Chief Information Security Officer (CISO)
About this role
About 1KosmosÂ
1Kosmos is a growing startup revolutionizing identity and authentication solutions. We're seeking a hands-on security leader who thrives in a technical, fast-paced environment and is ready to build and scale our security operations from the ground up.Â
About the RoleÂ
We're looking for a hands-on security leader to serve as CISO. The candidate must be a highly technical, operationally focused security leader who can roll up their sleeves and directly implement security solutions while building our security posture. This role is ideal for a senior security operations professional ready to transition into strategic leadership while maintaining a deep technical involvement.Â
Key ResponsibilitiesÂ
Security Operations Leadership (Primary Focus)Â
- Design, implement, and manage a comprehensive security operations infrastructureÂ
- Personally configure and deploy security tools, including endpoint protection, SIEM, and cloud security solutionsÂ
- Build and optimize security monitoring, incident response, and threat detection capabilitiesÂ
- Drive automation initiatives to eliminate manual inefficiencies in security processesÂ
Compliance and Risk ManagementÂ
- Lead compliance initiatives including FedRAMP, SOC 2, and other regulatory frameworksÂ
- Partner with business analysts to navigate regulatory requirements and auditsÂ
- Develop and maintain security policies, procedures, and documentationÂ
- Manage security risk assessments and remediation programsÂ
Technical Security ArchitectureÂ
- Secure cloud infrastructure across AWS, Google Cloud, and other platformsÂ
- Integrate security into CI/CD pipelines, working closely with DevOps teamsÂ
- Implement and manage security tools (CrowdStrike, etc.) across the organizationÂ
- Conduct hands-on security reviews of architecture and codeÂ
Cross-functional CollaborationÂ
- Partner directly with development and engineering teams on secure software developmentÂ
- Oversee internal IT security (smaller component of role)Â
- Communicate security initiatives and status to leadership and stakeholdersÂ
- Coordinate with global teams to ensure consistent security practices
Required QualificationsÂ
Technical ExpertiseÂ
- Minimum 7+ years in security operations with demonstrated hands-on experienceÂ
- Deep expertise in cloud security (AWS, Google Cloud, Azure)Â
- Proven ability to personally deploy and configure enterprise security toolsÂ
- Strong understanding of modern DevOps practices and CI/CD security integrationÂ
- Experience with security automation and orchestrationÂ
Compliance and GovernanceÂ
- Hands-on experience with FedRAMP certification processesÂ
- Track record of achieving and maintaining SOC 2, ISO 27001, or similar certificationsÂ
- Understanding of regulatory compliance requirements and audit processesÂ
Leadership and CommunicationÂ
- Experience leading security initiatives in fast-growing organizationsÂ
- Strong communication skills for collaborating with global, distributed teamsÂ
- Ability to translate technical security concepts for various stakeholdersÂ
- Comfortable working in a startup environment with evolving requirementsÂ
Preferred QualificationsÂ
- Currently in a similar-sized company CISO role, or a Deputy CISO, Director of Security Operations, or similar "CISO minus one" role at a larger organizationÂ
- Experience in identity management or authentication technologiesÂ
- Background in both security operations and security engineeringÂ
- Previous startup or scale-up experienceÂ
- Located in or willing to work EST hours (strong preference for NY/NJ area)Â
- Public-facing CISO experience (client communications) is a plus but not requiredÂ
What We're NOT Looking ForÂ
- Pure policy/governance executives without hands-on technical skillsÂ
- Traditional "big company" CISOs focused only on strategy and presentationsÂ
- Candidates who expect to delegate all technical work from day oneÂ
- Security leaders who haven't maintained current technical skillsÂ
What We OfferÂ
- Opportunity to build and shape security at a growing startupÂ
- Direct impact on product and company security postureÂ
- Collaborative environment with talented engineering teamsÂ
- Competitive compensation and equity packageÂ
- Flexible work arrangements with preference for hybrid in NY/NJ areaÂ
Frequently Asked Questions
Is the salary disclosed for the Chief Information Security Officer (CISO) position at vRPpyitDngWFGJcorm5xDf?
Where is the Chief Information Security Officer (CISO) position at vRPpyitDngWFGJcorm5xDf located?
Is the Chief Information Security Officer (CISO) role at vRPpyitDngWFGJcorm5xDf full-time or part-time?
Which team or department does the Chief Information Security Officer (CISO) at vRPpyitDngWFGJcorm5xDf belong to?
How do I apply for the Chief Information Security Officer (CISO) position at vRPpyitDngWFGJcorm5xDf?
When was the Chief Information Security Officer (CISO) job at vRPpyitDngWFGJcorm5xDf posted?
You'll be redirected to vRPpyitDngWFGJcorm5xDf's official application page on workable.