- We’re seeking a Deputy CISO with a strong technical background in security architecture, engineering, and operations to partner closely with the CISO in leading our security organization
- This role reports directly to the CISO and will have broad oversight across the security function, acting as a technical leader and escalation point for the team
- This is a high-impact role for someone who has built and defended real systems, and who brings that hands‑on technical credibility to a senior security leadership position
- Partner with the CISO to define and execute the security strategy, roadmap, and priorities across the organization
- Act as a deputy and escalation point for the CISO, representing security leadership in their absence, including with executives and the board when needed
- Provide leadership and oversight across the security organization, empowering strong existing team leads to run their functions effectively while ensuring overall direction stays grounded in technical reality
- Build, mentor, and lead security engineers and architects, raising the technical bar across the function
- Own security budget planning, vendor/tool evaluation, and resourcing decisions in partnership with the CISO
- Provide hands‑on technical review of security architecture across cloud platforms, applications, APIs, and infrastructure
- Lead threat modeling and architecture reviews for major systems and new initiatives, directly engaging with engineering and platform teams
- Drive secure‑by‑design practices into the SDLC and CI/CD pipelines, working alongside DevOps and engineering leadership
- Personally lead or oversee response to major security incidents, including technical root‑cause analysis and remediation planning
- Stay current with the threat landscape, offensive security techniques, and emerging technologies (including AI/ML systems), and translate that knowledge into concrete technical controls
- Ensure security priorities and policies are grounded in sound technical judgment, working closely with all parts of the security organization
- Communicate technical risk clearly to non‑technical stakeholders and executive leadership
- Represent the security function credibly in cross‑functional forums, backed by hands‑on technical expertise
Benefits
- Comprehensive benefits packages: Awesome medical dental, vision and as applicable insurance coverage and retirement plans (in the US we offer a 401(k) plan).
- Company Equity: We want you to feel and act like an owner.
- Rest, relax & recharge: We encourage our employees to take time off, in addition to our fully paid global company holiday schedule. When you need time away from work, we have paid and flex time options based on your role and location, and additional paid leave programs.
- Generous leave programs: As well as offering a wide array of leave programs, new parents can take leave with 100% wage replacement. Our healthcare plans offer coverage on family planning and fertility.
Deep, hands‑on expertise in cloud security architecture (AWS), including infrastructure-as-codeStrong background in application security, secure software development, and modern architecture patterns (microservices, containers, APIs, zero-trust)Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field from a reputable institutionStrong communication skills, with the ability to translate deep technical risk into business terms for executives and the boardExperience leading technical incident response, including root cause analysis for complex, multi-system incidentsProven ability to read and evaluate system architecture and code at a technical level - able to engage credibly with senior engineers, not just review documentationDemonstrated experience building and leading technical security teams12+ years of experience in security engineering, security architecture, or technical security leadership roles, with a track record of hands‑on technical workPrior experience as a CISO, Deputy CISO, or Head of Security Engineering at a comparable organizationCISSPExperience with AI/ML security, including familiarity with OWASP LLM Top 10, MITRE ATLAS, or NIST AI RMFExperience operating in regulated industries (fintech, healthcare, SaaS at scale)