1

Chief Information Security Officer Jobs (NOW HIRING)

This role will collaborate and interact with the Chief Risk Officer (CRO) and the Office of Enterprise Risk Management (OERM) on information security risk related topics. Responsibilities

next page

Showing results 1-20

Chief Information Security Officer information

See salary details

$70K

$148.7K

$232.5K

How much do chief information security officer jobs pay per year?

As of Sep 1, 2026, the average yearly pay for chief information security officer in the United States is $148,746.00, according to ZipRecruiter salary data. Most workers in this role earn between $118,000.00 and $167,500.00 per year, depending on experience, location, and employer.

What is a chief information security officer?

A Chief Information Security Officer (CISO) is a senior executive responsible for establishing and maintaining an organization’s information security strategy and programs. The CISO oversees the protection of sensitive data, manages cybersecurity risks, and ensures compliance with security regulations. They work closely with other executives to align security initiatives with business goals, respond to security incidents, and lead security awareness training across the organization. Ultimately, the CISO plays a critical role in safeguarding the organization’s digital assets and reputation.

What does a chief information security officer do?

A chief information security officer (CISO) is an IT executive who manages and oversees the cybersecurity needs of an organization. Job responsibilities include data and network security, security policy, and security strategy. Their duties involve security operations, cyber-risk and cyber intelligence, data loss prevention, fraud prevention, identity and access management, investigations, and governance. A chief information security officer needs an in-depth understanding of information security, solid comprehension of the organization’s overarching vision, and the ability to combine the two into an actionable strategy.

What are the main challenges a chief information security officer faces when aligning security initiatives with overall business objectives?

A CISO often faces the challenge of balancing robust security measures with the need for business agility and innovation. This involves translating complex technical risks into business terms that resonate with executive leadership, ensuring security investments support organizational goals without hindering workflow or productivity. Additionally, CISOs must foster a culture of security awareness while collaborating closely with IT, legal, compliance, and business units to address evolving threats and regulatory requirements. Successfully navigating these challenges requires strong communication skills and a strategic mindset.

What is the difference between Chief Information Security Officer vs Security Manager?

AspectChief Information Security OfficerSecurity Manager
CredentialsCertifications like CISSP, CISM, CISACertifications like CISSP, Security+, sometimes CISM
Work EnvironmentStrategic, executive-level, company-wide security policiesOperational, team management, implementing security measures
Employer & Industry UsageLarge corporations, finance, healthcare, techVarious organizations, including mid-sized and large companies
Search & Comparison IntentUnderstanding executive security rolesManaging day-to-day security operations

The Chief Information Security Officer (CISO) focuses on strategic security leadership and policy development at an executive level, while the Security Manager handles daily security operations and team management. Both roles require similar certifications but differ in scope and responsibilities within organizations.

Are Chief Information Security Officer jobs in high demand?

Chief Information Security Officer (CISO) roles are in high demand due to increasing cybersecurity threats and the need for organizations to protect sensitive data. The position requires strong leadership, technical expertise, and often industry certifications, with job growth expected to remain strong in the coming years.

What cities are hiring for Chief Information Security Officer jobs?

Cities with the most Chief Information Security Officer job openings:

What are the most commonly searched types of Chief Information Security Officer jobs?

The most popular types of Chief Information Security Officer jobs are:

Who are the top companies hiring for Chief Information Security Officer jobs?

The top employers for Chief Information Security Officer jobs are:

What states have the most Chief Information Security Officer jobs?

States with the most job openings for Chief Information Security Officer jobs include:

What job categories do people searching Chief Information Security Officer jobs look for?

The top searched job categories for Chief Information Security Officer jobs are:

Infographic showing various Chief Information Security Officer job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 23% Part Time, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $148,746 per year, or $71.5 per hour.

Chief Information Security Officer

Birmingham, AL • On-site

GVW Group, LLC
Motor Vehicle Manufacturing • 201 - 500 employees

Full-time

Medical, Dental, Vision, Retirement

Re-posted 19 days ago


Job description

Job Title: Chief Information Security Officer (CISO)
Location: Birmingham, AL or Chicago, IL
Onsite, in office-based position
Reports to: Chief Financial Officer (CFO) of GVW Group
Job Summary
The Chief Information Security Officer (CISO) is responsible for establishing and maintaining the enterprise's vision, strategy, and program to ensure information assets and technologies are adequately protected. The CISO is a key leadership role tasked with safeguarding sensitive data, mitigating risks, ensuring compliance, and responding effectively to cybersecurity incidents.
Key Responsibilities
  • Strategic Leadership
Develop, implement, and maintain an enterprise-wide information security strategy and roadmap.
Advise senior management and the Board of Directors on cybersecurity risks, compliance, and emerging threats.
Align security initiatives with business objectives to support growth while managing risk.
  • Risk Management and Compliance
Identify, assess, and prioritize cybersecurity risks and establish measures to mitigate them.
Ensure compliance with relevant legal, regulatory, and contractual requirements (e.g., GDPR, HIPAA, CCPA, ISO 27001).
Develop and enforce company-wide security policies, procedures, and standards.
  • Cybersecurity Operations
Oversee the design, implementation, and maintenance of security infrastructure, including firewalls, intrusion detection systems, and encryption technologies.
Lead the development of incident response plans and oversee their execution in case of security breaches.
Conduct regular audits, risk assessments, and penetration testing to ensure system integrity.
  • Emerging Threats and Innovation
Monitor the threat landscape and emerging technologies to proactively address vulnerabilities.
Develop partnerships with industry groups, government agencies, and vendors to stay ahead of cybersecurity trends.
Oversee security for cloud infrastructure, DevSecOps, and third-party vendors.
Qualifications
Education & Certifications
Bachelor's degree in Computer Science, Information Technology, or a related field (Master's preferred).
Industry certifications such as CISSP, CISM, CISA, or CRISC are highly desirable.
Experience
10+ years of experience in information security, IT risk management, or related fields, with at least 5 years in a senior leadership role.
Proven track record of managing enterprise-level cybersecurity programs.
Skills & Competencies
Deep understanding of cybersecurity frameworks (e.g., NIST, ISO 27001, COBIT).
Strong analytical, problem-solving, and decision-making skills.
Excellent leadership, communication, and collaboration abilities.
Experience in incident response, cloud security, and data protection strategies.
Key Performance Indicators (KPIs)
Reduction in security incidents and breaches.
Compliance with regulatory and internal security standards.
Employee cybersecurity awareness scores.
Incident response times and recovery rates.
Who are we?
GVW Group is a dynamic private investment and industrial holding company dedicated since 1993 to growing and starting businesses. We take an entrepreneurial approach to building value for our scalable early stage, high-growth, and mid-sized operating companies by providing strategic expertise and resources. Along the way, we have expanded globally into diverse industries ranging from manufacturing, to technology, distribution, big data, engineering, and energy efficiency.
Where will you work?
This role will be based in Birmingham, Alabama, or Chicago, Illinois.
What do we offer in benefits?
We offer an attractive compensation and benefits package, to include base salary, incentive bonus opportunities, and benefits such as medical/dental/vision options, 401K plan, etc.
Employment Type: Full-Time- Exempt