Chief Information Security Officer - CISO
Jobtailor
- Define and execute the company's enterprise security strategy, aligned with business objectives and compliance obligations (including FedRAMP).
- Own security governance, policies, standards, and risk management practices across the organization.
- Embed security-by-design principles across systems, applications, cloud infrastructure, and engineering workflows.
- Set policy for access control, data protection, and secure development practices, partnering with Engineering to embed requirements into the SDLC without becoming a bottleneck.
- Own data privacy and residency requirements across the regions where we operate infrastructure, including GDPR and other applicable cross-regional obligations.
- Own the security and governance model for how AI and LLM tooling are used across engineering — controlling what data can reach which models and keeping regulated data inside trusted boundaries.
- Implement guardrails for AI and agentic workflows to catch data leakage, prompt injection, and unsafe outputs before they reach production or customers.
- Partner with Engineering leadership to make security a built-in part of our AI-driven SDLC tooling, not a gate bolted on afterward.
- Evaluate and, where appropriate, pursue recognized AI governance frameworks (e.g., ISO 42001) to give customers confidence in how we govern AI use.
- Help turn our AI security posture into a competitive advantage in customer conversations, in partnership with Sales and Compliance.
- Own the enterprise risk assessment program: identify, quantify, and track risk across infrastructure, applications, vendors, and third parties.
- Run and continuously improve a formal risk register with clear ownership, remediation timelines, and executive reporting.
- Lead risk assessments for cloud infrastructure and key third-party dependencies (e.g., AWS, Azure), and for new products, features, or architecture changes before launch.
- Translate technical risk into business terms for executive reporting.
- Support Sales and Customer Success in customer security conversations, questionnaires, and due diligence reviews — working closely with the Compliance team, who own the customer relationship.
- Maintain and mature our compliance posture (e.g., FedRAMP, SOC 2, ISO 27001 as applicable) in partnership with Compliance/Validation.
- Contribute to customer-facing security collateral (architecture summaries, trust documentation) that scales beyond 1:1 conversations.
- Be available for direct customer engagement when a deal or renewal requires executive-level security assurance.
- Own the cybersecurity incident response program: detection, escalation, communication, and remediation.
- Lead cross-functional incident response involving Legal, Engineering, and executive leadership as needed.
- Ensure continuous monitoring, threat intelligence integration, penetration testing, and vulnerability management.
- Mature our detection and response capability (SIEM, monitoring, managed detection/response) to steadily reduce mean-time-to-detect.
- Drive post-incident reviews and continuous improvement.
- Build, lead, and develop the security team (or oversee the security function, depending on current staffing).
- Represent security at the executive/leadership table; advise the CEO/CTO on risk posture and security investment priorities.
- Set and manage the security budget and tooling stack.
Requirements
- 8-10 years in security leadership, with direct experience owning risk assessment programs (enterprise, product, and/or third-party risk).
- Hands-on experience securing cloud environments on AWS and/or Azure.
- Experience governing the security of AI/LLM usage — data boundaries, guardrails against prompt injection and data leakage, and secure use of AI in engineering workflows.
- Deep working knowledge of at least one major compliance framework (FedRAMP, SOC 2, ISO 27001, or similar).
- Experience with data privacy and cross-regional compliance requirements (e.g., GDPR) for organizations operating infrastructure in multiple regions.
- Experience building or maturing a formal risk register and executive risk reporting.
- Strong written and verbal communication — able to translate technical security concepts for customers and executives, and to work cross-functionally with Sales, Compliance, and Engineering.
- Track record of leading incident response for a SaaS or cloud-based product.
Core Competencies
Demonstrates expertise in defining and executing enterprise security strategies, managing risk assessment programs, and ensuring compliance with frameworks such as FedRAMP and GDPR. Proven ability to lead incident response efforts and integrate security into AI-driven engineering workflows.
