Chief Information Security Officer - CISO
Jobtailor
- Define and execute the company's enterprise security strategy, aligned with business objectives and compliance obligations (including FedRAMP).
- Own security governance, policies, standards, and risk management practices across the organization.
- Embed security-by-design principles across systems, applications, cloud infrastructure, and engineering workflows.
- Set policy for access control, data protection, and secure development practices, partnering with Engineering to embed requirements into the SDLC without becoming a bottleneck.
- Own data privacy and residency requirements across the regions where we operate infrastructure, including GDPR and other applicable cross-regional obligations.
- Own the security and governance model for how AI and LLM tooling are used across engineering — controlling what data can reach which models and keeping regulated data inside trusted boundaries.
- Implement guardrails for AI and agentic workflows to catch data leakage, prompt injection, and unsafe outputs before they reach production or customers.
- Partner with Engineering leadership to make security a built-in part of our AI-driven SDLC tooling, not a gate bolted on afterward.
- Evaluate and, where appropriate, pursue recognized AI governance frameworks (e.g., ISO 42001) to give customers confidence in how we govern AI use.
- Help turn our AI security posture into a competitive advantage in customer conversations, in partnership with Sales and Compliance.
- Own the enterprise risk assessment program: identify, quantify, and track risk across infrastructure, applications, vendors, and third parties.
- Run and continuously improve a formal risk register with clear ownership, remediation timelines, and executive reporting.
- Lead risk assessments for cloud infrastructure and key third-party dependencies (e.g., AWS, Azure), and for new products, features, or architecture changes before launch.
- Translate technical risk into business terms for executive reporting.
- Support Sales and Customer Success in customer security conversations, questionnaires, and due diligence reviews — working closely with the Compliance team, who own the customer relationship.
- Maintain and mature our compliance posture (e.g., FedRAMP, SOC 2, ISO 27001 as applicable) in partnership with Compliance/Validation.
- Contribute to customer-facing security collateral (architecture summaries, trust documentation) that scales beyond 1:1 conversations.
- Be available for direct customer engagement when a deal or renewal requires executive-level security assurance.
- Own the cybersecurity incident response program: detection, escalation, communication, and remediation.
- Lead cross-functional incident response involving Legal, Engineering, and executive leadership as needed.
- Ensure continuous monitoring, threat intelligence integration, penetration testing, and vulnerability management.
- Mature our detection and response capability (SIEM, monitoring, managed detection/response) to steadily reduce mean-time-to-detect.
- Drive post-incident reviews and continuous improvement.
- Build, lead, and develop the security team (or oversee the security function, depending on current staffing).
- Represent security at the executive/leadership table; advise the CEO/CTO on risk posture and security investment priorities.
- Set and manage the security budget and tooling stack.
Requirements
- 8-10 years in security leadership, with direct experience owning risk assessment programs (enterprise, product, and/or third-party risk).
- Hands-on experience securing cloud environments on AWS and/or Azure.
- Experience governing the security of AI/LLM usage — data boundaries, guardrails against prompt injection and data leakage, and secure use of AI in engineering workflows.
- Deep working knowledge of at least one major compliance framework (FedRAMP, SOC 2, ISO 27001, or similar).
- Experience with data privacy and cross-regional compliance requirements (e.g., GDPR) for organizations operating infrastructure in multiple regions.
- Experience building or maturing a formal risk register and executive risk reporting.
- Strong written and verbal communication — able to translate technical security concepts for customers and executives, and to work cross-functionally with Sales, Compliance, and Engineering.
- Track record of leading incident response for a SaaS or cloud-based product.
Core Competencies
Demonstrates expertise in defining and executing enterprise security strategies, managing risk assessment programs, and ensuring compliance with frameworks such as FedRAMP and GDPR. Proven ability to lead incident response efforts and integrate security into AI-driven engineering workflows.
