
CISO, EMEA
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in Spain.
• Take ownership and continuously enhance Job&Talent's global information security strategy and roadmap.
• Convert technical security risks into understandable business risks and provide counsel to the CTO and executive team regarding security posture.
• Set measurable security goals, KPIs, KRIs, and processes for risk acceptance.
• Develop a security organization that supports a dynamic global technology company.
• Oversee product, application, cloud, corporate, identity, endpoint, SaaS, network, and data security.
• Embed security practices into Engineering, Platform, and SRE development and infrastructure processes.
• Ensure security governance for AI-driven products, agents, and LLM integrations.
• Propel the adoption of Zero Trust and safeguard sensitive data throughout its lifecycle.
• Construct and enhance security monitoring, detection engineering, incident response, and threat intelligence capabilities.
• Manage significant security incidents by coordinating efforts across technical, business, executive, privacy, and legal stakeholders.
• Sustain security management, risk, and compliance programs including ISO 27001, SOC 2 Type II, GDPR, and client requirements.
• Oversee technology and vendor ecosystem security risk management.
• Develop Job&Talent's technical AI security framework and address AI-related risks.
• Collaborate with Legal and Privacy teams regarding EU AI Act requirements.
• Foster a security culture through education and security champion initiatives.
• Report directly to the CTO.
• Over 10 years of experience in information security, primarily within global software technology product firms.
• More than 5 years in prominent security leadership positions in technology, SaaS, marketplace, fintech, HR-tech, or similarly data-driven product settings.
• At least 2 years as a CISO, VP of Security, or another senior security leader in a global SaaS or software technology product organization.
• Proven experience leading security initiatives in both product technology and corporate IT environments.
• Strong background in Product and Application Security, cloud security, and contemporary security architecture.
• Documented experience in building or managing mature Security Operations and Incident Response capabilities.
• In-depth knowledge of modern identity architecture, IAM, SSO, device trust, and Zero Trust principles.
• Experience in protecting substantial volumes of personal or sensitive data and managing SaaS and third-party security risks.
• Familiarity with ISO 27001, SOC 2, GDPR, and enterprise customer security requirements.
• Knowledge of AI security and emerging risks related to LLM-based applications and AI agents.
• Experience collaborating with Engineering, Platform, SRE, IT, Legal, and Privacy teams, along with executive leadership.
• Capability to deeply engage with architecture, infrastructure, identity, applications, cloud security, and incidents.
• Ability to differentiate theoretical vulnerabilities and compliance gaps from risks that could significantly impact the business.
• Proficiency in balancing security needs with business objectives.
• Skill in quantifying security posture and establishing meaningful metrics.
• Capacity to navigate between executive-level discussions and detailed technical inquiries.
• Ability to forge strong partnerships with Engineering teams.
• Competence in making clear decisions in uncertain situations and coordinating stakeholders during security incidents.
• Talent for building and developing effective security capabilities.
• Competitive salary.
• Meaningful benefits.
• Equal Opportunity Employer.
Get handpicked remote jobs straight to your inbox weekly.