Chief Information Security Officer

RunBuggy

Tempe (AZ)

Hybrid

USD 250,000 - 350,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
Life insurance
Short-term disability
Long-term disability
Pet insurance
Identity protection
401(k) plan
Automotive discounts
Wellness program
Rewards program
Paid holidays
Vacation
Sick leave
Parental leave
Home office stipend

Job summary

RunBuggy in Tempe, AZ is seeking a Chief Information Security Officer to lead cybersecurity strategy, risk management, compliance, IT infrastructure, and data governance for the enterprise. You will partner with product and engineering to embed secure-by-design practices, oversee security operations and incident response, and build a high-performing security team.

This hybrid in-office role requires 2-3 days on-site and offers extensive benefits, including health coverage, 401(k), and generous

Qualifications

  • Bachelor's degree in cybersecurity, computer science, information systems, business, or related field required.
  • 12 years of progressive experience in information security with at least 5 years leading security teams.
  • Experience developing and executing an enterprise cybersecurity strategy.
  • Strong knowledge of security governance, risk management, compliance, audit, and enterprise data governance.
  • Experience with incident response and organizational recovery from security events.
  • Experience with cloud security, identity and access management, and security operations.
  • Ability to translate complex technical issues into clear business and risk considerations.

Responsibilities

  • Set and lead the company's enterprise cybersecurity strategy, priorities, policies, standards, and operating plans.
  • Advise executive leadership and the board on cybersecurity risk, business impact, investment priorities, and emerging threats.
  • Take a hands-on security posture by proactive risk reduction across the business.
  • Promote a companywide security culture through education and accountable practices.
  • Lead security governance, risk, compliance, audit readiness, and regulatory alignment.
  • Oversee processes to identify, assess, mitigate, and report information-security risks.
  • Maintain compliance with SOC 2, ISO 27001, NIST, PCI DSS, GDPR, and other standards.
  • Manage third-party security risk and partner on privacy, data protection, and regulatory matters.
  • Oversee security operations including monitoring, vulnerability management, IAM, endpoint, cloud, and threat intel.
  • Establish incident-response, disaster-recovery, and business-continuity plans.
  • Lead response to significant security incidents and communications.
  • Embed secure-by-design practices with Product and Engineering.

Skills

Cybersecurity strategy
Leadership
Incident response
Governance risk compliance
Cloud security
Data governance
Regulatory compliance
Executive communication
Security operations
Secure-by-design

Education

Bachelor's degree in cybersecurity, CS, IS, or related field
Advanced degree preferred

Job description

About Us:

RunBuggy is the most technically advanced automotive logistics platform on the market. Period.

Backed by Porsche Ventures and Hearst Ventures, RunBuggy is transforming the way cars move. Our cutting-edge technology is trusted by some of the largest OEMs, captive finance companies, and automotive lenders in the world to streamline vehicle transportation at scale.

RunBuggy's end-to-end platform connects car shippers and haulers in real time - eliminating the friction of traditional load boards and costly custom software. For shippers, RunBuggy integrates directly into existing management systems, reducing transportation costs and accelerating delivery timelines. For transporters, we offer a smarter, more profitable way to find, accept, and manage loads - all from a single app.

Since launching in 2019, RunBuggy has grown to over 190 team members, facilitated the movement of hundreds of thousands of vehicles, and attracted tens of thousands of transporters across the U.S.

We're not just building a better logistics platform - we're redefining the future of automotive transportation.

About the Role:

The Chief Information Security Officer provides enterprise leadership for the company's cybersecurity, risk management, compliance, IT infrastructure, end-user technology operations, and enterprise data governance. This executive role is responsible for ensuring the company's technology environment is secure, resilient, scalable, and aligned with business priorities, regulatory obligations, and the company's risk tolerance.

The successful candidate will be a seasoned, business-minded, hands-on security executive with proven experience leading cybersecurity strategy, incident response, governance, cloud security, regulatory compliance, IT operations, data governance, fraud prevention, and high-performing teams. This individual will act as both a strategic advisor and an operational leader, working proactively with product and engineering teams to secure the platform, anticipate threats, and protect the business from cyber, physical-theft, fraud, and organized-crime risks.

