CrawlJobs Logo

Chief Information Security Officer

sf.gov Logo

City and County of San Francisco

Location Icon

Location:
United States , San Francisco

Category Icon
Category:

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

180440.00 - 230308.00 USD / Year

Job Description:

The San Francisco Department of Public Health is seeking a dynamic and experienced cybersecurity professional to join its IT leadership team. As a key strategic leader, the Chief Information Security Officer (CISO) (0933 Manager V) will be responsible for developing and executing a comprehensive information security strategy that safeguards the department’s systems, data, and services. This role leads the implementation of an enterprise-wide security program that promotes collaboration, strengthens governance, and aligns cybersecurity initiatives with organizational goals.

Job Responsibility:

  • Provides strategic leadership in evaluating and mitigating information security threats across the organization using a structured, risk-based methodology
  • Directs the ongoing development of the department’s information security program, including project portfolio management, incident response, policy frameworks, compliance activities, threat and vulnerability management, and third-party risk management
  • Allocates and manages resources to support a robust security strategy
  • Partners with the Office of Compliance and Privacy Affairs to assess data security risks related to contracts, projects, artificial intelligence solutions, and other initiatives
  • Builds alignment and support for security goals and initiatives across internal and external stakeholders
  • Promotes awareness and understanding of regulatory requirements across the organization
  • Analyzes security requirements and ensures compliance with industry standards such as HIPAA, NIST, and PCI-DSS
  • Establishes and maintains comprehensive policies and procedures to support effective and sustainable security operations
  • Serves as the department’s representative in security-related matters with City agencies and partners
  • Continuously monitors emerging trends, technologies, and best practices in cybersecurity

Requirements:

  • Bachelor’s degree from an accredited college or university
  • Five (5) years of professional healthcare information systems security experience, of which three (3) years must include supervising IT professionals

Nice to have:

Possession of a Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM) certification

Additional Information:

Job Posted:
December 07, 2025

Expiration:
January 09, 2026

Employment Type:
Fulltime
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Chief Information Security Officer

Chief Information Security Officer

The Chief Information Security Officer (CISO) is the senior executive responsibl...
Location
Location
Singapore , Singapore
Salary
Salary:
14000.00 - 20000.00 SGD / Month
https://www.randstad.com Logo
Randstad
Expiration Date
January 16, 2026
Flip Icon
Requirements
Requirements
  • Minimum 10 years of experience in information security
  • Currently holding a CISO role
  • Deep knowledge of cybersecurity frameworks, risk management, and security technologies
  • CISSP or CISM certification is highly preferred
  • Bachelor Degree
Job Responsibility
Job Responsibility
  • Develop and execute the enterprise-wide information security strategy, policies, and roadmap
  • Identify, assess, and manage cyber risks and vulnerabilities
  • Ensure the organization adheres to all relevant security regulations and industry standards
  • Lead the security team in incident response, disaster recovery, and proactive threat intelligence
Read More
Arrow Right

Chief Information Security Officer

The Chief Information Security Officer (CISO) is responsible for establishing an...
Location
Location
Romania , Bucharest
Salary
Salary:
Not provided
https://www.inetum.com Logo
Inetum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 10 years of experience in a combination of risk management, information security, and IT or operational development functions (at least five years in a senior management leadership role)
  • Proven experience in a senior information security role
  • Strong understanding of cybersecurity frameworks and best practices
  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate information security and risk-related concepts to technical and nontechnical audiences at various hierarchical levels, ranging from board members to technical specialists
  • Ability to lead and motivate the information security team to achieve tactical and strategic goals, even when only 'dotted line' reporting lines exist
  • Ability to set up and develop a network
  • Relevant certifications (e.g., CISSP, CISM) are a plus
  • Proficient in English
Job Responsibility
Job Responsibility
  • Establish and maintain the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected
  • Lead the development and implementation of a comprehensive cybersecurity program, manage IT risk, and ensure compliance with regulatory requirements
  • Foster a collaborative environment and ensure effective communication across teams
  • Provide strong leadership and manage multiple missions simultaneously
  • Involve in strategic planning and make informed decisions to support the organization's goals
  • Define and promote the entity's cybersecurity governance, including cyber fraud, according to the group framework
  • Emphasize IT risk management and ensure the security of IT production
  • Work closely with the other teams to conduct entity-wide cybersecurity projects and provide expertise
  • Assist and manage cyber crises to minimize impact on the organization
  • Report on the entity's cybersecurity and IT risks to senior management and stakeholders
What we offer
What we offer
  • Full access to foreign language learning platform
  • Personalized access to tech learning platforms
  • Tailored workshops and trainings to sustain your growth
  • Medical subscription
  • Meal tickets
  • Monthly budget to allocate on flexible benefit platform
  • Access to 7 Card services
  • Wellbeing activities and gatherings
  • Fulltime
Read More
Arrow Right

