AND EXECUTIVE READINESS - Define the metrics and reporting needed to understand incident health, vulnerability exposure, remediation progress, risk trends, and operational resilience. - Develop clear executive-level views that surface what matters, where risk is changing, what actions are underway, and where decisions or intervention are required. - Improve incident and risk communications across technical teams, business stakeholders, executives, and other partners so information is timely, accurate, and appropriate for the audience. - Enable the CTO and Security leadership team with the operating cadence, insights, and materials needed for executive and board-committee discussions. DRIVE CROSS-FUNCTIONAL ACTION AND CONTINUOUS IMPROVEMENT - Lead complex work across Engineering, Security, Product, Legal, Compliance, and other partners through influence rather than formal authority. - Create clear ownership and accountability for cross-functional actions, ensuring critical issues do not stall between teams. - Establish operating cadences that keep material incidents, vulnerabilities, and risks moving toward resolution without creating unnecessary process. - Continuously assess where processes, tooling, data, or organizational interfaces need to improve and drive those changes through implementation. LEAD THE FUNCTION - Set the vision and operating model for incident management and technology risk operations within P&T Operations. - Build strong partnerships with Engineering and Security leadership and act as a trusted advisor on operational readiness, risk visibility, and organizational response. - Develop the capabilities, processes, and team needed as the scope matures, while remaining willing to operate hands-on where the organization needs it most. WHAT YOU NEED TO BRING - Significant experience leading incident management, technology operations, security operations, risk programs, or a closely related function in a complex technology organization. - Demonstrated experience designing or materially improving incident management processes, standards, communications, reporting, and post-incident follow-through across multiple teams. - Working knowledge of security incident response and vulnerability management, with the ability to partner credibly with Security and Engineering leaders without needing to be the deepest technical expert in every domain. - Experience building executive-level risk, incident, or operational reporting that turns complex technical information into clear insights, actions, and decisions. - Strong understanding of how technology and security risks are identified, prioritized, mitigated, tracked, and communicated in an enterprise environment. - Experience leading cross-functional change and driving accountability across teams where you do not have direct authority. - Strong executive communication skills, including the judgment to tailor communications for technical teams, senior executives, and board-level audiences. - Ability to bring structure to ambiguity, identify systemic issues, and build durable operating mechanisms rather than simply coordinate activity. - Strong judgment, calm under pressure, and the ability to operate effectively during high-severity or high-visibility incidents. - A collaborative leadership style and the ability to build trust across Product, Engineering, Security, Legal, Compliance, and executive leadership. Fuel your growth. Find your people. At Lightspeed, your growth is our priority. We invest in you with continuous learning opportunities, global mobility and benefits designed to support you—all within a driven, diverse and inclusive team that’s passionate about empowering our communities. Please note that we ask applicants to disclose any criminal convictions, and we conduct criminal record checks as part of our hiring process for this role. To all recruitment agencies: Lightspeed does not accept unsolicited agency resumes. If we have not directly engaged your company in writing to supply candidates for a specific vacancy, Lightspeed will not be responsible for any fees related to unsolicited resumes. Lightspeed is a proud equal opportunity employer and we are committed to creating an inclusive and barrier-free workplace. Lightspeed welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process. WHERE TO FROM HERE? Obviously, this has to be mutually beneficial: we want you to step into a role you love, and we want to offer you a place you’re proud to come to every day. For a glimpse into our world check out our career page here https://www.lightspeedhq.com/careers/. Lightspeed is building communities through commerce, and we need people from all backgrounds and lived experiences to do that. We were founded in 2005, in Montreal’s gay village and our original members were all part of the LGBTQ+ community. The ethos of our business has been about inclusion from the very beginning, and we strive to provide a workplace where everyone belongs. WHO WE ARE: Powering the businesses that are the backbone of the global economy, Lightspeed's one-stop commerce platform helps merchants innovate to simplify, scale, and provide exceptional customer experiences. Our cloud commerce solution transforms and unifies online and physical operations, multichannel sales, expansion to new locations, global payments, financial solutions, and connection to supplier networks. Founded in Montréal, Canada in 2005, Lightspeed is dual-listed on the New York Stock Exchange (NYSE: LSPD) and Toronto Stock Exchange (TSX: LSPD). With teams across North America, Europe, and Asia Pacific, the company serves retail, hospitality, and golf businesses in over 100 countries. Lightspeed handles your information in accordance with our Applicant Privacy Statement https://www.lightspeedhq.com/legal/applicant-privacy-statement/.
Salary Context
Similar Engineering roles on LokerDollar pay around $224.3k/yr (range $41k–1000k/yr, n=596 active listings).
Hiring at Lightspeed Commerce
Lightspeed Commerce has 50 other active roles on LokerDollar and has been hiring here since Jun 20, 2026 — across Engineering, Product, Data & Analytics, Marketing, Sales & Business Development.
- Associate Product Manager, Salesforce (8-12 months Maternity Cover)
- Head of Revenue Operations
- Directeur(trice) principal(e), Opérations des revenus
Market context
- ESTIMATEEstimated pay is 10% below the role median of $224,278/year (n=596 pay-disclosing listings).
- VERIFIEDLightspeed Commerce: 190 postings in the last 3 months, 191 all-time on LokerDollar.
- VERIFIEDCompany first seen Jun 20, 2026.
- VERIFIEDThis listing first seen Sep 22, 2026.
- VERIFIEDLast verified live Sep 30, 2026.
Openness not stated by employer — check the listing
Frequently asked questions
- Is Director, P&T Operations - Incident Management & Risk at Lightspeed Commerce a remote job?
- Yes, Director, P&T Operations - Incident Management & Risk at Lightspeed Commerce is remote, but the employer did not state which countries can apply. Check the listing before applying.
- What type of employment is Director, P&T Operations - Incident Management & Risk at Lightspeed Commerce?
- This is a full time position.
- How do I apply?
- Click the "Apply" button on this page to go to the official application at Lightspeed Commerce.
Explore related
Market data & reports
Salary & skill-demand research built from our own listings data.
- Indonesia IT Jobs vs Global Remote (2026)Primary analysis of 2,049 listings: methodology, classification rules, downloadable datasets.
- AI-Skill Demand: Indonesia vs Global Remote (2026)10,000+ postings, taxonomy-first classifier, Wilson CIs, pre-registered before analysis.
- Remote ≠ Remote: The Skills That Open Global Work to Indonesians (2026)12,891 remote listings: the highest-paid coding skills are the most geo-locked for Indonesia-based applicants. CC BY 4.0 aggregate dataset.
- The Compliance Layer of the AI Hiring Stack (2026)6,349 remote listings: 77.2% never state who may apply. Methodology and a CC BY 4.0 aggregate dataset.
- Indonesia Hiring Report: Tech vs Non-TechJob demand by field from aggregate open-job counts — never individual listings.
- Indonesia Salary BenchmarkAggregate salary ranges across roles, with open methodology and dataset.
- Indonesian Remote Work Salary & Demand IndexHow much of the global remote job corpus is open to Indonesia, and what it pays (USD) by role.
- Indonesia Quarterly Labor Market ReportLayoffs, funding, salaries & skills per quarter — open aggregates.
- Remote Market Reports by RoleAuto-generated per role family — skills, seniority, companies, salary.
- Global Remote Salary BenchmarkAnnual salary by role & currency, plus the share of listings open worldwide.
From the blog
- Interview Radiologist Remote: What You NeedBreaking down the remote radiology interview process for USD-paying jobs, from screening to offer letter.
- Remote Work Realities: What You Need to Know About Global USD OpportunitiesCut through the noise of viral job claims. Discover the reality of the global remote market, essential skill demands, and how to find verified USD-paying roles.
- Common Mistakes When Applying for RemoteStop getting your applications rejected. Here are the 7 common mistakes remote professionals make when applying for global, USD-paying roles.