Highest-signal resume keywords
- Enterprise Security Strategy
- Risk Assessment Programs
- Cloud Security (AWS, Azure)
- Compliance Frameworks (FedRAMP, SOC 2, ISO 27001)
- Incident Response Leadership
ATS Optimization Keywords
Hard Skills
- Risk Management
- Data Protection
- Security Governance
- AI Governance
- Security Incident Response
- Vulnerability Management
- Penetration Testing
- Threat Intelligence
- Security Policy Development
- Secure Development Practices
Soft Skills
- Strong Communication
- Cross-Functional Collaboration
- Executive Reporting
- Customer Engagement
- Team Leadership
Certifications & Qualifications
- FedRAMP
- SOC 2
- ISO 27001
Industry Keywords
- Data Privacy
- GDPR
- Risk Register
- Security Posture
- Compliance Obligations
Tools & Technologies
- SIEM
- Monitoring Tools
- Managed Detection/Response
- Cloud Infrastructure
- AI/LLM Tooling
Vacancy posted 23 hours ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer - CISO in Salt Lake City, UT vacancy
- ...are committed toinnovation, customer success, and making a positive impact on the world.SUMMARYWe are looking for a Chief Information Security Officer, reporting to the CTO, to own our enterprise security strategy and risk program, including the security and governance...SuggestedFull time
- ...Chief Information Security Officer (CISO) About the Company Provider of quality and document management software for electronic control and workflow Industry Internet Type Privately Held, VC-backed Founded 1993 Employees 501-1000 Specialties...Suggested
- ...startup with the trust and stability of an FDIC-insured national bank. We are seeking a highly collaborative, hands-on Chief Information Security Officer (CISO) who wants to build, protect, and scale a digital banking infrastructure that serves millions of customers. This...SuggestedWork at officeShift work
$220k
...following qualities in all solutions; scalability, maintainability, security, reliability, extensibility, flexibility, availability, and... ..., age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Minimum Salary...SuggestedRemote work$150k - $170k
...individual will play a key role in strengthening the organization's security posture by overseeing risk assessments, policy development,... ...Certifications:* CISSP (Certified Information Systems Security Professional)* CISM (Certified Information Security...Suggested- ...communication planning, training, and adoption measurement Package and present process mining findings in executive‑ready formats that enable informed decision‑making by Finance and business leadership. Qualifications REQUIRED Bachelor’s degree in Business, Computer Science,...Temporary workImmediate startRemote workWorldwideFlexible hoursShift work
$425k
...science and service for rare patients. Position Summary: The Chief Scientific Officer (CSO) reports to the EVP, Head of Research & Development... ..., providing scientific insight and strategic counsel that informs portfolio prioritization, corporate strategy, business development...Temporary workRemote work$134.5k - $265.1k
...Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the face of an ever-increasing... ...Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using...Local areaVisa sponsorship- ...team while remaining hands-on with ~50-60% of technical work. Assess current systems and implement improvements for scalability, security, and efficiency. Manage vendor relationships, select and negotiate with technology partners, and reduce reliance on external service...Full time
- A startup accelerator based in Salt Lake City is seeking an AI Co-Founder / CTO to help build a €1B+ company. The role offers a salary while you develop your startup or up to €500k in funding. Responsibilities include owning and running your startup, receiving coaching ...Remote job
- ...Chief Growth Officer About the Company A highly regarded multi-family office and alternative investment platform serving ultra-high-net-worth clients. Industry Financial Services Type Privately Held About the Role The Company is in search of a...Work at office
- ...Chief Growth Officer About the Company Independent multi-family office and registered investment advisor serving ultra-high-net-worth families and institutions. Industry Financial Services Type Privately Held About the Role The Company is in search...Full timeWork at office
- ...UTAH MSP SUPPLIER POSTING IT Security Specialist (Identity & Access Management & Migration Consultant) Project/Position Title: IT Security Specialist (Identity & Access Management & Migration Consultant) Maximum Bid : NA Work Location: Remote Contract...Contract workRemote work
- The University of Utah is seeking a proactive Senior IT Manager to oversee IT operations and team performance in an academic environment. This role requires strong expertise in systems administration and client relationship management. Key responsibilities include mentoring...