Chief Information Officer

ACI is scaling a modern, governed, AI-first enterprise. The CIO will be the seni...
Location
Location
United States
Salary
Salary:
Not provided
aciinfotech.com Logo
ACI Infotech
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 12 plus years leading large scale enterprise technology portfolios in multi region environments
  • Proven track record modernizing core systems, consolidating platforms, and delivering measurable business outcomes
  • Ownership of enterprise security and compliance programs, including identity, endpoint, cloud, data, and application controls
  • Demonstrated success implementing governed AI and analytics in production with clear KPIs, cost controls, and risk management
  • Budget accountability, portfolio planning, vendor management, and board level communication
  • Architecture depth across cloud, networks, data platforms, integration patterns, and zero trust security
  • Fluency with CRM and revenue systems, finance and ERP, HR tech, collaboration stacks, and developer platforms
  • Strong data literacy
  • Product leadership
  • Change leadership
Job Responsibility
Job Responsibility
  • Own the enterprise technology strategy aligned to business priorities in sales, delivery, finance, people, and client success
  • Chair architecture and investment councils
  • Set standards for integration, data, cloud, identity, and AI usage
  • Establish KPIs for reliability, security, cost, and agility
  • Publish a quarterly exec scorecard and action plan
  • Evolve our application portfolio across CRM, PSA, ERP, HRIS, collaboration, MDM, observability, and developer platforms
  • Build a governed data foundation with clear lineage, access controls, and self-service analytics
  • Drive interoperability across tools and vendors
  • Retire redundant systems and contracts
  • Lead enterprise security and privacy programs across identity, device, data, and application layers
What we offer
What we offer
  • Attractive salary, performance bonus, and stock options
  • Benefits aligned to a leadership role in a high-growth business
  • Fulltime
Read More
Arrow Right

Field Chief Technology Officer

The Field CTO at Verkada is a key leader who bridges the gap between technology ...
Location
Location
United States , San Mateo
Salary
Salary:
275000.00 - 350000.00 USD / Year
verkada.com Logo
Verkada
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Computer Engineering, IT, Networking, or a related field from an accredited university
  • 8+ years as a Sales Engineer, Solutions Architect, or similar role, with a proven track record working with Fortune 500 companies and Global Customers
  • Experience working for a technology vendor in a field CTO role preferred
  • Strong knowledge of HTTPS/SSL, VLANs, TCP/IP, DNS, NAT devices, DHCP servers, and Firewalls
  • Proficiency in hybrid cloud architectures, machine learning, IoT ecosystems, and API integrations
  • Experience designing security and IoT solutions that meet enterprise-scale requirements
  • Exceptional written and verbal English communication skills
  • Ability to thrive in a fast-paced, ever-changing environment
  • Must be independently authorized to work in the U.S.
Job Responsibility
Job Responsibility
  • Develop and present tailored solutions, including network security recommendations, physical security deployments, cloud security and LTE implementations
  • Act as a trusted advisor, articulating the value-added benefits of Verkada’s solutions, addressing objections and securing technical wins
  • Partner with Account Managers and Solutions Engineers to create and execute territory strategies
  • Effectively present Verkada solutions to a range of audiences, from Executive Briefings targeting C-level executives to loss prevention managers and IT directors
  • Command large audiences by speaking at internal and external conferences
  • Serve as the go-to authority on Verkada’s full suite of products
  • Stay informed on industry trends in security and IoT by attending and presenting at strategic conferences
  • Write technical content to promote Verkada’s products and capabilities
  • Lead training sessions for partners, customers, and employees on the latest Verkada offerings
  • Create scalable resources, such as industry best practice guides
What we offer
What we offer
  • Healthcare programs - Premiums are 100% covered for the employee under at least one plan and 80% for family premiums under all plans
  • Nationwide medical, vision and dental coverage
  • Health Saving Account (HSA) with annual employer contributions and Flexible Spending Account (FSA) with tax saving options
  • Expanded mental health support
  • Paid parental leave policy & fertility benefits
  • Paid holidays, firmwide extended holidays, flexible PTO and personal sick time
  • Professional development stipend
  • Fertility Stipend
  • Wellness/fitness benefits
  • Healthy lunches provided daily
  • Fulltime
Read More
Arrow Right

