Chief Information Security Officer
UpGuard
CISO Role At UpGuard
At UpGuard, we are replacing manual security bottlenecks with AI-driven precision. Fresh off a US$75M Series C, we are scaling our infrastructure to process 100 billion risk signals daily. This isn't just growth; it's a total reimagining of how the world manages cyber risk.
We build the Cyber Risk Posture Management (CRPM) platform that security teams actually love. By integrating security ratings, threat intel, and agentic AI, we empower organisations to stay ahead of an ever evolving attack surface.
We aren't just building another tool; we're defining a category. We provide the autonomy to ship world-class technology and the resources to do it at a global scale.
Where Does This Role Fit In?
This is not a conventional CISO role, and we'd rather say that up front than have you discover it in week three.
You will own the entire enterprise technology stack — security and infrastructure, identity, end user compute, networking, cloud platform, and the technology and physical security services behind our workspaces. Security is the substrate, or underlay, for that stack - not a separate function that reviews someone else's work. If you have run infrastructure or operations at scale and layered security over it, this remit will feel natural. If your background is governance-first, it won't.
The environment you're inheriting has been run deliberately lean for through start-up and scale-up, and it is opinionated by design. There is no Microsoft directory, productivity, or desktop footprint anywhere in the estate — Google Workspace, Okta, macOS and ChromeOS, managed browser for BYOD. Attack surface has been controlled by refusing to acquire it. We want that philosophy continued and extended, not unwound.
You'll lead a team - currently nine FTE in size, across four functions: IT Operations, Security Operations, Cloud Platform Engineering and GRC. Your first structural job is maturing security operations to serve both enterprise and product systems — deeper investment in Google SecOps and our n8n automation platform to lift analytics, orchestration and response well beyond what a team this size would normally reach.
And because our product is the leading Cyber Risk Posture Management platform, you are customer zero. You and your team run UpGuard Cyber Risk harder than any of our customers do, turning what you learn into use cases Sales and Customer Success can take to market and signal Product can build on. That is a real, recurring part of the job, not a nice-to-have.
You'll report directly to the CEO, with a defined transition period alongside the outgoing CISO. Details of the remit are below.
What Will You Do?
Own the full technology and security remit. Enterprise infrastructure, security, identity, applications, and workplace technology under a single accountability. No handoffs, no shared ownership of outcomes
Lead and grow three functions. IT & Security Operations, Cloud Platform Engineering, and GRC. Coach the existing leaders, set the technical bar, and build the team you need beneath you — while holding the line on lean
Mature security operations. Build detection, analytics, orchestration and response capability that covers both enterprise and product systems. Drive investment into Google SecOps and n8n so that automation, not headcount, carries the load
Own identity end to end. IAM across our GCP project estate and identity governance and administration for the entire global workforce — joiner/mover/leaver, entitlement review, privileged access, and OAuth consent risk (which, fittingly, we control with our own User Risk product)
Own the network and cloud perimeter. ZTNA as the strategic access model, GCP perimeter security and networking
Own end user compute globally. A predominantly macOS fleet with selective use of ChromeOS and enterprise managed browser services for BYOD. Device provisioning and retrieval across all operating regions
Own the workspaces. Technology and physical security services for our offices — two today, potentially four by the end of 2027 across Australia and the US
Own the compliance program. [Delegated to the Infosec GRC Lead] SOC-2 Type II today, with ISO 27001 targeted to facilitate European growth. Own the enterprise risk register, and the security function's inputs into vendor management and procurement
Be customer zero. Use our own platform to its full extent and beyond, integrating with external systems via our Risk Automations product, feeding real operating experience back into Product, with co-creation of the cases and proof points that Sales and Customer Success will turn into new deals and expands
Communicate at executive level. Brief the executive team, the Steering Committee and the Board, and be credible in front of customers and prospects when their security teams want to talk to ours
What Will You Bring?
An infrastructure and operations foundation. You have run a data centre, an infrastructure function, or a substantial operations function — and security became your remit because you were already accountable for the systems. Architecture is where you're strongest
Process discipline learned somewhere consequential. You've operated in an environment where failure had real consequences and process was the answer — financial services is a strong example of the discipline we mean, though not the only one. You know how to defend, operate, and structure
A demonstrated ability to do a lot with a little. You have built and scaled capability without heavy resourcing, and you reach for automation before headcount. This is the single most important thing we're selecting for. If your effectiveness has depended on a large team, this role will frustrate you
Genuine comfort owning infrastructure, security, applications and identity together. Not as a stretch, but as your natural shape
Hands-on credibility. You are a leader, not a manager. You can architect a control, review a Terraform change, or lead an incident yourself — and you set the technical bar by example, not from the org chart
Cloud-native depth. Substantial GCP experience strongly preferred; deep AWS or Azure experience considered where the architectural instincts transfer. Zero trust access, identity-centric security models, and modern SaaS estate management
Ownership of a compliance program. You have carried SOC 2, ISO 27001, or equivalent as the accountable owner — through audit, not just through policy authoring
The ability to absorb context at speed. You'll have a structured handover and then it's yours. We need someone who is oriented in weeks, not quarters
Personal drive that doesn't need to be managed. High-energy, self-directed, and relentless about the work. You'll be given full ownership from day one, and we expect you to use it
Comfort operating in a fast-paced, high-growth, remote-first environment
What's In It For You?
Monthly Lifestyle subsidy: Use this for financial, physical, and mental well-being
WFH set-up allowance: To ensure you have the right environment to work in, we will help you get set up within your first 3 months at UpGuard
$1500 USD annual Learning & Development allowance: To support your career development, all team members will be able to expense development opportunities against this allowance
Annual leave: PTO plus two additional Upguardian leave days to give you time to recharge your batteries.
18 weeks paid Parental Leave: Irrespective of parenting role
Personal Leave Allowance: This includes sick & carer's leave
Fully remote working environment: While we have physical offices in Sydney & Hobart, we do not mandate compulsory attendance
Top-spec hardware: All team members will be provided with top-spec laptops for their role
Generative AI subsidy: UpGuard provides paid subscriptions for all team members to access generative AI tools to support their work
UpGuard is a Certified Great Place to Work® in the US, Australia, UK and India, establishing its position as a leading global technology employer. 99% of team members agree that UpGuard is a great place to work
- ...is a place you can engage in meaningful work and grow your career. Let’s see what we can achieve. Together.SummaryThe Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive...SuggestedFull timeWork at officeRemote workRelocationVisa sponsorshipRelocation package
$300k - $380k
Obsidian Security is the leading SaaS security platform, trusted by global enterprises... ...market. This role reports to the Chief Legal and Trust Officer.ResponsibilitiesSecurity Strategy & Executive... ...thought leadership positioning and inform messaging around trust and security....SuggestedWork from home- ...strive to create a workplace where teammates feel valued, supported, and empowered to do their best work every day.The Chief Information Security Officer is a strategic leader responsible for designing, implementing, and advancing a comprehensive cybersecurity program...SuggestedLocal area
- DescriptionPosition at GVW Group, LLCJob Title: Chief Information Security Officer (CISO) Location: Birmingham, AL or Chicago, IL Onsite, in office-based position Reports to: Chief Financial Officer (CFO) of GVW Group Job SummaryThe Chief Information Security Officer (...SuggestedWork at office
- Chief Information Security OfficerCorporate Headquarters12575 Uline Drive, Pleasant Prairie, WI 53158Lead security. Manage risk. Support operations. Uline is seeking a Chief Information Security Officer to lead the strategic direction for cybersecurity, risk management...SuggestedFull time
- ...escaleren van risico’s.Adviseren van Directie en management over risico’s, prioriteiten, incidenten en compliance.Werken aan een sterke security governance en nauw samenwerken met IT, Operations en stafafdelingen, met behoud van een onafhankelijke toezichtrol.Borgen van...Contract work
- ...of the nation’s leading public institutions, seeks an experienced, dynamic, and mission-driven leader to be the next Chief Information Security Officer (CISO). Reporting to the Vice President and Chief Information Officer (CIO), the CISO will provide strategic leadership...Contract workRemote work
$237.5k - $390k
...Title: Chief Information Security Officer (CISO)Location: Austin, TX / Morristown, NJ (hybrid)Reports To:Chief Technology OfficerAbout Hippo:Hippo was built on a promise: make homeownership effortless. Nearly a decade later, that mission still drives us. We use technology...Temporary workFlexible hours- We are seeking a Chief Information Security Officer (CISO) with a global vision to build and lead our cybersecurity and information assurance strategies. The CISO will play a pivotal, leadership role in driving innovative strategies for protecting our intellectual property...Full timeContract work
- Position Summary The Chief Information Security Officer (CISO) owns enterprise security strategy, risk management, and compliance for the FAL Group of companies under Fortive (Accruent, Gordian, and ServiceChannel) all of which are SaaS / data platform companies in the...Work at officeLocal areaWorldwide
- ...strategy, and multi-year roadmap to protect information assets, global distribution services,... ...of this role is evangelizing a 'security-by-design' culture across our global... ...YOU WILL DO:Reporting to the SVP & Chief Information Officer, James Olender, the CISO must be able...
