Weekday AI
ChiefInformationSecurityOfficer(CISO)
“Chief Information Security Officer (CISO) at Weekday AI. Skills: Information Security, Cybersecurity Governance, Risk Management, Cloud Security. Define enterprise-wide information security strategy. Lead enterprise-wide information security strategy”
Industry & Context.
Root cause analysis; Troubleshooting; Risk assessment
What They're Looking For.
Must Have
10+ years of experience in Information Security, Leadership responsibilities, Experience leading enterprise-wide Information Security programs, Experience leading Security Governance programs, Experience developing security strategies, Experience implementing security strategies, Experience developing security frameworks, Experience implementing security frameworks, Experience developing security policies, Experience implementing security policies, Experience developing governance models, Experience implementing governance models, Hands-on experience managing SIEM platforms, Hands-on experience managing security monitoring, Hands-on experience managing threat detection, Hands-on experience managing incident response programs, Experience leading SOC 2 Type II initiatives, Experience leading ISO 27001 initiatives, Experience leading similar compliance initiatives, Experience leading similar certification initiatives, Experience implementing Privileged Access Management solutions, Experience managing Privileged Access Management solutions, Experience implementing Identity & Access Management solutions, Experience managing Identity & Access Management solutions, Expertise in Data Loss Prevention, Expertise in data protection, Expertise in privacy controls, Expertise in information governance, Deep knowledge of AWS security architecture, Deep knowledge of cloud security monitoring, Deep knowledge of cloud security encryption, Deep knowledge of cloud security governance, Experience with application security, Experience with DevSecOps, Experience with vulnerability management, Experience with secure software development practices, Experience supporting enterprise customer security reviews, Experience supporting vendor assessments, Experience supporting security due diligence activities, Leadership skills, Stakeholder management skills, Decision-making skills, Ability to translate security concepts to business strategies, Ability to translate security concepts to executive recommendations
Nice to Have
Experience working within SaaS, Experience working within cloud technology, Experience working within enterprise software, Experience working within fintech, Experience working within regulated industries
What You'll Do.
Define enterprise-wide information security strategy
Lead enterprise-wide information security strategy
Define information security roadmap
Lead information security roadmap
Define information security policies
Lead information security policies
Define information security standards
Lead information security standards
Define security governance framework
Lead security governance framework
Establish risk management mechanisms
Establish security governance mechanisms
Establish executive reporting mechanisms
Mentor security teams
Build compliance teams
Mentor compliance teams
Lead compliance teams
Build governance teams
Mentor governance teams
Lead governance teams
Develop security frameworks
Maintain security frameworks
Align security frameworks with business objectives
Align security frameworks with customer requirements
Align security frameworks with regulatory obligations
Drive continuous improvement initiatives
Strengthen organizational security maturity
Lead compliance programs
Manage compliance programs
Ensure adherence to regulatory requirements
Ensure adherence to privacy laws
Ensure adherence to cybersecurity regulations
Ensure adherence to industry-specific security obligations
Manage internal audits
Manage external audits
Oversee enterprise risk assessments
Oversee security reviews
Oversee governance activities
Support customer security assessments
Support vendor due diligence processes
Support risk questionnaires
Support security-related RFP responses
Establish third-party risk management programs
Manage third-party risk management programs
Establish supply chain security programs
Manage supply chain security programs
Lead enterprise security operations
Lead security monitoring
Lead threat detection
Lead incident response
Lead security event management functions
Oversee SIEM platform deployment
Oversee SIEM platform optimization
Oversee SIEM platform governance
Oversee security monitoring tool deployment
Oversee security monitoring tool optimization
Oversee security monitoring tool governance
Develop incident response processes
Enhance incident response processes
Develop escalation procedures
Enhance escalation procedures
Develop forensic investigations
Enhance forensic investigations
Develop post-incident reviews
Enhance post-incident reviews
Drive vulnerability management initiatives
Drive penetration testing programs
Drive remediation activities
Drive patch governance
Establish proactive threat detection capabilities
Establish continuous security monitoring capabilities
Design enterprise Privileged Access Management strategies
Implement enterprise Privileged Access Management strategies
Design enterprise Privileged Access Management controls
Implement enterprise Privileged Access Management controls
Establish governance for privileged accounts
Establish governance for credential management
Establish governance for session monitoring
Establish governance for least-privilege access models
Lead Identity and Access Management initiatives
Establish role-based access controls
Manage role-based access controls
Establish access reviews
Manage access reviews
Establish Single Sign-On
Manage Single Sign-On
Establish Multi-Factor Authentication
Manage Multi-Factor Authentication
Define enterprise Data Loss Prevention strategies
Execute enterprise Data Loss Prevention strategies
Ensure proper classification of sensitive data
Ensure proper protection of sensitive data
Ensure proper monitoring of sensitive data
Ensure proper handling of sensitive data
Develop cloud security frameworks
Maintain cloud security frameworks
Implement security controls for encryption
Implement security controls for key management
Implement security controls for logging
Implement security controls for monitoring
Implement security controls for threat detection
Implement security controls for secure cloud architecture
Embed security practices throughout SDLC
Oversee business continuity planning
Oversee disaster recovery planning
Oversee backup governance
Oversee resilience testing programs
Collaborate with engineering teams on secure design
Collaborate with infrastructure teams on secure design
Serve as primary security leader for executive management
Serve as primary security leader for customers
Serve as primary security leader for auditors
Serve as primary security leader for external stakeholders
Present security metrics to senior leadership
Present risks to senior leadership
Present compliance status to senior leadership
Present strategic initiatives to senior leadership
Foster a security culture
Conduct awareness programs
Conduct training initiatives
Engage continuously with stakeholders
Influence business decisions for security integration
Influence technology decisions for security integration
How You'll Work.
Team & Collaboration
Executive leadership engagement; Technology teams collaboration; Auditor engagement; Regulator engagement; Customer engagement; Business stakeholders engagement; Engineering teams collaboration; Infrastructure teams collaboration
Communication Scope
Executive presentations; Stakeholder engagement; Security awareness programs; Security training
Process & Methodology
Roadmap planning, Governance framework development
Applying for this Chief Information Security Officer (CISO) role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Weekday AI?
Real rants from real employees. Read before you apply.