Chief Cybersecurity Solutions Officer

Loginsoft is a renowned provider of cybersecurity engineering services, speciali...
Location
Location
United States , Washington, DC
Salary
Salary:
Not provided
loginsoft.com Logo
Loginsoft
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10-15 years in technology solutions and engineering services, with 7-10 years in delivering effective cybersecurity solutions
  • Strong background in solution development, user research, and agile environments
  • Deep industry knowledge essential for strategic vision and planning
  • Proficient in impactful presentations, deal negotiation, and building client relationships
  • Effective representation of customer and end-user voices
  • Strong in developing simplified marketing content
  • Demonstrate leadership to effectively lead cross-functional teams, drive collaboration, and foster cross-functional teamwork, communication, and effective leadership
  • Demonstrate deal-closing expertise and stakeholder collaboration
  • Showcase familiarity with emerging cybersecurity tech for a visionary roadmap
  • Possess strategic thinking, entrepreneurial spirit, and strong understanding of the cybersecurity marketplace, including buyer and end-user priorities, with research, feedback, and effective communication skills
Job Responsibility
Job Responsibility
  • Cybersecurity Leadership and Roadmap Development: Lead and leverage expertise in threat intelligence, vulnerability management, cloud security, threat hunting, and threat detection. Address client pain points, stay informed on research, emerging technologies, and industry trends. Shape the cybersecurity solutions roadmap, evaluating emerging technology applications and their impact on partnerships, pricing, and planning. Foster a shared vision and advocate for the customer perspective throughout development, delivery, and deployment
  • Cybersecurity Engineering Services Growth and Adoption: Drive the growth and adoption of cybersecurity engineering services by driving penetration of existing solutions in the existing markets / cybersecurity product companies, and extending solutions to enterprise companies, delivering talented engineering resources and customized offerings. Collaborate with the CRO and CTO to align revenue generation efforts and customer satisfaction goals. Ensure the viability, feasibility, and desirability of security services by leveraging cybersecurity experience and industry knowledge. Gain comprehensive insights into the cybersecurity industry, including offerings, tools, major players, and trends. Work closely with stakeholders to fuel revenue growth and champion the customer's voice
  • Client Engagement and Relationship Management: Serve as a key point of contact for new clients / customers, collaborating with the CRO and CTO to deliver compelling presentations, lead negotiations, and align revenue goals with client expectations. Build and nurture lasting client relationships through effective communication, understanding their needs, and ensuring customer satisfaction. Represent the voice of the customer, working closely with stakeholders, including the CRO and CTO, to drive revenue growth and maintain strong partnerships
  • Strategic Partnerships and Collaborations: Forge strategic partnerships and collaborations by establishing strong relationships with industry stakeholders, fostering collaboration, and creating opportunities for joint initiatives and market expansion. Collaborate with marketing and communications teams to develop impactful content and messaging that effectively communicates the value and benefits of cybersecurity engineering services
  • Thought Leadership and Innovation: Provide thought leadership and innovation in the cybersecurity industry by staying informed about research advancements, emerging technologies, and industry trends. Identify opportunities to leverage existing innovations and invest in new ideas to deliver valuable cybersecurity solutions. Utilize deep knowledge of the industry, customers, and end-users to predict the future, define roadmaps, and position the cybersecurity solutions and the company as a leader in the market. Actively engage on LinkedIn and other social media platforms to promote our services and participate in industry forums as a speaker to drive industry recognition and engagement
  • Deal Closing and Strategic Collaboration: Collaborate with stakeholders, including the CTO, CRO, partners, and clients, to align strategies with market trends and customer needs. Drive the efforts to close deals by capitalizing on the abundant leads and opportunities we receive. Conduct research and gather feedback to define the vision, goals, and roadmap for cybersecurity solutions. Provide strategic guidance for business development, leveraging your expertise in successful deal closures. Foster cross-functional collaboration to bring industry-leading cybersecurity solutions to market, driving adoption, and ensuring successful outcomes
  • Fulltime
Read More
Arrow Right

