CISO leading hands-on security operations and compliance initiatives at identity solutions startup 1Kosmos. Building and managing security infrastructure while collaborating with technical teams.
Design, implement, and manage a comprehensive security operations infrastructure
Personally configure and deploy security tools, including endpoint protection, SIEM, and cloud security solutions
Build and optimize security monitoring, incident response, and threat detection capabilities
Drive automation initiatives to eliminate manual inefficiencies in security processes
**Compliance and Risk Management **
Lead compliance initiatives including FedRAMP, SOC 2, and other regulatory frameworks
Partner with business analysts to navigate regulatory requirements and audits
Develop and maintain security policies, procedures, and documentation
Manage security risk assessments and remediation programs
**Technical Security Architecture **
Secure cloud infrastructure across AWS, Google Cloud, and other platforms
Integrate security into CI/CD pipelines, working closely with DevOps teams
Implement and manage security tools (CrowdStrike, etc.) across the organization
Conduct hands-on security reviews of architecture and code
**Cross-functional Collaboration **
Partner directly with development and engineering teams on secure software development
Oversee internal IT security (smaller component of role)
Communicate security initiatives and status to leadership and stakeholders
Coordinate with global teams to ensure consistent security practices
Requirements
**Required Qualifications **
**Technical Expertise **
**Minimum 7+ years in security operations **with demonstrated hands-on experience
Deep expertise in cloud security (AWS, Google Cloud, Azure)
Proven ability to personally deploy and configure enterprise security tools
Strong understanding of modern DevOps practices and CI/CD security integration
Experience with security automation and orchestration
**Compliance and Governance **
Hands-on experience with FedRAMP certification processes
Track record of achieving and maintaining SOC 2, ISO 27001, or similar certifications
Understanding of regulatory compliance requirements and audit processes
Leadership and Communication
Experience leading security initiatives in fast-growing organizations
Strong communication skills for collaborating with global, distributed teams
Ability to translate technical security concepts for various stakeholders
Comfortable working in a startup environment with evolving requirements
**Preferred Qualifications **
Currently in a similar-sized company CISO role, or a Deputy CISO, Director of Security Operations, or similar "CISO minus one" role at a larger organization
Experience in identity management or authentication technologies
Background in both security operations and security engineering
Previous startup or scale-up experience
Located in or willing to work EST hours (strong preference for NY/NJ area)
Public-facing CISO experience (client communications) is a plus but not required
Benefits
**What We Offer **
Opportunity to build and shape security at a growing startup
Direct impact on product and company security posture
Collaborative environment with talented engineering teams
Competitive compensation and equity package
Flexible work arrangements with preference for hybrid in NY/NJ area
Senior IAM Engineer leading enterprise - scale identity and access management programs at Ameriprise India. Collaborating on architecture, migration strategies, and stakeholder integration.
IT Security Officer in Bremerhaven developing IT security standards and managing incident response with external SOC provider. Collaborating with stakeholders and ensuring security architecture meets high standards.
Analista de Segurança da Informação SR na Evertec, maior empresa de software para o mercado financeiro do Brasil. Responsável por soluções de segurança, análise de vulnerabilidades e resposta a incidentes.
Alternant Ingénieur Cybersécurité & Système at Mairie de Vincennes. Participating in digital transformation and cybersecurity projects for a dynamic local government.
Consultor Especialista em Infraestrutura e Segurança em TI, responsável por atendimento de tickets e gestão de problemas técnicos. Suporta a infraestrutura crítica em ambientes corporativos no Brasil e Argentina.
Network and Security Specialist designing and supporting Cisco and Palo Alto solutions across Brazil. Collaborating with teams to ensure stable and secure network performance.
Lead Security and Compliance Engineer managing end - to - end security for user data. Achieving compliance and developing security architecture at a fast - paced AI startup.
Supervisor de Calidad y Regulación de Seguridad Alimentaria en Cargill asegurando cumplimiento y gestión de seguridad alimentaria. Supervisando actividades regulatorias y liderazgo en la planta.