
Role Overview for CISO with a Cloud Provider – San Jose, CA
JRG Partners is proud to partner exclusively with a category-defining, high-growth cloud infrastructure provider in their search for a visionary Chief Information Security Officer (CISO). Based in the heart of Silicon Valley in San Jose, CA, our client is at the forefront of cloud innovation, providing mission-critical services to a global portfolio of enterprise clients. This is a rare opportunity to take the helm of security for a company whose very foundation is built on trust, reliability, and cutting-edge technology.
As the CISO, you will be the most senior executive responsible for the company’s global information and cybersecurity posture. Reporting directly to the Chief Technology Officer (CTO), you will be a key member of the executive leadership team, tasked with developing and executing a comprehensive security strategy that not only protects the company and its customers but also serves as a business enabler. You will lead a world-class, multi-disciplinary team of security professionals and be the ultimate authority on security architecture, operations, risk management, and compliance.
We are seeking a transformative leader who is both a technical expert and a strategic business partner. The ideal candidate will have a proven track record of building and scaling security programs within a major cloud service provider (CSP), SaaS, or large-scale technology environment. You must be comfortable operating in a fast-paced, agile environment and possess the executive presence to effectively communicate complex security concepts to the board of directors, customers, and regulatory bodies. This role is not just about defending the perimeter; it’s about embedding a culture of security into the DNA of the organization and shaping the future of cloud security.
Key Responsibilities of CISO with a Cloud Provider – San Jose, CA
The CISO will have a broad and impactful scope of responsibilities, including but not limited to:
Strategic Leadership & Vision
Develop, implement, and maintain a strategic, long-term global information security program. Align security initiatives with business objectives to support growth, innovation, and customer trust. Provide thought leadership on the evolving threat landscape.
Executive & Board Communication
Serve as the primary security advisor to the executive leadership team and the Board of Directors. Effectively articulate risk, program maturity, and investment needs in clear, business-oriented terms.
Security Operations & Incident Response
Oversee and mature a 24/7/365 Security Operations Center (SOC). Lead the organization’s incident response (IR) and crisis management capabilities, ensuring rapid detection, containment, and eradication of threats. Conduct post-mortem analyses to drive continuous improvement.
Cloud Security Architecture & Engineering
Lead the design, implementation, and management of robust security controls across a multi-cloud IaaS/PaaS/SaaS environment. Partner with engineering and product teams to integrate security into every phase of the software development lifecycle (SDLC) and champion DevSecOps principles.
Governance, Risk & Compliance (GRC)
Establish and maintain a comprehensive GRC framework. Oversee all security risk assessments, vulnerability management, and penetration testing programs. Ensure and maintain compliance with a wide range of global standards and regulations, such as SOC 2, FedRAMP, GDPR, CCPA, and ISO 27001.
Product & Application Security
Drive the product security strategy to ensure the company’s cloud services are secure by design. Oversee static/dynamic application security testing (SAST/DAST), secure coding practices, and bug bounty programs.
Identity & Access Management (IAM)
Own the corporate and production IAM strategy, including single sign-on (SSO), multi-factor authentication (MFA), and Privileged Access Management (PAM), to enforce the principle of least privilege.
Team Development & Mentorship
Recruit, train, and mentor a world-class global security organization. Foster a collaborative, innovative, and high-performance culture within the team.
Budget & Vendor Management
Develop and manage the annual information security budget, ensuring optimal allocation of resources. Evaluate, select, and manage relationships with third-party security vendors, consultants, and partners.
Security Culture & Awareness
Act as the chief evangelist for security across the company. Develop and implement comprehensive security awareness and training programs to cultivate a security-first mindset among all employees.
Requirements for the CISO with a Cloud Provider – San Jose, CA
The ideal candidate will possess a unique blend of deep technical expertise, strategic thinking, and exceptional leadership skills. The following qualifications are essential for success in this role:
Experience
A minimum of 15 years of progressive experience in information security, with at least 7 years in a senior leadership capacity (e.g., VP of Security, CISO, Head of Security) for a large-scale, technology-driven organization.
Cloud Expertise
Demonstrable, hands-on experience securing a major cloud service provider (CSP), large SaaS platform, or a company with significant public cloud infrastructure (AWS, Azure, GCP). Deep understanding of cloud-native security principles, container security (Kubernetes, Docker), and microservices architecture is mandatory.
Technical Acumen
Broad and deep technical knowledge across all security domains, including network security, endpoint security, cryptography, application security, threat intelligence, and identity management.
GRC Mastery
Extensive experience building and managing GRC programs and achieving certifications for standards such as SOC 2 Type II, ISO 27001, FedRAMP, and HIPAA. Strong knowledge of data privacy regulations like GDPR and CCPA.
Leadership & Communication
Proven ability to build and lead high-performing, geographically distributed security teams. Exceptional communication, presentation, and interpersonal skills with the ability to influence and build consensus with stakeholders at all levels, from junior engineers to the board.
Business Acumen
A strategic mindset with the ability to view security as a business enabler. Experience with M&A security due diligence and integration is highly desirable.
Education
Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field is required. A Master’s degree (e.g., MBA or M.S. in Cybersecurity) is strongly preferred.
Certifications
Relevant professional certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CCSP (Certified Cloud Security Professional) are highly regarded.
Benefits & Perks Offered
Our client is committed to attracting and retaining top-tier talent and offers a highly competitive executive compensation and benefits package, including:
Executive Compensation
A compelling package including a competitive base salary, an aggressive annual performance bonus, and a significant equity grant (RSUs/Stock Options).
Comprehensive Health Coverage
Premium medical, dental, and vision insurance plans for you and your dependents with minimal employee contribution.
Retirement Savings
A robust 401(k) plan with a generous company matching contribution.
Work-Life Balance
A flexible and generous Paid Time Off (PTO) policy, plus company-paid holidays.
Professional Growth
A substantial budget for professional development, including industry conferences, advanced training, and certifications.
Wellness & Perks
Comprehensive wellness programs, gym membership stipends, and a modern, collaborative office environment in San Jose with numerous on-site amenities.
Relocation
A comprehensive relocation package is available for exceptional candidates.
How to Apply
JRG Partners is the exclusive recruitment partner for this confidential search. If you are a visionary security leader ready to define the future of cloud security at an industry-leading company, we encourage you to apply.
To be considered, please submit your resume and a cover letter detailing your relevant experience and leadership philosophy. All applications will be treated with the strictest confidence. We are an equal opportunity employer and value diversity at our company. To learn more about our specialized recruitment services, please explore our Cybersecurity Executive Search practice area. We look forward to reviewing your application.
