About the job
About 1Kosmos
1Kosmos is an innovative startup at the forefront of transforming identity and authentication solutions. We are in search of a dynamic and hands-on Chief Information Security Officer (CISO) who thrives in a technical, fast-paced environment and is eager to build and enhance our security operations from the ground up.
About the Role
The ideal candidate will be a highly technical and operationally focused security leader who is ready to roll up their sleeves to implement security solutions while strengthening our overall security posture. This position is perfect for a senior security operations professional looking to transition into a strategic leadership role, all while maintaining deep technical involvement.
Key Responsibilities
Security Operations Leadership (Primary Focus)
- Design, implement, and manage a comprehensive security operations infrastructure.
- Personally configure and deploy security tools, including endpoint protection, SIEM, and cloud security solutions.
- Build and optimize security monitoring, incident response, and threat detection capabilities.
- Drive automation initiatives to eliminate manual inefficiencies in security processes.
Compliance and Risk Management
- Lead compliance initiatives including FedRAMP, SOC 2, and other regulatory frameworks.
- Collaborate with business analysts to navigate regulatory requirements and audits.
- Develop and maintain security policies, procedures, and documentation.
- Manage security risk assessments and remediation programs.
Technical Security Architecture
- Secure cloud infrastructure across platforms such as AWS and Google Cloud.
- Integrate security into CI/CD pipelines, collaborating closely with DevOps teams.
- Implement and manage security tools (such as CrowdStrike) across the organization.
- Conduct hands-on security reviews of architecture and code.
Cross-functional Collaboration
- Partner directly with development and engineering teams on secure software development.
- Oversee internal IT security as a smaller component of the role.
- Communicate security initiatives and status to leadership and stakeholders.
- Coordinate with global teams to ensure consistent security practices.
