CISO

OWN, Inc.
Denver, CO, United States
1 day ago
Apply on job-boards.eu.greenhouse.io
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
5 years minimum
Compensation
$102,000.0 - $219,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Software System Penetration Testing Computer Vision Microsoft Azure Remote Backup Services Software as a Service Cloud Computing Cloud Computing Security Cloud Engineering Code Review Cyber Security Data Centers
+15 more
Infrastructure as a Service (IaaS) Information Security Management Network Segmentation Software Architecture Quantum Computing Red Team (Cyber Security) Zero Trust Network Access Software Engineering Software Vulnerability Management Web Testing Scripting Azure Data Factory Software Security Information Technology Mixed Reality

Job description

Be an Early Applicant Remote Hiring Remotely in US Expert/Leader Remote Hiring Remotely in US Expert/Leader Own Eon’s enterprise security strategy, governance, risk, compliance, engineering, operations, and customer trust programs. Build and lead the security organization, manage SOC 2, ISO 27001, NIST, and FedRAMP readiness, oversee detection and incident response, partner with Engineering and Product on secure design, and represent security to executives, the board, regulators, enterprise customers, and industry stakeholders. The summary above was generated by AI

Eon is transforming cloud backups into useful, active assets for the first time. Backed by Sequoia, Lightspeed, Greenoaks, BOND, and Elad Gil, Eon has raised $500M and reached a $4B valuation. Our Cloud Backup and Posture Management (CBPM) platform turns backup data into searchable, accessible, AI-ready assets across every cloud environment our customers run.

As Eon scales, security is becoming a first-class part of who we are - not just a function that supports the business, but a capability our customers trust their most critical data to. We’re hiring our first Chief Information Security Officer to expand that capability.

The Role

This is a full-scope, enterprise CISO role. You will own security at Eon end to end: setting the strategy, building and running the internal security program, leading the team that executes it, and representing that program to the board, regulators, and the enterprise customers who depend on us. You’ll also be a visible face of security externally - in customer conversations, security reviews, and industry forums.

You’ll work as a true executive partner to Engineering, Product, Sales, and Legal, with the autonomy to build Eon’s security organization the right way, early, at a company still small enough for that work to define its trajectory.

What You’ll Own

Security Strategy & Program Leadership

  • Define and own Eon’s overall security strategy, roadmap, and budget, briefing the CEO, executive team, and board on posture, risk, and investment priorities.
  • Build and lead the security function- hiring, structuring, and developing the team as Eon scales.
  • Establish security policies, standards, and a risk management framework that scale with a fast-growing SaaS company.

Governance, Risk & Compliance

  • Own Eon’s compliance posture across SOC 2, ISO 27001, NIST, and FedRAMP, including audit management and continuous readiness.
  • Build a formal enterprise risk management program, including third-party and vendor risk.
  • Keep policy and controls current with an evolving regulatory and customer compliance landscape.

Security Engineering & Operations

  • Partner with Product and Engineering to embed secure-by-design principles into architecture and the software development lifecycle.
  • Own detection, response, and vulnerability management, and lead incident response and crisis management when it matters most.
  • Evaluate and implement the tooling needed to protect a cloud-native, multi-environment platform.

Customer Trust & Enterprise Growth

  • Act as a trusted security advisor to enterprise customers and prospects, supporting security reviews, RFPs, and due diligence.
  • Partner with Sales and Solutions Engineering to unblock and accelerate strategic deals.
  • Represent Eon’s security program externally - with customers, at industry events, and in the broader security community - to build market trust in the Eon brand., * Build the function: shape Eon’s security program and team from day one, with direct visibility to the CEO and board.
  • Backed to move fast: $500M raised and a $4B valuation from Sequoia, Lightspeed, Greenoaks, BOND, and Elad Gil.
  • High-leverage role: your work directly enables enterprise trust, revenue growth, and Eon’s category leadership in cloud data protection., Manage execution of SPEAR threat intelligence operations: prioritize and track RFI workflows, translate business needs into technical specifications, coordinate analysts and engineers, ensure data quality and security, develop reporting/dashboards and SOPs, and communicate with stakeholders to drive timely intelligence delivery. Top Skills: Azure Data ExplorerAzure Dev OpsDynamics 365GrafanaKusto Query LanguagePower BITableau CrowdStrike

Requirements

  • 10+ years in cybersecurity, including 5+ years in senior security leadership (CISO, VP Security, or Head of Security) at an enterprise SaaS or cloud company (CISO experience at enterprise highly preferred)
  • A track record of building and scaling a security program from the ground up, ideally at a high-growth startup.
  • Deep, hands-on knowledge of cloud, SaaS, infrastructure security, and data protection.
  • Direct ownership of SOC 2, ISO 27001, NIST, and FedRAMP programs, including audits and certifications.
  • Proven experience as an executive-level communicator - comfortable presenting to boards, executives, and enterprise customers alike.
  • Experience recruiting, managing, and developing a security team.
  • The judgment and pace to operate as a true owner in a fast-moving, high-growth environment.

Nice to Have

  • Experience with regulated environments and public sector security programs (FedRAMP, StateRAMP).
  • Background in cloud infrastructure, data protection, or backup and recovery products.
  • Relevant certifications such as CISSP, CISM, or CCSP.
  • Experience scaling a security function through hypergrowth (Series C and beyond)., Designs and engineers secure network and cloud architectures across AWS, GCP, Azure, and physical data centers. Responsibilities include threat modeling, network segmentation, monitoring, alerting, automation, attack-surface reduction, and secure connection patterns. The role drives strategic security improvements, partners with product and infrastructure teams, communicates architectural decisions, and mentors engineers. Candidates need deep hybrid networking and cloud security expertise, protocol knowledge, scripting ability, independent problem-solving skills, and strong communication. Top Skills: AIApplied CryptographyAWSAzureCi/CdDnsGCPGoHttp/SHybrid Cloud NetworkingPrivate EndpointsPythonService MeshesShell ScriptingTcp/IpTlsTransit GatewaysVpcsZero Trust Architecture

Benefits & conditions

115K-160K Annually Senior level 115K-160K Annually Senior level Cloud * Computer Vision * Information Technology * Sales * Security * Cybersecurity Deliver generative AI-enabled source code review and application security engagements. Coordinate with leadership, organize resources, refine and present assessment findings, document recommendations, and mentor junior red team members. Support penetration testing projects, including external and web application testing, while managing engagement delivery and improving security assessment technologies and workflows. Top Skills: AutomationBurp SuiteGenerative AiNessusScriptingSource Code Review

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on job-boards.eu.greenhouse.io
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

7:35 min

Addressing inconsistent screen reader and browser environments

Dirk Ginader · LIVE

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all