
Role Overview:
As the CISO, you will be responsible for developing and implementing an organization-wide information security strategy and framework for our B2B SaaS platform, including securing our multi-tenant architecture. You will lead a team of security professionals and work closely with other stakeholders to protect the organization's information assets from security threats and ensure compliance with applicable regulations and industry best practices.
Key Responsibilities:
Security Strategy & Governance:
- Develop and implement a comprehensive information security strategy and governance framework - policies, procedures, standards, and guidelines, aligned with the organization's goals and current and emerging security risks.
Risk Management & Security Operations:
- Identify, assess, and manage information security risks across the organization. Oversee day-to-day security operations, including incident response, vulnerability management, threat intelligence, security monitoring, and access control.
Security Architecture & Compliance:
- Collaborate with IT and engineering teams to maintain a secure technology infrastructure, and provide guidance on security requirements for new systems and applications. Monitor and enforce compliance with security policies and regulations, and conduct periodic security audits to close compliance gaps.
Incident Response:
- Lead the response to security incidents - investigation, containment, coordination with internal teams and external stakeholders, and remediation to prevent recurrence.
Vendor and Third-Party Risk Management:
- Establish and maintain a vendor and third-party risk management program to assess and monitor the security posture of external partners and suppliers.
Security Awareness, Metrics & Reporting:
- Develop and deliver security awareness and training programs. Define and track key security metrics, and present regular reports on the organization's security posture to executive management and the board.
Qualifications and Requirements:
- Bachelor's or Master's degree in Comp Science, Information Security, or a related field.
- Professional certifications such as CISSP, CISM, or equivalent.
- Proven experience (typically 10+ years) in information security management, including hands-on exp in security operations, risk management, and compliance.
- Must have prior experience as a security leader at a B2B SaaS or multi-tenant cloud platform company, with direct ownership of enterprise customer security requirements (SOC 2, client security audits, contractual SLAs).
- Strong knowledge of information security principles, standards, frameworks (e.g., ISO 27001, NIST Cybersecurity Framework), and regulations (e.g., GDPR, CCPA).
- Familiarity with security technologies such as firewalls, intrusion detection / prevention systems, SIEM, and endpoint protection.
- Excellent leadership and team management skills, with strong communication and presentation abilities to articulate complex security concepts to technical and non-technical stakeholders.
- Analytical mindset and problem-solving skills, with the ability to adapt to a fast-paced, evolving security landscape.
What you should look forward to:
- The opportunity to have a strategic impact on the organizations customer experience and overall success.
- You get to establish yourself as a thought leader in the logistics industry and participate in industry conference and networking events.
- Autonomy to make key decisions making and influencing key business outcomes.
Didn’t find the job appropriate? Report this Job