This is a hybrid role based out of Tempe, AZ. Please do not apply if you are unable to work in-office 2-3 days per week.

If this sounds just like you, then please read on! If you feel this is not in your wheelhouse, that is okay too! We are actively hiring outstanding professionals, so we encourage you to apply to one of our many other opportunities.

What You Will Be Doing:
Security Strategy and Leadership
  • Set and lead the company's enterprise cybersecurity strategy, priorities, policies, standards, and operating plans.
  • Advise executive leadership and the board on cybersecurity risk, business impact, investment priorities, and emerging threats.
  • Take a hands-on, offensive security posture by anticipating threat activity, challenging assumptions, and driving proactive risk reduction across the business.
  • Promote a companywide security culture through education, awareness, and accountable business practices.
Governance, Risk, and Compliance
  • Lead security governance, risk, compliance, audit readiness, and regulatory alignment across the enterprise.
  • Oversee processes to identify, assess, prioritize, mitigate, and report information-security risks.
  • Maintain compliance with applicable laws, regulations, and security frameworks, including SOC 2, ISO 27001, NIST, PCI DSS, HIPAA, GDPR, or other relevant standards.
  • Manage third-party security risk and partner with Legal and Compliance on privacy, data protection, data governance, contracts, and regulatory matters.
Security Operations and Resilience
  • Oversee core security operations, including monitoring, vulnerability management, identity and access management, endpoint security, application security, cloud security, and threat intelligence.
  • Establish, test, and continuously improve incident-response, disaster-recovery, and business-continuity plans.
  • Lead response to significant security incidents, including executive, customer, regulator, law-enforcement, and stakeholder communications as appropriate.
  • Partner with Operations, Legal, Compliance, and law enforcement as appropriate to prevent, investigate, and respond to physical theft, fraud, organized-crime activity, and related security threats.
Product, Application, and Infrastructure Security
  • Work directly with Product and Engineering to embed secure-by-design practices into the platform, product roadmap, software delivery, technology architecture, and cloud environments.
  • Partner with Engineering and IT to strengthen infrastructure, network, application, data, and platform security.
  • Lead hands-on offensive security efforts, including penetration testing, red-team exercises, abuse-case reviews, security assessments, code reviews, and remediation programs.
  • Support secure adoption of emerging technologies, including artificial intelligence and automation.
Enterprise Data Governance
  • Own the company's enterprise data governance strategy, including data classification, quality standards, retention, disposal, and metadata management, ensuring data assets are inventoried and protected in accordance with company policy and applicable law.
  • Partner with Legal, Compliance, Product, and Engineering to align data governance practices with applicable privacy laws, contractual obligations, and regulatory requirements across all business functions.
IT Infrastructure and Helpdesk Operations
  • Oversee reliable, secure IT infrastructure and end-user technology services, including networking, cloud storage, device management, identity and access, backups, and recovery.
  • Manage IT service providers, managed-service providers, and technology vendors to ensure performance, accountability, and value.
  • Coordinate infrastructure changes, maintenance windows, upgrades, and planned service interruptions to minimize business disruption.
Team and Program Development
  • Build, lead, and develop a high-performing security and IT team with clear roles, accountability, and talent strategy.
  • Establish performance metrics, service-level expectations, operating procedures, budgets, and investment priorities.
  • Foster strong collaboration across security, engineering, IT, compliance, privacy, legal, product, operations, and business teams.
Additional Responsibilities
  • Other duties as assigned.
  • This position supervises 8-10 salaried and hourly employees.
What You Bring to the Team by Way of Skills and Experience:
  • Bachelor's degree in cybersecurity, computer science, information systems, business, or a related field; advanced degree preferred.
  • 12 years of progressive experience in information security, cybersecurity, technology risk, or a related discipline, with at least 5 years of experience leading security teams or enterprise security programs.
  • Demonstrated experience developing and executing an enterprise cybersecurity strategy.
  • Strong background in security governance, risk management, compliance, audit, and enterprise data governance
  • Experience leading incident response and organizational recovery from security events.
  • Experience with cloud security, identity and access management, application security, and security operations.
  • Experience partnering with product and engineering teams to secure customer-facing platforms and reduce abuse, fraud, and operational security risk.
  • Experience communicating cybersecurity risks and recommendations to executive leadership and boards.
  • Strong knowledge of recognized security frameworks and practices, including NIST, ISO 27001, CIS Controls, or equivalent.
  • Excellent written, verbal, analytical, and presentation skills.
  • Ability to translate complex technical issues into clear business and risk considerations.
Preferred Qualifications:
  • Professional certifications such as CISSP, CISM, CRISC, CISA, CCSP, or GIAC credentials.
  • Experience supporting a fast-growing distributed organization.
  • Experience managing customer security reviews and enterprise trust programs.
  • Experience with privacy programs, data-protection regulations, and enterprise data governance or data management frameworks.
  • Familiarity with AI security, machine-learning security, or emerging technology risk.
  • Previous experience presenting to a board of directors or board-level committee.
What is in it for You and Why you Should Apply:
  • Market-competitive pay based on education, experience, and location.
  • RunBuggy offers medical, dental, vision, Life w/ AD&D, Short-Term Disability insurance, Long-Term Disability insurance, pet insurance, identity theft protection, and a 401(k) retirement savings plan.
  • RAD, the RunBuggy Automotive Discounts program, lets you purchase, lease, service, and transport your personal vehicles through our partner dealerships and companies.
  • Employee wellness program.
  • Employee rewards, discounts, and recognition programs.
  • Generous company-paid holidays (12 per year), vacation, and sick time.
  • Paid parental leave.
  • Monthly connectivity/home office stipend.
  • A supportive and positive space for you to grow and expand your career.
Pay Range:

