Chief Information Security Officer (CISO) with a SaaS Platform – San Francisco, CA

Chief Information Security Officer CISO With A SaaS Platform San Francisco CA

Role Overview for Chief Information Security Officer (CISO) with a SaaS Platform – San Francisco, CA

JRG Partners is proud to partner with a trailblazing, high-growth Software-as-a-Service (SaaS) company based in the vibrant tech hub of San Francisco, CA. Our client is a recognized leader in their industry, providing an innovative platform that empowers businesses worldwide. As they continue their rapid expansion and scale their operations, the integrity, confidentiality, and availability of their platform and data have become more critical than ever. We are seeking a visionary and strategic Chief Information Security Officer (CISO) to join their executive leadership team and champion a world-class security program.

This is not just a technical role; it is a pivotal business leadership position. The CISO will be the organization’s senior-most authority on information security, responsible for establishing and maintaining a comprehensive, enterprise-wide security strategy that is deeply integrated with the company’s business objectives. You will be a trusted advisor to the CEO, the board of directors, and fellow executives, providing crucial guidance on the ever-evolving threat landscape and risk posture. Your mission will be to foster a robust security culture, protect the company’s most valuable assets, and build unwavering trust with a growing base of enterprise customers.

The ideal candidate is a seasoned security leader with a proven track record of building and scaling security programs within a modern, cloud-native SaaS environment. You are a strategic thinker who can translate complex technical concepts into clear business risks and opportunities. You thrive in a fast-paced, innovative culture and possess the leadership acumen to build, mentor, and inspire a high-performing security organization. This is a unique opportunity to make a profound impact, shaping the security foundation of a company on a trajectory to redefine its market.

Key Responsibilities of Chief Information Security Officer (CISO) with a SaaS Platform – San Francisco, CA

As the CISO, you will have a broad and impactful mandate. Your key responsibilities will encompass strategy, governance, operations, product security, and compliance. You will be expected to:

Develop and Execute Security Strategy

Design, implement, and continuously refine a comprehensive, multi-year information security and risk management roadmap. Ensure this strategy is in complete alignment with the company’s strategic goals, enabling business velocity while effectively managing risk.

Executive Leadership and Communication

Serve as the primary security advisor to the executive team and the Board of Directors. Regularly report on the status of the security program, articulate the business implications of security risks, and advocate for necessary investments.

Governance, Risk, and Compliance (GRC)

Establish and mature a robust security governance framework. Lead the charge on achieving and maintaining critical compliance certifications (e.g., SOC 2 Type II, ISO 27001, etc.) that are essential for enterprise sales and customer trust. Oversee the development of security policies, standards, and procedures.

Risk Management

Lead the enterprise-wide risk assessment process, including identifying, evaluating, and prioritizing risks. Develop and implement effective risk mitigation strategies and manage the vendor risk management program to ensure third-party security.

Security Operations and Incident Response

Oversee the Security Operations Center (SOC) functions, including threat intelligence, continuous monitoring, vulnerability management, and threat hunting. Mature and test the company’s incident response plan, and personally lead the response to any significant security incidents.

Cloud and Product Security (DevSecOps)

Partner closely with Engineering and Product leadership to embed security into every phase of the Software Development Lifecycle (SDLC). Champion DevSecOps principles, conduct security architecture reviews, and ensure the SaaS platform is secure by design. Secure the company’s cloud infrastructure (AWS, Azure, or GCP) against sophisticated threats.

Data Protection and Privacy

Collaborate with the Legal and Privacy teams to ensure the confidentiality, integrity, and availability of customer and corporate data. Ensure compliance with global data protection regulations such as GDPR and CCPA.

Team Building and Mentorship

Recruit, develop, and retain a world-class team of security professionals. Foster a collaborative and inclusive team culture that promotes innovation, continuous learning, and professional growth.

Security Awareness and Culture

Drive a company-wide security awareness program to cultivate a security-first mindset among all employees. Transform the entire organization into a proactive line of defense against cyber threats.

Budget and Financial Management

Develop and manage the annual information security budget, ensuring efficient allocation of resources and demonstrating a clear return on investment for all security initiatives.

Requirements for the Chief Information Security Officer (CISO) with a SaaS Platform – San Francisco, CA

We are looking for an exceptional leader with a deep and diverse background in information security. The ideal candidate will meet the following qualifications:

Extensive Experience

A minimum of 15 years of progressive experience in the information security field, with at least 7 years in a senior leadership capacity (e.g., VP of Security, Head of Security, CISO) managing a team of security professionals.

SaaS and Cloud Expertise

Demonstrable, hands-on experience building and managing a security program for a cloud-native SaaS company. Deep technical knowledge of cloud security architecture, services, and best practices in environments like AWS, GCP, or Azure is essential.

Strategic Mindset

Proven ability to develop a security strategy that functions as a business enabler rather than a blocker. Experience aligning security initiatives with key business objectives such as revenue growth, product innovation, and market expansion.

Technical Acumen

Strong foundational knowledge across all security domains, including application security, infrastructure security, incident response, threat intelligence, and GRC.

Regulatory and Compliance Mastery

In-depth knowledge of common security frameworks and regulations, including demonstrable experience leading an organization through compliance audits for SOC 2, ISO 27001, GDPR, and CCPA. Familiarity with the NIST Cybersecurity Framework is highly desirable.

Leadership and Influence

Exceptional communication, presentation, and interpersonal skills. The ability to articulate complex security topics to both technical and non-technical audiences, from the board room to engineering stand-ups, is critical. A proven ability to lead through influence and build strong cross-functional relationships.

Education and Certifications

Bachelor’s degree in Computer Science, Information Security, or a related discipline is required; a Master’s degree is highly preferred. Professional certifications such as CISSP, CISM, or CISA are a significant plus.

Crisis Management

Proven experience leading organizations through security incidents with a calm, commanding, and effective presence.

Benefits & Perks Offered

Our client believes in investing in their people and offers a highly competitive and comprehensive benefits package designed to support the well-being and growth of their leaders. This includes:

Executive Compensation

A highly competitive base salary, a significant annual performance-based bonus, and a substantial equity package commensurate with a key executive role.

Comprehensive Health Coverage

Premium medical, dental, and vision insurance plans for you and your dependents with low employee contributions.

Wellness and Mental Health

A generous wellness stipend and access to top-tier mental health resources to support your overall well-being.

Retirement Planning

A 401(k) retirement plan with a generous company match to help you plan for your future.

Work-Life Harmony

A flexible and generous paid time off (PTO) policy, company-paid holidays, and parental leave to ensure you have time to recharge and focus on what matters most.

Professional Development

A dedicated budget for attending industry conferences, pursuing advanced training, and obtaining certifications to keep you at the forefront of the security field.

Office Perks

A modern and collaborative office space in San Francisco, complete with catered lunches, a fully stocked kitchen, and commuter benefits.

How to Apply

This is a retained search being conducted exclusively by JRG Partners. If you are a transformative security leader ready to take on the challenge of securing a category-defining SaaS company, we want to hear from you. This role offers the unique opportunity to build a lasting legacy and be a critical part of an incredible growth story.

To apply, please submit your resume and a cover letter detailing your experience and why you are the ideal candidate for this CISO position. For more information about our expertise in this domain, please visit JRG Partners’ Information Technology practice area.

Our client is an equal opportunity employer. They celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or any other legally protected status.

Job Category: Cybersecurity
Job Type: Full Time
Job Location: San Francisco, CA

Apply for this position

Allowed Type(s): .pdf, .doc, .docx, .rtf
This entry was posted in . Bookmark the permalink.