- ...Penetration Tester to join our offensive security team. In this role, you will think like... ...degree in Computer Science, Cybersecurity, Information Security, or a related field (or... ...a minimum of three days per week in the office at the new Zions Technology Center in Midvale...Work at officeWork from homeFlexible hours3 days per week
$169.5k
...WORKING CONDITIONS Position Type ~ Office-Basedor RemotePosition Physical work... ..., employees may have access to covered information, cardholder data, or other confidential... ...Policies and Procedures as well as all data security guidelines established within the...For contractorsWork at officeLocal area- ...Job Description Job Description CHIEF GROWTH OFFICER REAL Food re -fined. Founded in 19... ...the company. In this position, you will secure client relationships that are aligned in... ...client and market demands. Data informs smarter growth decisions. Uses market...Contract workRemote workFlexible hours
$150k - $225k
...background in IT systems and operations, with a focus on network security, wireless technology, and software as a service (SaaS)... ...entire IT stack Plans and directs a comprehensive and integrated information technology program involving operational support of mobile devices...Local areaImmediate start- ...ideal candidate will foster a culture of security awareness while implementing robust... ..., implement, and maintain the bank's information security policies, procedures, and... ...Reporting Structure : Reports to the SVP, Chief Information Officer Office Requirements : This...Work at office
$163.4k - $322.1k
Position Summary Cyber Security Architecture Senior Manager - Strategy, Growth and Transformation Deloitte is seeking a Senior... ...Preferred: Master's degree in Business Administration, Cybersecurity, Information Systems, Computer Science, or EngineeringExperience with...Local areaVisa sponsorship- ...Job Description Job Description Come build, innovate, disrupt, and thrive! KēSTA I.T is actively seeking an IT Security Specialist for an immediate contract engagement with our government client. Work Location: This position is Remote Job Description...Permanent employmentFull timeContract workTemporary workImmediate startRemote workWork from home
- ...achieve revenue and EBIDTA growth.What You Will Do in This RoleUnderstands strategic position in industry and territory.Conveys information to customers in a clear, compelling way that will positively affect their thoughts and actions.Identifies, qualifies, and closes...Daily paidFull timeTemporary workLocal areaFlexible hours
- ...live joyful lives in homes that are safe, secure, stylish and comfortable. We encourage a... ..., holiday celebrations, and regular office socials. We support a healthy work-life... ...Please visit our website at for additional information.Sekisui House U.S., Inc. is an Equal...Full timeTemporary workWork at officeFlexible hoursShift work
- O.C. Tanner is seeking an Information Security Analyst to coordinate and report on cyber incidents affecting clients. You will implement policies, analyze security events, and help maintain secure systems and infrastructure across the organization. Responsibilities include...
- Travere Therapeutics in San Diego, with remote flexibility, seeks a Chief Scientific Officer to lead scientific strategy and long-range research priorities from discovery through commercialization. You will partner with the Executive Team to shape portfolio strategy, advance...Remote work
$144.9k - $265.8k
...solutions using Microsoft Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid... ...sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status,...Work experience placementSummer holidayFlexible hours$99k - $232k
...sexual orientation, and gender identity); age; disability; genetic information (including family medical history); veteran, marital, or... ...members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all.Applications will be accepted until...Full timeH1b- ...cross functional team of stakeholders, end-users, engineers, UX designers, and product leaders to understand the problems to solve, inform the product vision, and define requirements.Works toward creating shared outcomes with multiple teams to deliver impact for...Full timeFlexible hoursShift work
$101.2k - $151.8k
...including means and methodsExperience with construction inspection, observation reporting, and quantity trackingProficiency in Microsoft Office (Word, Excel)Familiarity with AutoCAD Civil 3D is a plusStrong written and verbal communication skills, with the ability to...Contract workFor contractorsWork at officeFlexible hours- ...gather customer insights, and use data to build business cases that inform prioritization and investment decisions.Write high-quality epics... ...)Panel interview (1 hour)Work LocationThis is a full-time, in-office position requiring five days per week in our Salt Lake City,...Full timeWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer - CISO. Be the first to apply!
Related searches
- information technology security engineer Salt Lake City, UT
- information security Salt Lake City, UT
- entry level information security analyst Salt Lake City, UT
- information security lead Salt Lake City, UT
- data center security officer Salt Lake City, UT
- senior information security analyst Salt Lake City, UT
- sr information security engineer Salt Lake City, UT
- remote ciso
- business information security officer
- ciso