- ...are committed toinnovation, customer success, and making a positive impact on the world.SUMMARYWe are looking for a Chief Information Security Officer, reporting to the CTO, to own our enterprise security strategy and risk program, including the security and governance...Full time
$250k - $350k
...embedded software, aircraft, and field infrastructure. Security must protect those systems, customers, partners, and the... ...enabling engineering teams to deliver safely and quickly.As Chief Information Security Officer, you will own company-wide security and privacy strategy...Local area- SUMMARY The Chief Information Security Officer oversees planning and implementation of the organization’s data security programs. This includes strategy development, risk assessments and mitigation efforts and associated processes, and compliance with relevant laws and...Remote work
$420k
...Who are we?Cohere is the leading security-first enterprise AI company. We build cutting... ...in Toronto and San Francisco, with key offices in London, New York City, Montreal, Seoul... ...Join us!The OpportunityCohere seeks a Chief Information Security Officer who can help shape...Full timeWork at officeLocal areaRemote workHome office$325k
...Posting Description CHIEF INFORMATION SECURITY OFFICER (CISO), Information Systems and Technology (IS&T), establishes and leads the enterprise-wide information security strategy across MIT. The CISO leads other overall direction and implementation of the information...Full timeVisa sponsorship- ...TULAreas of Interest: Risk Management; Information SecurityPay Transparency Salary... ...Group includes BOKF, NA; BOK Financial Securities, Inc. and BOK Financial Private... ...trust us with their financial lives.As Chief Information Security Officer, you will lead the enterprise...
$300k - $350k
...decided to fix it. National security professionals, journalists, parents... ...of their most personal information. The Team At Cape, we are... ...Mission) The CISO is our chief protector. Our infrastructure... ...is based out of our NYC or DC office and reports to our founder and...Odd jobWork at officeImmediate startRelocation package- ...Posted Friday, August 7, 2026 at 5:00 AM SpecPro Sustainment and Environmental (SSE) is seeking a Chief Information Security Officer (CISO) to support the National Space Intelligence Center (NSIC) Military Construction (MILCON) program at Wright-Patterson Air Force...Temporary workFor contractorsWork at officeFlexible hours
$350k - $400k
...Group Chief Information Security Officer Organization: Location: New York, NY Description: Job Summary The Chief Information Security Officer (CISO) will lead and oversee the Information Security program across the entire organization. The role will...Contract workLocal areaShift work$350k - $400k
...exceptional service to seller and buyer clients. Executive Summary Compass International Holdings is seeking a seasoned Chief Information Security Officer to own and evolve the enterprise security program. This is an executive & highly technical role at the intersection...Flexible hours- ...startup with the trust and stability of an FDIC-insured national bank. We are seeking a highly collaborative, hands-on Chief Information Security Officer (CISO) who wants to build, protect, and scale a digital banking infrastructure that serves millions of customers....Work at officeShift work
- ...Overview A chief information security officer (CISO) is a senior executive responsible for managing an organization’s information security strategy. The role includes leading cybersecurity governance and risk management to protect digital assets, ensure regulatory...
$243k - $365k
...Verily is seeking a passionate and experienced leader for the company’s centralized Security organization. The scope of Security encompasses security and privacy engineering, information security, and governance, risk, and compliance, in support of a wide range of...Full timeWork experience placement- ...that’s all in? At Imprivata, we deliver unified access and security management programs that eliminate friction, empowering... ...make an impact—you’ll find it here. We are seeking a Chief Information Security Officer to join our team. This is a hybrid opportunity based out...Work at officeLocal area
$300k - $375k
...regulatory compliance in everything we do. Join us and help build the future of global investing! About the Role As Chief Information Security Officer, you will be responsible for leading and strengthening the company’s entire security function across four key domains...Full timeWork at officeWorldwide- ...connections, positively impact others, and pursue your personal and professional dreams-we’d love to meet you. The Chief Information Security Officer (CISO) is a senior leadership role responsible for the development, implementation, and ongoing oversight of the Bank...Local area
- ...We are supporting the search for a Chief Information Security Officer to join a Houston-based power and utilities organisation operating critical infrastructure across a complex, regulated environment.This role is designed for an experienced security leader who can modernise...
- ...Chief Information Security Officer (CISO) Location: New Jersey, USA Level: Executive Leadership Reports To: Chief Executive Officer / Executive Leadership Team Experience: 20+ Years Position Summary The Chief Information Security Officer (CISO) will...
- ...About the job TOGETHER, WE SAVE LIVES Summary The Chief Information Security Officer oversees planning and implementation of the organization’s data security programs. This includes strategy development, risk assessments and mitigation efforts and associated...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!
- information systems security officer United States
- chief information security officer United States
- remote ciso United States
- business information security officer United States
- ciso United States
- chief information security officer ciso United States
- business information security officer biso United States
- information security officer iso United States
- information security officer United States
- sr information security engineer United States