Highest-signal resume keywords
- Enterprise Security Strategy
- Risk Assessment Programs
- Cloud Security (AWS, Azure)
- Compliance Frameworks (FedRAMP, SOC 2, ISO 27001)
- Incident Response Leadership
ATS Optimization Keywords
Hard Skills
- Risk Management
- Data Protection
- Security Governance
- AI Governance
- Security Incident Response
- Vulnerability Management
- Penetration Testing
- Threat Intelligence
- Security Policy Development
- Secure Development Practices
Soft Skills
- Strong Communication
- Cross-Functional Collaboration
- Executive Reporting
- Customer Engagement
- Team Leadership
Certifications & Qualifications
- FedRAMP
- SOC 2
- ISO 27001
Industry Keywords
- Data Privacy
- GDPR
- Risk Register
- Security Posture
- Compliance Obligations
Tools & Technologies
- SIEM
- Monitoring Tools
- Managed Detection/Response
- Cloud Infrastructure
- AI/LLM Tooling
Vacancy posted 3 hours ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer - CISO in Salt Lake City, UT vacancy
- ...Chief Information Security Officer (CISO) About the Company Provider of quality and document management software for electronic control and workflow Industry Internet Type Privately Held, VC-backed Founded 1993 Employees 501-1000 Specialties...Suggested
- ...Chief Information & Technology Officer (CITO) Bridge Investment Group – A Platform Company of Apollo Global Management Bridge Investment Group... ...continuously evolving Bridge's enterprise technology, data, and security strategy. Working in close partnership with Apollo...SuggestedTemporary workImmediate start
- Bausch + Lomb is seeking a Head of Technology for Digital Health Services in Salt Lake City, UT. As a founding role, you will lead architecture and AI-driven tool development for patient care. The role involves hands-on work, setting technical standards, and managing initial...SuggestedFull timeRemote work
- A startup accelerator based in Salt Lake City is seeking an AI Co-Founder / CTO to help build a €1B+ company. The role offers a salary while you develop your startup or up to €500k in funding. Responsibilities include owning and running your startup, receiving coaching ...SuggestedRemote work
- ...team while remaining hands-on with ~50–60% of technical work. Assess current systems and implement improvements for scalability, security, and efficiency. Manage vendor relationships, select and negotiate with technology partners, and reduce reliance on external service...SuggestedFull time
$160k - $194k
...A Gartner Executive Partner (EP) is an indispensable advisor for every Information Technology and digital leader. Executive Technology Services is an exclusive, membership-based organization serving over 7,000 CIOs / CxOs and senior IT leaders across 87 countries. These...Local areaRemote workWorldwide- ...Teradata, we believe that people thrive when empowered with better information. That’s why we built the most complete cloud analytics and... ...Product Management, Engineering, Product Marketing, and the Office of the Strategic Technology Executives. Contribute to strategic...Permanent employmentWork at officeFlexible hours
- Senior Manager - IT Security Operations & Engineering Salt Lake City, UT Direct Placement $132 to $165 annually DOE + bonus Summary... ...team. Requirements Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field preferred. 8...
$90k - $135k
...materials, and equipment Develop and maintain relationships with subcontractors, vendors, and suppliers to obtain accurate pricing information and ensure that bids are competitive Collaborate with project managers, engineers, and other stakeholders to develop project...For contractorsFor subcontractorLocal areaRemote work$150k - $225k
...background in IT systems and operations, with a focus on network security, wireless technology, and software as a service (SaaS)... ...entire IT stack. Plan and direct a comprehensive and integrated information technology program involving operational support of mobile devices...Permanent employmentLocal areaImmediate start$102.17k
...clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate... ...mental disability, veteran status, citizenship status, genetic information or any other characteristic protected by applicable law....H1b- Trinnex in Salt Lake City, Utah is seeking a Senior Cyber Security Analyst to protect critical software systems for water utilities. You will work at the intersection of cybersecurity and DevSecOps, focusing on securing the software development lifecycle and ensuring application...
