Deputy Chief Information Security Officer job in San Francisco

Socure Inc.
San Francisco, CA, United States
22 days ago
Apply on jobs.diversity.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Artificial Intelligence Software as a Service Cloud Engineering Cyber Security Information Systems Data Governance Data Security Factor Analysis Identity and Access Management Information Systems Security Architecture Professional Software Safety Okta

Job description

Socure is seeking an experienced, executive-level Deputy Chief Information Security Officer (Deputy CISO) to report directly to the CISO. In this role, you will lead company-wide security, data governance, compliance, and risk programs across our fast-scaling organization.

You will play a critical strategic role driving AI and data security initiatives both internally across the company and externally as a core component of product development. You will regularly engage with executive leadership, the Board of Directors, enterprise customers, and legal teams on emerging AI risks and privacy frameworks., * Company-Wide Security & Compliance Leadership: Drive, scale, and execute enterprise-wide information security, risk management, and compliance programs aligned with organizational goals and regulatory standards.

  • AI & Data Security Strategy: Drive AI and data security initiatives across the company, embedding robust data protection, governance, and threat modeling directly into product development lifecycles.
  • Executive & Board Governance: Prepare materials and present security posture, cyber risk metrics, and strategic roadmaps directly to executive staff, the Audit Committee, and the Board of Directors.
  • Legal, Privacy & AI Partnership: Collaborate closely with Legal and Risk teams on privacy requirements, AI/ML governance frameworks, regulatory compliance, and technological risk management.
  • Customer Assurance & External Audits: Serve as an executive security ambassador, engaging directly with enterprise customers, prospects, and auditors on security architecture, compliance requirements, and audit reviews.
  • Vendor & Supply Chain Risk Management: Architect and oversee enterprise Vendor Risk Management (VRM) and software supply chain security programs.
  • Enterprise Security Operations: Provide leadership oversight for detection and response, identity and access governance, and cloud-native enterprise security posture.

Requirements

  • Required Certifications:
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Privacy Technologist (CIPT)
  • Factor Analysis of Information Risk (FAIR) Certification
  • Certified in Risk and Information Systems Control (CRISC)
  • Executive Presentation Experience: Proven track record of presenting complex risk concepts, security strategies, and incident reports to Audit Committees and Board members.
  • AI & Security Deployment Track Record: Hands-on experience architecting, evaluating, or deploying AI security solutions and AI safety/governance frameworks.
  • Vendor & Supply Chain Security: Extensive experience managing enterprise vendor risk management, third-party compliance, and software supply chain risk.
  • Customer-Facing Engagement: High degree of comfort acting as a security representative in high-stakes enterprise customer meetings, sales cycles, and compliance audits., * Experience overseeing detection and response operations in modern, cloud-native SaaS environments.
  • Deep experience with enterprise security platforms, specifically Okta (Identity & Access Management) and CrowdStrike (EDR/XDR).
  • Background working in high-growth technology companies, AI/ML products, or B2B tech sectors.

About the company

Why Socure?

Socure is building the identity trust infrastructure for the digital economy - verifying 100% of good identities in real time and stopping fraud before it starts. The mission is big, the problems are complex, and the impact is felt by businesses, governments, and millions of people every day.

We hire people who want that level of responsibility. People who move fast, think critically, act like owners, and care deeply about solving customer problems with precision. If you want predictability or narrow scope, this won’t be your place. If you want to help build the future of identity with a team that holds a high bar for itself - keep reading.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.diversity.com
Prepare application

Good distractions

Talks and stories from around this role β€” technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Β· Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman Β· World Congress 2022

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 Β· World Congress 2024

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 Β· LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger Β· LIVE

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 Β· LIVE

Videos

See all

Related articles

See all