עדיין מחפשים עבודה במנועי חיפוש? הגיע הזמן להשתדרג!
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.
This role is critical in ensuring that our innovative, member focused, platform is backed by the highest standards of security and compliance. Reporting to the CTO, this position will play a key role in safeguarding our company's information assets and enhancing our Information Security Program.
Join us if you're ready to apply your expertise in a role that's both challenging and rewarding, and see the direct impact of your work on the business.
Here are a few of the things you will do:
You will lead and manage the Information Security and Information Technology teams.
Manage the Security and IT teams budget.
Strategic Leadership: Develop and implement a multi-year security strategy and roadmap to anticipate and address security challenges in alignment with company growth objectives. Update the Companys Leadership team quarterly on the state of the Companys security posture.
Program enablement: Drive the evolution of security capabilities, including IT Security, DevSecOps, and Security Operations, to support the company's high-growth trajectory.
Build usable security solutions that support business innovation while mitigating risks.
Drive the adoption of secure development practices and tools, ensuring the integrity of software products and infrastructure in cloud-native environments.
Compliance Management: Ensure that we adheres to all relevant laws, regulations, and standards, such as PCI DSS, SOX, ISO 27001, etc... Craft and maintain security policies, standards, and procedures to protect company assets and data.
Security Awareness: Build and maintain security awareness culture via training, phishing simulations, newsletters and more.
Security Audits: Manage and oversee all aspects of security audits, both internal and external, to ensure compliance with industry standards and regulatory requirements.
Risk Management: Implement and maintain a robust risk management framework to identify, evaluate, and mitigate risks associated with IT, information security and third-party risk management.
Experience with born in the cloud tech companies, at pre-IPO or post IPO stage.
At least 10 years in Information Security with 5+ years in a management / senior management role, managing security and IT teams.
Experience with tech stack similar to: AWS, JAMF, OKTA, JumpCloud, S1, Wiz
Professional certifications such as CISSP, CISM, CCISO, or equivalent are highly desirable.
Exceptional leadership, communication, analytical, and technical skills.
Deep understanding of IT infrastructure and cloud security principles.security and privacy controls, incident response, business continuity and disaster recovery concepts.
Familiarity with DevSecOps, Secure Development, and Cloud Security best practices
Proven experience delivering PCI-DSS, SOC 2 Type 1 and Type 2, ISO 27001, and SOX 404 gap assessments and audits, and compliance with privacy regulations like CCPA and GDPR.
Adept at working with internal Product & Engineering, Legal, People & Culture, Finance and GTM teams, and external partners and auditors.
Ability to work during critical incidents or to support coverage requirements.
במקום לעבור לבד על אלפי מודעות, Jobify מנתחת את קורות החיים שלך ומציגה לך רק משרות שבאמת מתאימות לך.
מעל 80,000 משרות • 4,000 חדשות ביום
חינם. בלי פרסומות. בלי אותיות קטנות.