The pay range for this role depends on job level, experience, education, and skills.

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

RunBuggy is an equal-opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination, harassment, and retaliation on the basis of race, color, religion, sex (including gender identity and sexual orientation), pregnancy, parental status, national origin, age, disability, genetic information, or any other status protected under federal, state, or local law.

Unsolicited resumes sent via email or LinkedIn Messenger will not be considered.

No agencies, please.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

RunBuggy OMI Inc. • Tempe (AZ)

On-site
USD 180,000 - 240,000
Medical, dental, vision
401(k) with company match
Flexible work arrangements
Logistics Coordinator (Full and Part Time Positions Available)
Logistics Coordinator (Full and Part Time Positions Available)

RunBuggy OMI Inc. • Tempe (AZ)

On-site
USD 38,000 - 56,000
Medical, dental, vision insurance
401(k) retirement plan
Paid holidays and vacation
Fraud Operations Coordinator
Fraud Operations Coordinator

RunBuggy OMI Inc. • Tempe (AZ)

Hybrid
USD 60,000 - 78,000
Medical benefits
Dental & Vision
Life Insurance
+5
Automotive Logistics Concierge - Customer Success
Automotive Logistics Concierge - Customer Success

RunBuggy OMI Inc. • Tempe (AZ)

On-site
USD 38,000 - 56,000
Medical, dental, vision insurance
401(k) retirement plan
Paid holidays and vacation
Payroll Administrator
Payroll Administrator

RunBuggy Inc. • Tempe (AZ)

Hybrid
USD 65,000 - 90,000
Medical insurance
Dental insurance
Vision insurance
+12
Pricing Analyst
Pricing Analyst

RunBuggy • Tempe (AZ)

On-site
USD 70,000 - 91,000
Medical insurance
Dental insurance
Vision insurance
+10
Inside Sales Representative
Inside Sales Representative

RunBuggy OMI Inc. • Tempe (AZ)

On-site
USD 40,000 - 45,000
Medical insurance
Dental insurance
Vision insurance
+11
Payroll Administrator
Payroll Administrator

RunBuggy OMI Inc. • Tempe (AZ)

Hybrid
USD 70,000 - 95,000
Medical, dental, vision insurance
401(k) retirement plan
Monthly home office stipend
+1
Pricing Analyst
Pricing Analyst

RunBuggy OMI Inc. • Tempe (AZ)

On-site
USD 70,000 - 100,000
Medical insurance
Dental & Vision
401(k) retirement plan
+1
Principal Security Governance, Risk & Compliance Analyst
Principal Security Governance, Risk & Compliance Analyst

CarGurus LLC • Boston (MA)

On-site
USD 135,000 - 168,000
Flexible hybrid model
RSUs
Discretionary bonuses