Deputy Chief Information Security Officer

Partner with the Chief Information Security Officer on Sardine's security program across application security, governance, risk and compliance, security operations, cloud and SaaS security, corporate IT, customer trust, and overall security strategy.

Responsibilities

  • Partner with the CISO on security strategy, roadmap, priorities, and execution.
  • Identify, prioritize, and address the highest-risk areas across the business.
  • Support security reporting, executive updates, budgeting, vendor evaluation, and planning.
  • Partner on PCI, SOC 2, ISO 27001, DORA, and future FedRAMP readiness.
  • Support incident response and act as deputy incident lead when needed.
  • Work with Engineering on application security, secure SDLC, vulnerability management, threat modeling, and remediation.
  • Assess and improve security across cloud infrastructure, SaaS tools, IAM, endpoint management, and corporate IT.
  • Support security considerations for AI/ML systems, bot mitigation, and abuse prevention.
  • Support customer-facing security conversations, RFPs, due diligence, security reviews, and executive briefings.
  • Partner cross-functionally with Legal, Sales, Engineering, Product, People, and IT.
  • Champion a pragmatic security culture that enables the business while managing risk.

Requirements

  • 10–15+ years of cybersecurity experience, including 3+ years in a senior leadership or director-level role.
  • Broad security background across multiple domains.
  • Strong application security experience and ability to assess technical risk without daily hands-on coding.
  • Experience in a startup, scale-up, or similarly resource-constrained environment.
  • Ability to evaluate risk, rank priorities, and focus on high-impact security work.
  • Knowledge of SOC 2, PCI DSS, ISO 27001, GDPR, CCPA, DORA, and ideally FedRAMP.
  • Experience participating in or leading security incidents.
  • Strong cloud, SaaS security, IAM, endpoint security, and zero-trust fundamentals.
  • Familiarity with AI-assisted workflows and emerging AI/ML security risks.
  • Customer-facing communication skills for sales, security reviews, and executive conversations.
  • Collaborative, business-enabling approach to security.
  • Strong leadership presence and ability to build trust across teams.
  • Must be based in the United States and authorized to work in the US without sponsorship.

Benefits

  • Generous cash and equity compensation.
  • Early exercise for all options, including pre-vested options.
  • Remote-first culture.
  • Flexible paid time off and year-end break.
  • Health, dental, and vision coverage for employees and dependents in the US and Canada.
  • 4% 401k/RRSP matching in the US and Canada.
  • MacBook Pro delivered to your door.
  • One-time home-office setup stipend.
  • Monthly meal and social meet-up stipends.
  • Annual health, wellness, and learning stipends.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available