$425k
...science and service for rare patients. Position Summary: The Chief Scientific Officer (CSO) reports to the EVP, Head of Research & Development... ..., providing scientific insight and strategic counsel that informs portfolio prioritization, corporate strategy, business...Full timeTemporary workRemote work$275k - $300k
...Chief Innovation Officer, Academic Affairs The Chief Innovation Officer for Academic Affairs (CIOAA) is responsible for centralizing, accelerating, and scaling innovation across the University’s Academic Affairs ecosystem. This role builds and leads an integrated,...Full timeWork at office$275k - $300k
...The University of Utah seeks a Chief Innovation Officer for Academic Affairs responsible for centralizing and scaling innovation across the institution. This role will lead an integrated Innovation Enterprise, building partnerships and overseeing industry-sponsored research...Full time- ...Utah is seeking a Chief Innovation Officer for Academic Affairs responsible for driving innovation and partnerships within the university. This role requires substantial experience in technology transfer and overseeing research initiatives, ensuring collaboration with...Full time
$127.36k - $159.2k
...Reliability Organization, Lean). NE – BC or NEA – BC Certification Physical Requirements Ongoing need for employee to see and read information, documents, monitors, identify equipment and supplies, and be able to assess customer needs. Frequent interactions with providers...Hourly payFull timeShift work- ...Chief Growth Officer About the Company Independent multi-family office and registered investment advisor serving ultra-high-net-worth families and institutions. Industry Financial Services Type Privately Held About the Role The Company...Full timeWork at office
- The University of Utah is seeking a proactive Senior IT Manager to oversee IT operations and team performance in an academic environment. This role requires strong expertise in systems administration and client relationship management. Key responsibilities include mentoring...
- Job Description Job Description Job Title: Construction Specialist III Job at a Glance: This role will be completing construction quality audits in the field 80% of the time with the additional 20% being remote PC work. ? Wide range of inspections on nodes,...Long term contractContract workRemote work
- Travere Therapeutics in San Diego, with remote flexibility, seeks a Chief Scientific Officer to lead scientific strategy and long-range research priorities from discovery through commercialization. You will partner with the Executive Team to shape portfolio strategy, advance...Full timeRemote work
$104k - $156k
Posting Type Remote/Hybrid Job Overview The Advanced Security Engineer is a technically deep, hands-on practitioner who forms the operational... ...Minimum Qualifications: Bachelor's in Computer Science, Information Security, or equivalent experience. 5+ years of hands-on...Remote work- ...Chief Growth Officer About the Company A highly regarded multi-family office and alternative investment platform serving ultra-high-net-worth clients. Industry Financial Services Type Privately Held About the Role The Company is in search of a...Work at office
- O.C. Tanner is seeking an Information Security Analyst to coordinate and report on cyber incidents affecting clients. You will implement policies, analyze security events, and help maintain secure systems and infrastructure across the organization. Responsibilities include...
$144.9k - $265.8k
...solutions using Microsoft Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid... ...sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status,...Work experience placementSummer holidayFlexible hours$50 - $60 per hour
DataAnnotation is committed to creating high-quality AI. We are looking for a CIO to join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own schedule. This role is designed to fit a variety of ...Hourly payFull timeContract workPart timeWork experience placementRemote workFlexible hours$112.8k - $264.1k
...platforms. In addition, our customers demand high availability and security from our Cloud. We need a leader who can thrive in ambiguity,... ..., and/or drug testing requirements.** **Range and benefit information provided in this posting are specific to the stated locations...Temporary workFlexible hours$140k
...improvement mindset. This role is remote and requires a Public Trust security clearance. Maximus TCS (Technology and Consulting Services)... ..., age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Minimum Salary...Contract workRemote workShift work$112.8k - $264.1k
...and Access Management organization provides the foundational security capabilities that protect sensitive healthcare data and enable... ...responsibility that comes with securing sensitive healthcare information. You should be comfortable operating in a fast-moving environment...Temporary workFlexible hours- ...Management to clarify requirements, prioritize work, and deliver secure, high-quality releases. The role also ensures development... ...including prioritization, coverage, and coordination across in-office and remote schedules. ~ Develop and maintain clear policies...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer - CISO. Be the first to apply!
Related searches
- entry level information security analyst Salt Lake City, UT
- sr information security engineer Salt Lake City, UT
- information security analyst Salt Lake City, UT
- senior information security analyst Salt Lake City, UT
- information security lead Salt Lake City, UT
- information security compliance analyst Salt Lake City, UT
- data center security officer Salt Lake City, UT
- information security Salt Lake City, UT
- information security officer
- chief information security officer







