On Cue Hire's client, a NASDAQ-listed public company headquartered in Boca Raton , is seeking a Chief Information Security Officer (CISO) to develop, implement, and maintain the organization's enterprise-wide information security roadmap.
This is a hands-on leadership role responsible for building and executing the company's security strategy, ensuring regulatory compliance, and maintaining a strong cybersecurity posture across systems, networks, and vendor relationships. The CISO will collaborate closely with IT leadership and executive stakeholders to drive compliance readiness for SOX , while continuing to oversee ongoing PCI requirements.
The ideal candidate is a technical, execution-focused leader who thrives in a lean environment-comfortable rolling up their sleeves to execute, document, and manage compliance initiatives while growing and mentoring a dedicated security team .
This is a unique opportunity to shape the security posture of a fast-growing, NASDAQ-listed company from the ground up.
Key Responsibilities
Strategic Leadership & Roadmap Development
- Develop and own the company's information security roadmap , aligning it with business strategy, compliance goals, and risk management priorities.
- Lead all initiatives related to SOX and PCI compliance , ensuring adherence to required standards, documentation, and reporting.
- Build and continuously improve enterprise security policies, procedures, and risk management frameworks.
- Partner with IT leadership and executive stakeholders to define and execute long-term security objectives.
- Grow and lead a high-performing security team , providing direction, mentorship, and structure as the company scales.
Compliance & Governance
Manage compliance programs aligned with SOX, PCI DSS, CIS, NIST, and NIS frameworks.Coordinate and oversee internal and external audits , serving as the primary liaison for auditors and third-party compliance vendors.Maintain detailed and organized security documentation, audit trails, and change management logs in accordance with corporate governance standards.Develop and enforce policies for data classification, retention, and access control.Continuously monitor and report on the company's risk and compliance posture to senior leadership.Technical & Hands-On Security Management
Work directly with IT teams to implement and maintain security safeguards including endpoint protection, patch management, and identity access management.Conduct and oversee periodic risk assessments, vulnerability scans, and penetration testing to identify and mitigate risks.Manage relationships with vendors and partners supporting audits, risk analysis, and security monitoring.Ensure secure configuration of systems, servers, and network devices in alignment with CIS and NIS benchmarks and controls .Lead incident response efforts, perform root cause analysis, and drive corrective actions.Operations & Collaboration
Collaborate with infrastructure and IT operations teams to ensure security is integrated into all aspects of technology operations.Develop measurable KPIs and metrics to evaluate the effectiveness of security programs and communicate findings to leadership.Stay current with evolving cyber threats, technologies, and regulatory changes impacting public companies.Champion company-wide security awareness and training initiatives to promote a culture of security and accountability.Qualifications
Bachelor's degree in Information Security, Computer Science, or related field (Master's preferred).10+ years of experience in Information Security , including at least 5 years in a leadership or management capacity .Proven success leading hands-on security operations within a publicly traded or highly regulated organization .Strong working knowledge of SOX, PCI DSS, CIS, NIST, and NIS compliance frameworks.Demonstrated ability to design and implement enterprise-wide security policies, controls, and monitoring systems.Experience managing vendor relationships, compliance documentation, and audit coordination.Strong technical foundation in systems, network security, and vulnerability management.Excellent leadership, communication, and organizational skills with the ability to collaborate across all levels of the organization.Professional certifications such as CISSP, CISM, or CISA are preferred but not required.Compensation & Benefits
Comprehensive benefits package including medical, dental, vision, PTO, and 401(k).Opportunity to build and lead the company's first dedicated security function , shaping the roadmap for a fast-growing NASDAQ-listed organization .