Chief Information & Security Officer (CISO)
Role details
Job location
Tech stack
Job description
The CISO will define and lead RLDatix's global security strategy, ensuring the confidentiality, integrity, and availability of all systems and customer data while embedding security as a core design principle across engineering, product, and operations. This role exists to protect trust at scale while accelerating secure delivery across a high-growth SaaS environment in a regulated healthcare sector.
How You'll Spend Your Time
- Design and lead a global information security strategy and roadmap aligned to RLD2030 and enterprise growth objectives to strengthen long-term resilience
- Establish and govern enterprise-wide security architecture (including Zero Trust and policy-as-code approaches) to ensure consistent global protection standards
- Direct and mature global risk, compliance, and governance programs (HIPAA, GDPR, SOC 2, ISO 27001) to maintain trust and regulatory alignment
- Lead and evolve security operations, including SOC, incident response, threat intelligence, and vulnerability management to improve detection and response capability
- Partner with engineering and product teams to embed DevSecOps, secure-by-design principles, and automated security testing into the SDLC to accelerate safe delivery
- Champion cloud and platform security across AWS, Azure, IaC, and container environments to safeguard modern infrastructure at scale
- Present and advise the Executive Leadership Circle and Board on security posture, material risks, and strategic investment decisions to support informed governance
- Build and lead a global, high-performing security organisation, developing talent and embedding a strong security-first culture across the company
Requirements
Do you have experience in SaaS?, * Experience in Information Technology and in a senior CISO or VP Security leadership role in a global organisation
- Proven success leading enterprise-wide security programmes in a highly regulated environment (Healthcare, FinTech, or SaaS)
- Deep expertise in security governance, risk, and compliance frameworks (NIST, ISO 27001)
- Strong track record of achieving and maintaining certifications such as SOC 2 Type 2, ISO 27001, and similar audits
- In-depth knowledge of global privacy and healthcare regulations (HIPAA, HITECH, GDPR, CCPA)
- Experience leading incident response, security engineering, and cloud security at scale (AWS, Azure, DevSecOps environments)
- Ability to communicate complex security and risk topics clearly to Boards, executives, regulators, and customers
- Relevant security certifications (e.g., CISSP, CISM, C-CISO)
- Ability to commute to a key hub location (UK or US) on a hybrid basis
- Strong interest in building secure systems that directly support patient safety and healthcare outcomes
- A collaborative leadership style, able to operate across engineering, product, legal, and executive stakeholders in a fast-paced environment
By enabling flexibility in how we work and prioritizing employee wellness, we empower our team to do and be their best. Key benefits include private health and group accident insurance, an Employee Assistance Program (EAP) for confidential support, and Loyalty Awards for long-service employees.
Benefits & conditions
Pulled from the full job description
- Employee assistance programme
- Private medical insurance