Vice President of Information Security
Uplight · Denver, United States
About The Role
Join Uplight, a leading company in the clean energy revolution, as the Vice President of Information Security (CISO). In this strategic and operational role, you will drive our enterprise security, privacy, and risk programs, serving as a trusted advisor to customers, partners, investors, and other industry stakeholders. You will define a cyber security strategy, develop and implement a comprehensive enterprise risk management program, and provide leadership to security professionals and teams. Additionally, you will manage potential security incidents, assist the sales function with customer security requests, and ensure compliance with regulatory, legal, and contractual requirements.
- Definir una estrategia de ciberseguridad y un plan de desarrollo de capacidades que mantenga el ritmo con las amenazas cibernéticas y los planes de crecimiento de la empresa.
- Desarrollar, implementar y supervisar un programa de gestión de riesgos empresariales estratégico y integral.
- Proporcionar liderazgo a los profesionales y equipos de seguridad, incluida la contratación, el desarrollo y la gestión del rendimiento.
- Experience applying security frameworks such as ISO 2700x, NIST CSF, or NIST 800-53 including compliance and audit strategies for cloud environments (IaaS, SaaS, etc)
- Strong knowledge of current and emerging cyber security risks and innovative risk management methods and solutions
- Excellent verbal and written skills and be comfortable presenting ideas and issues to different levels within and outside of the organization, including directly with Uplight’s Board and/or Audit Committee
- Pragmatic mindset, ability to handle difficult problems with partial data and under high pressure
- 10+ years of business experience in a combination of IT security, risk management, or Information Security with 7+ years in a leadership role
- Demonstrated executive level business and technical acumen
- Expertise in domains such as application development, application security, security operations, cybersecurity monitoring, vulnerability management, incident management/response, identity and access management, and cloud infrastructure (AWS/GCP/Azure)
- Subject matter expertise in developing and executing company-wide program, policies, procedure, and controls
- Strong understanding of security concepts and technologies
- Ability to develop and clearly articulate a compelling security strategy to key management stakeholders
- Certification showing expertise in security management, audit, or risk management (e.g. CISSP, CISA, CISM, CRISC)
- Completion of prior successful external audits, such as SOC 2
- Prior experience automating compliance controls
- Don’t meet every single requirement? Studies have shown that women, marginalized genders and people of color are less likely to apply to jobs unless they meet every single qualification. At Uplight we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring