Logo
Confidential

Chief Information Security Officer

Confidential, Boston, Massachusetts, us, 02298

Save Job

A global technology organization serving enterprise clients is conducting a confidential search for an experienced and forward-thinking Chief Information Security Officer (CISO). This role is responsible for defining, leading, and maturing the company’s global information security program, ensuring strong cyber resilience, regulatory alignment, and effective protection of platforms, data, and customer environments across all regions. Overview

The CISO will serve as the primary executive accountable for security strategy, governance, and risk posture across the organization. This individual will define the future-state security framework, champion a security-first mindset, and ensure the company’s security capabilities keep pace with the evolving threat landscape and the expectations of highly regulated global clients. Responsibilities

Security Strategy & Framework

Establish a modern, forward-looking enterprise security strategy aligned with business objectives and emerging threat trends. Develop and maintain security policies, standards, and practices across infrastructure, applications, and operations. Ensure compliance with global data protection and privacy regulations. Align the security program with widely adopted industry frameworks such as ISO 27001, NIST CSF, or similar. Implement an effective governance model to measure, manage, and report on security risk. Partner with senior leaders to integrate cyber risk management into enterprise risk processes. Provide functional oversight and strategic guidance to security personnel across multiple regions. Present clear, business-aligned security metrics and findings to executive leadership. Programs, Operations & Culture

Lead key security programs including identity management, vulnerability management, threat detection, incident response, and cloud security initiatives. Partner with technology, product, and engineering teams to embed secure-by-design practices across the software lifecycle. Drive company-wide awareness and training programs to strengthen security culture and reduce human risk. Oversee incident response readiness and ensure continuous improvement of recovery and resilience plans. Qualifications

Master’s degree in Information Security, Computer Science, Engineering, or a related discipline preferred. Required Skills

10+ years of progressive experience in Information Security, with at least 5 years in a CISO or senior security leadership role within a global technology or enterprise software organization. Strong ability to define enterprise security strategy and communicate risk posture to executive stakeholders. Deep working knowledge of major security frameworks (e.g., ISO 27001, NIST, CIS Controls). Experience leading distributed security teams and programs across multiple geographic regions. Strong understanding of cloud security models (AWS, Azure, or GCP), application security, DevSecOps practices, and modern data protection methods. Professional certifications such as CISSP, CISM, or CISA preferred. Preferred Skills

Professional certifications such as CISSP, CISM, or CISA preferred.

#J-18808-Ljbffr