Salary
💰 $253,600 - $380,100 per year
Tech Stack
AWSAzureCloudCyber SecurityGoogle Cloud PlatformSDLC
About the role
- Build and mentor a high-performing security team that thrives on collaboration and continuous improvement.
- Influence at the highest levels, serving as a trusted advisor to the CEO, CTO, CRO, and Board of Directors.
- Lead across Operational Security, Product Security, and Regulatory Compliance, embedding security in every layer of the business.
- Balance proactive risk management with business enablement, protecting revenue and strengthening client trust while fueling innovation.
- Create and drive a forward-looking security strategy aligned with business goals and evolving threats.
- Serve as the executive voice of security across the organization and with external stakeholders.
- Own the security budget and ensure smart investment in impactful technologies and initiatives.
- Oversee all security operations - from threat detection and vulnerability management to incident response and SOC leadership.
- Embed security across the SDLC, ensuring secure architecture, code reviews, and DevSecOps practices are second nature.
- Ensure ongoing compliance with PCI DSS, SOC 2, GDPR, HIPAA, and other key frameworks.
- Maintain robust business continuity and disaster recovery plans.
- Manage payment security, fraud prevention, and third-party risk assessments.
- Build a company-wide security culture through engaging training, awareness programs, and clear communication.
- Foster a “security-first” mindset without slowing down innovation.
Requirements
- Deep expertise in cybersecurity frameworks (NIST CSF v2.0, CMMC), cloud security, and secure software architecture.
- Proven success in leading security for SaaS or payments companies - balancing compliance, innovation, and speed.
- Mastery of PCI DSS and SOC 2 audits and continuous compliance programs.
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (Master’s preferred).
- 10+ years in cybersecurity leadership, with at least 5 years in a senior executive role.
- Certifications: CISSP, CISM, CISA, PCI ISA/QSA, CEH.
- Experience with zero-trust architecture, advanced threat intelligence, and red team/blue team exercises.
- Hands-on knowledge of AWS, Azure, or GCP security best practices.