Chief Information Security Officer (CISO) Job Description Template

The Chief Information Security Officer will head our security organization, which is responsible for securing our technology and products, as well as assisting corporate development, sales, compliance, and audit teams. The CISO will direct all data and information security initiatives.This position collaborates closely with multiple departments in order to manage inherent risks and reduce vulnerabilities in software, systems, architecture, procedures, and practices. We need a candidate with technical skills and risk management experience, as well as a critical, action-oriented leader who is at ease with cross-functional collaboration.

Typical Duties and Responsibilities

  • Create and own a long-term security vision and strategy 
  • Protect the privacy, availability, and integrity of client data
  • Partner with teams across the organization to establish and sustain a security-conscious culture 
  • Provide thought leadership on contemporary security operations and be a market leader in establishing trust through security
  • Support pre- and post-sales go-to-market strategies to utilize security and compliance for commercial benefit
  • Anticipate strategic and scaling-related difficulties through collaborative long-term planning with key stakeholders
  • Obtain and maintain certifications that establish credibility in the marketplace
  • Define, measure, and report security program KPIs that show program maturity and demonstrate performance standards
  • Develop a security workforce that is diverse and inclusive, scalable as the firm grows, and provides possibilities for career growth and advancement

Education

  • Bachelor’s degree in business administration, computer science, information technology, or a related field

Required Skills and Experience

  • Experience leading and growing security organizations in high growth SaaS environments
  • 7+ years of experience in risk management or information security  
  • Current security certifications, including CISSP or CISM
  • Experience securing high velocity workflows in continuous integration and continuous deployment environments 
  • Experience leading and directing technical staff in the execution of security program and project initiatives
  • Experience creating and leading compliance programs
  • Experience with business continuity management and disaster recovery
  • Experience performing and leading information security related audits
  • Familiarity with GDPR, ISO27001, SOC, and FedRAMP
  • Strong project management and leadership skills
  • Excellent written and verbal communication skills

Preferred Qualifications

  • Master’s degree in business administration, information technology, or related field
  • Experience securing highly dynamic cloud environments (AWS, Azure, Google Compute)
Contact us

Recruit with Nexus IT Group