CISO (Chief Information & Security Officer)

3 hours, 14 minutes ago
Full-time
Lead
Cybersecurity
Energy Exemplar

Energy Exemplar

Energy Exemplar is a leading provider of award-winning energy simulation software, including PLEXOS and Aurora, used for modeling electric, gas, and water energy markets worldwide. Their solutions offer in-depth insights for financial industry professi...

Internet Software & Services
251-1K
Founded 1999

Description

  • Develop and implement a comprehensive information security strategy aligned with business objectives.
  • Lead and mentor the Information Security team to ensure effective execution and team success.
  • Oversee and improve the product security program and embed secure development practices across the SDLC.
  • Lead audits and certification efforts for SOC 2, ISO 27001, and similar regulatory requirements.
  • Direct incident detection, response, recovery, communications, and remediation prioritization.
  • Continuously assess cybersecurity risks and implement controls to mitigate them.
  • Ensure compliance with relevant security regulations and standards and represent the company to regulators when needed.
  • Promote security awareness and best practices across the organization.
  • Oversee the adoption and management of security technologies and tooling.
  • Manage third-party and vendor security risk, including security implications of partnerships.
  • Manage security budgets and allocate resources to support security initiatives.
  • Report security program status, needs, and cyber risk trade-offs to senior leadership and stakeholders.

Requirements

  • Bachelor’s degree in Computer Science, Engineering, or a related technical field.
  • 10+ years of experience in information security, including 5+ years in a leadership role.
  • Broad hands-on and senior leadership experience in security, engineering, or DevSecOps management.
  • Deep understanding of security technologies, including intrusion detection, content filtering, threat patterns, security architecture, and application architecture.
  • Strong knowledge of SDLC, application security policies, design, and documentation.
  • Experience with secure coding practices, threat modeling, identity and access management, and security incident response and recovery.
  • Deep knowledge of cloud security, network security, data protection, and security in software development environments.
  • Experience securing and operating across cloud platforms such as Azure and AWS.
  • Knowledge of security tools and monitoring technologies such as IDS and SIEM, with a desire to remain technically hands-on while operating strategically.
  • Deep knowledge of security and compliance frameworks and regulations such as SOC 2, NIST, ISO 270xx, and GDPR.
  • Experience with ethical hacking, computer forensics, information assurance, and intrusion detection/prevention methodologies.
  • Proficiency with static and dynamic analysis tools, vulnerability scanners, and penetration testing.
  • Hands-on experience with secure software development methodologies and DevSecOps practices.
  • Preferred certifications include CISSP, CISA, CISM, CEH, OSCP, or GSEC.
  • Experience building, growing, and maintaining high-performing security teams in the US and India is valued.

Benefits

  • Remote-first flexibility with the ability to work from home, the office, or on the move.
  • Support for work-life balance and autonomy in how and where work gets done.
  • Opportunity to work on a global team with strong ownership and innovation values.
  • Inclusive employer commitment with accommodations available during the recruitment process.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Penetration Tester

AI2CYBER Internet Software & Services

AI2CYBER is hiring full-time Penetration Testers in Greece to conduct security assessments and help clients strengthen their defenses against evolving cyber threats.

Android AWS Azure GCP HIPAA iOS Network Security OWASP Penetration Testing Python
2 hours, 44 minutes ago

Director- Risk Advisory Technology

CrossCountry 251-1K Professional Services

CrossCountry’s Risk Advisory team is hiring a Director of Risk Advisory Technology in Malaysia to lead IT risk advisory and audit work across governance, controls, cybersecurity, cloud, and related technology risk areas.

Cybersecurity ERP
4 hours, 58 minutes ago

Consultor FCCM (Oracle Mantas) Semi Senior

Multiplica Talent 251-1K Professional Services

Consultor Semi Senior FCCM en Oracle Mantas para unirse a un equipo enfocado en proyectos de prevención y gestión de fraude financiero en entornos empresariales complejos.

10 hours, 19 minutes ago

Pentest/Retest Operator

CallTek 51-250 Internet Software & Services

This role focuses on penetration testing and vulnerability validation across networks, web applications, APIs, and infrastructure for a security-driven environment.

Active Directory Burp Suite Linux Network Security Nmap Penetration Testing Postman Wireshark
20 hours, 12 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers