Chief Information Security Officer

ReadyOp Communications, Inc.
Clearwater, FL, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$169,439.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Kubernetes Security Amazon Web Services Software System Penetration Testing Software as a Service Cloud Computing Security Cyber Security Continuous Integration Phishing Software Vulnerability Management Delivery Pipeline Cloud Integration Devsecops
+1 more
Plan of Action and Milestones

Job description

We are seeking a visionary and hands-on Chief Information Security Officer (CISO) to lead our enterprise security strategy, maintain our strict compliance posture, and safeguard our technology ecosystem., The CISO will serve as the executive authority for all aspects of information security, data privacy, governance, and regulatory compliance across ReadyOp’s SaaS infrastructure. You will oversee our FedRAMP Moderate continuous monitoring program, spearhead our ongoing SOC 2 initiatives, and partner with executive leadership to align security initiatives with business growth., * Define, implement, and maintain ReadyOp’s global information security strategy, policies, and operational controls.

  • Serve as the primary subject matter expert on security, risk, and compliance for executive leadership, board members, and external auditors.
  • Manage security budget allocation, resource planning, and third-party vendor risk assessments.

Compliance & Audit Management

  • Lead and maintain ReadyOp’s FedRAMP Moderate Authorization, ensuring continuous monitoring (ConMon), POA&M management, and annual third-party assessment organization (3PAO) audits.
  • Successfully guide ReadyOp through the current SOC 2 Type I audit and build the operational framework required for ongoing SOC 2 Type II compliance.
  • Ensure ongoing adherence to relevant standards and frameworks (NIST SP 800-53, ISO 27001, HIPAA, GDPR, etc.).

Security Operations & Risk Management

  • Oversee incident response, threat management, vulnerability management, and penetration testing programs.
  • Direct security architecture reviews for SaaS application infrastructure, cloud integrations (AWS), and CI/CD development pipelines.
  • Conduct enterprise risk assessments and develop mitigation strategies to address emerging cyber threats.

Culture & Security Awareness

  • Champion a company-wide culture of security through continuous employee training, phishing simulations, and clear security protocols.
  • Partner with engineering and product teams to integrate Security-by-Design and DevSecOps principles across the product lifecycle.

Requirements

  • Experience: 10+ years of progressive leadership experience in information security, with at least 3+ years in a senior leadership role (CISO, VP of Security, or Director of Security) within a SaaS environment.
  • FedRAMP Expertise: Proven track record of managing and maintaining a FedRAMP Moderate (or High) Authorized environment and liaising with the FedRAMP PMO / 3PAOs.
  • SOC 2 Experience: Hands-on experience preparing for, executing, and maintaining SOC 2 Type I and Type II audits.
  • Technical Mastery: Deep knowledge of cloud security architecture (AWS), NIST 800-53 frameworks, container security, and DevSecOps concepts.
  • Certifications: Active security certifications required (e.g., CISSP, CISM, CRISC, or CISA).
  • Clearance/Eligibility: Ability to successfully pass a background check and security screening; US Citizenship and active security clearance (or eligibility to obtain one) required., * CISSP (Preferred)
  • CISM (Preferred)
  • CRISC (Preferred)

Benefits & conditions

Pulled from the full job description 401(k) Health insurance Retirement plan 401(k) matching Paid time off Vision insurance Dental insurance, * 401(k)

  • 401(k) matching
  • Dental insurance
  • Flexible schedule
  • Health insurance
  • Paid time off
  • Retirement plan
  • Vision insurance

About the company

ReadyOp is an established, rapidly growing SaaS provider offering cutting-edge communications, incident management, and infrastructure solutions to enterprise and government clients. As a FedRAMP Moderate Authorized organization, security and regulatory compliance are at the core of our business strategy. We are actively executing our SOC 2 Type I audit, with immediate plans to transition into SOC 2 Type II compliance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all