Senior Compliance Manager/Director of Compliance

This is a unique opportunity to help build out Verkada’s global regulatory compl...
Location
Location
United States , San Mateo
Salary
Salary:
205000.00 - 275000.00 USD / Year
verkada.com Logo
Verkada
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree from a four-year university (computer science/engineering degree or equivalent IT background strongly preferred)
  • 8+ years of relevant compliance experience
  • Deep technical understanding of security engineering principles and architectures, specifically those related to cloud security, IoT, edge computing, AI/ML, and computer vision
  • Demonstrated experience managing compliance programs related to FTC regulations and consent decrees, and CCPA/CPRA risk assessment requirements
  • Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations with minimal supervision
  • Proven understanding and experience with data privacy and security technologies/applications/tools
  • Significant experience with audits, risk, and compliance programs
  • Ability to multitask, prioritize work, and meet deadlines in a fast-paced environment
  • Focus on precision and accuracy, and the drive to clarify ambiguity
Job Responsibility
Job Responsibility
  • Act as the primary legal compliance partner for the Security team, translating legal and regulatory requirements (e.g., FTC, CCPA) into actionable security controls and procedures
  • Lead the internal audit function for regulatory security, privacy, and AI compliance, regularly assessing the effectiveness of security controls against legal obligations and providing detailed reports to the Chief Privacy Officer, Chief Information Security Officer, and other stakeholders in security and privacy governance leadership
  • Work with key privacy, security, and product leaders to develop and lead the company’s legal regulatory compliance program, ensuring ongoing compliance with Verkada’s evolving data privacy, security, risk and governance obligations
  • Develop and oversee the company's compliance framework with a focus on an ongoing FTC-mandated infosec program, as well as CCPA/CPRA risk requirements, ensuring all controls are documented, implemented, and tested
  • Implement and maintain tooling and processes in support of testing and continuous monitoring of legal and security controls across multiple domains: privacy, product, security, AI, IT, etc.
  • Participate in annual risk assessments with the security team, and assist them in preparing risk treatment plans, including escalation paths and remediation processes
  • Work closely with external auditors and assessors to educate them about and achieve continuous compliance over the control environment
  • oversee gathering and maintaining necessary evidence for the audit process
  • Create procedural documentation, including standard operating procedures and other process-related documentation
  • Communicate progress, escalations, and issue resolution to management and team stakeholders
What we offer
What we offer
  • Healthcare programs that can be tailored to meet the personal health and financial well-being needs - Premiums are 100% covered for the employee under at least one plan and 80% for family premiums under all plans
  • Nationwide medical, vision and dental coverage
  • Health Saving Account (HSA) with annual employer contributions and Flexible Spending Account (FSA) with tax saving options
  • Expanded mental health support
  • Paid parental leave policy & fertility benefits
  • Time off to relax and recharge through our paid holidays, firmwide extended holidays, flexible PTO and personal sick time
  • Professional development stipend
  • Fertility Stipend
  • Wellness/fitness benefits
  • Healthy lunches provided daily
  • Fulltime
Read More
Arrow Right

