> Markdown version of [/jobs/ext/2608440-vice-president-and-chief-information-security-officer-ciso](https://www.wearedevelopers.com/jobs/ext/2608440-vice-president-and-chief-information-security-officer-ciso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Vice President and Chief Information Security Officer (CISO) - **Company:** Planet Labs PBC - **Location:** San Francisco, CA, United States (Remote available) - **Experience:** Expert - **Salary:** $228,700.0 - $285,900.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, User Authentication, Cloud Computing, Cloud Computing Security, Software Quality, Cyber Security, Open Web Application Security, Phishing, Red Team (Cyber Security), Web Applications, Information Security Management System, Google Cloud, Cloud Platform System, Large Language Models, Machine Learning Operations - **Published:** August 28, 2026 - **Apply:** https://www.dice.com/job-detail/90de98dd-3411-46c0-9419-178160ee01c8 ## About the Role * Typically 10+ years of relevant work experience and 8+ years of leadership experience. * Deep industry and commercial awareness, accompanied by a track record of thought leadership, public speaking, and published work in the information security industry. * Ability to separate the genuinely important from the merely urgent, proactively soliciting ideas and information from multiple external and internal perspectives to forecast risk years in advance. * Ability to cultivate an approachable leadership style that values patience, empathy, and vulnerability, while understanding the impact of your leadership wake. * Experience leading a diverse group of people, setting clear expectations, and holding people accountable * Outstanding written and verbal communication skills, with a focus on explaining security topics, such as the OWASP Top 10, clearly and to a variety of audiences with varying technical sophistication. * Deep understanding of networking and web application architecture. * Experience with the operations and security facets of cloud environments (Amazon Web Services and Google Cloud Platform, primarily). * Experience with common attack scenarios across the layers of our infrastructure (cloud infrastructure, web applications and interfaces, authentication and authorization, network flows, code quality, insider threat, and the like). * Deep understanding of information security principles and common reconnaissance and exploitation frameworks. * Occasional travel required for client and site visits. What Makes You Stand Out: * Understanding of a wide range of vulnerability classes including modern adversarial AI attacks, model poisoning, and LLM supply chain vulnerabilities. * Track record of architecting a multi-year security roadmap that successfully anticipated future technology disruptions. * Prior or current government security clearance. * Government national security experience. * Red team experience. * Prior experience in a public company environment. ## Description As the Vice President and Chief Information Security Officer (CISO), you will serve as a key executive and thought leader driving the strategic evolution of Planet's information security landscape. You will architect a sophisticated, enterprise-wide security strategy that directly aligns with our broader business goals and anticipates the rapidly evolving AI threat landscape. As a visionary leader, you will ensure our defenses outpace both emerging technologies and sophisticated global threat actors while owning enterprise and third-party cyber risk. You will balance the confidentiality, integrity, privacy, and recoverability of Planet's global assets with workforce productivity and agility. In this role, you will oversee departmental budgets and results while empowering a capable tier of front-line managers to execute your vision. This is a unique opportunity to build a predictive, future-proof security organization at a rapidly growing company. This is a full-time, hybrid role which will require you to work from our San Francisco or Washington, DC office 3 days per week. Impact You'll Own: * Spearhead the multi-year strategic plan for information and cloud security, integrating predictive AI defense strategies. * Collaborate with business and technology teams to ensure security and compliance postures exceeding industry standards. * Influence enterprise-wide strategic direction by blending functional security goals with broader business objectives. * Empower front-line managers through delegation, selection, and continuous professional development. * Resolve highly complex business problems, transitioning the department toward proactive, strategic forecasting. * Manage departmental resources, policy, and personnel with full accountability for budget and performance results. * Architect proactive, intelligence-driven risk forecasting models and security risk management processes. * Serve as the ultimate subject matter expert for security issues, including AI governance, secure machine learning pipelines, and space/ground-station asset protection. * Orchestrate incident response and business recovery plans to safeguard critical global services. * Participate in external security certifications and manage customer security audits. * Drive security awareness training programs, ensuring that all employees are trained on information security concepts, emerging social engineering vectors (such as AI-driven phishing), and their role in safeguarding Planet. * Partner with legal and procurement to ensure information security requirements are included in vendor contracts. * Stay abreast of relevant security developments, industry-wide events, regulations, geopolitical shifts, and emerging technologies. * Coordinate development and implementation of incident response plans and procedures ensuring that business-critical services are recovered in the event of a security event, and provides direction, support, and in-house consulting in this area. * Monitor the external threat environment for emerging threats, specifically looking around corners to implement early mitigations, AI-driven counter-measures, and controls where relevant. * Act as a positive culture carrier who lives the company values and makes decisions that have a broad impact on both people and company financials. * Build and nurture external networks consisting of industry peers, ecosystem partners, vendors, government intelligence agencies, and other relevant parties. * Managing and maturing enterprise risk management frameworks and ISO 27001, ISO 42001, ISO 9001, and CMMC certifications. * Manage and oversee safeguarding manufacturing facilities and R&D environments against physical threats while mitigating global supply chain risks. * Oversee the establishment and scaling of an international industrial security program managed by your team to govern global clearance reciprocity, international Request for Visit (RFV) pipelines, and multinational contract compliance (including DD-254 equivalents) in strict alignment with NDP-1, ITAR, EAR, and GSIA regulations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)