Compliance Analyst

insightsoftware is seeking a detail-oriented and proactive Compliance Analyst to...
Location
Location
United States , Remote
Salary
Salary:
Not provided
insightsoftware.com Logo
insightsoftware
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in information security, Cybersecurity, Computer Science, Risk Management, Legal Studies, Business Administration, or related field
  • Minimum 3+ years of experience in compliance program management, risk management, or information security roles, preferably in regulated industries or technology companies
  • Demonstrated experience responding to third-party risk assessments, security audits, customer security questionnaires, RFPs, and compliance due diligence requests
  • Working knowledge of regulatory frameworks and standards (e.g., ISO 27001, SOC 2 (Type II), NIST, FedRAMP, CMMC, PCI DSS, GDPR, CCPA), trade control regulations (EAR, ITAR), anti-bribery/corruption laws (FCPA, UK Bribery Act), and data privacy principles
  • A strong knowledge of at least one regulatory framework governing matters pertaining to data privacy, cybersecurity, trade compliance, or third-party risk management
  • Experience with third-party screening tools and vendor risk management platforms
  • Familiarity with GRC or data protection management platforms (e.g., OneTrust, ServiceNowMetricStream)
Job Responsibility
Job Responsibility
  • Support the development, implementation, and maintenance of a global compliance program, including trade compliance, anti-bribery/corruption, anti-trust, and business ethics
  • Conduct secondary screening of third parties (vendors, partners, customers) , and assess potential matches against government watchlists of denied, debarred, sanctioned, or restricted parties to ensure compliance with applicable trade compliance, export control and sanctions regulations (e.g., U.S. Department of the Treasury Office of Foreign Assets Control ("OFAC"), U.S. Department of Commerce Bureau of Industry and Security ("BIS"), U.K. Office of Financial Sanctions Implementation ("OFSI"), European Union, and United Nations)
  • Assist with export classification determinations and licensing requirements for software products and services, including evaluation of Export Control Classification Numbers ("ECCNs")
  • Support the company's compliance with applicable data protection regulatory frameworks (e.g., GDPR, CCPA)
  • Support the Corporate Counsel, Data Privacy, AI, Cybersecurity with data protection initiatives and obligations including data mapping exercises, processing activity records, and privacy impact assessments, and coordinate responses to data subject access requests ("DSARs") and privacy-related inquiries
  • Support privacy management tools and platforms for consent management and privacy workflow automation
  • Partner with company counsel, InfoSec, and other stakeholders with compliance audits, data privacy questionnaires, and third-party risk assessment processes including vendor due diligence and ongoing monitoring
  • Support risk and control self-assessments ("RCSA"), audit management, and remediation tracking
  • Collaborate with stakeholders including the Chief Information Security Officer ("CISO") and the team to quantify, monitor, and report on security and compliance performance
  • Maintain GRC platforms (e.g., ServiceNow, Archer, MetricStream) to track compliance activities, risks, and controls
Read More
Arrow Right
New

Security Consultant

This role focuses on formal security governance and documentation rather than ha...
Location
Location
Poland , Gdynia
Salary
Salary:
110.00 / Hour
cyclad.pl Logo
Cyclad Sp. z o.o.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Basic understanding of IP networks, protocols, firewalls, and proxies
  • Very good business and technical English (both written and spoken)
  • Ability to analyze and work with technical and procedural documentation
  • Experience in operational work, including Change Management processes and ticketing systems
  • Strong analytical skills with the ability to gather information from multiple sources and connect the dots
  • Resilience and assertiveness in stakeholder interactions
  • Understanding of Risk Management Frameworks
  • Experience or good understanding of information security policies, procedures, documentation, industry standards, and best practices
Job Responsibility
Job Responsibility
  • Assess and approve selected change requests related to infrastructure, platforms, and applications from a security compliance perspective (e.g. firewall openings, proxy and email whitelisting, AD group membership)
  • Ensure clear communication and a positive experience for stakeholders throughout the process
  • Represent the team and help stakeholders better understand security requirements, raising awareness of IT security matters
  • Interpret information security standards and guidelines and translate them into actionable technical security requirements implemented in production systems
  • Analyze existing procedural and architectural documentation
  • Verify registered issues and risks in alignment with risk management processes and information security guidelines
  • Cooperate with internal stakeholders such as the Chief Security Office, Security Architecture teams, and Application Owners/Managers as part of the decision-making process
What we offer
What we offer
  • Private medical care with dental care (covering 70% of costs) + rehabilitation package. Family package option possible
  • Multisport card (also for an accompanying person)
  • Life insurance
Read More
Arrow Right