1

Ciso Information Security Officer Jobs (NOW HIRING)

We are seeking With Cyber-threats evolving at machine speed, SAP is seeking a strategic, operationally rigorous and technology-forward Chief Information Security Officer (CISO) to lead core ...

Showing results 21-40

Ciso Information Security Officer information

See salary details

$70K

$148.7K

$232.5K

How much do ciso information security officer jobs pay per year?

As of Sep 3, 2026, the average yearly pay for ciso information security officer in the United States is $148,746.00, according to ZipRecruiter salary data. Most workers in this role earn between $118,000.00 and $167,500.00 per year, depending on experience, location, and employer.

What is a CISO (Chief Information Security Officer)?

A CISO, or Chief Information Security Officer, is a senior executive responsible for developing and implementing an organization's information security strategy. They oversee policies and programs designed to protect enterprise communications, systems, and assets from both internal and external threats. The CISO collaborates with other executives to ensure that security initiatives align with business objectives and compliance requirements. Their role also includes managing risk, responding to incidents, and leading the security team.

What are the key skills and qualifications needed to thrive as a chief information security officer?

To thrive as a CISO, you need deep expertise in cybersecurity frameworks, risk management, and regulatory compliance, typically supported by a degree in computer science or information security and relevant industry certifications. Familiarity with security tools like SIEM, IDS/IPS, and GRC platforms, as well as certifications such as CISSP or CISM, is crucial. Strong leadership, strategic thinking, and communication skills help CISOs effectively guide teams and articulate security priorities to stakeholders. These skills and qualities are vital for building robust security programs, managing threats, and aligning security initiatives with organizational objectives.

What are some common challenges a chief information security officer faces when balancing business goals with security initiatives?

A CISO often faces the challenge of aligning robust security measures with the organization's broader business objectives. This can involve negotiating with different departments to ensure security protocols do not hinder innovation or operational efficiency. Additionally, CISOs must continuously communicate risks and justify investments in security to executive leadership, while staying updated on evolving threats. Building a culture of security awareness among employees and managing compliance with various regulations are also critical aspects of the role.

What is the difference between Ciso Information Security Officer vs Security Analyst?

AspectCiso Information Security OfficerSecurity Analyst
CredentialsCertifications like CISSP, CISM, CISACertifications like Security+, SSCP, GIAC
Work EnvironmentStrategic, executive-level, policy developmentOperational, technical, monitoring security systems
Employer & Industry UsageUsed in organizations to oversee security programsUsed in IT teams to analyze security threats

The Ciso Information Security Officer focuses on strategic security leadership, policy, and risk management, while the Security Analyst handles day-to-day security monitoring and incident response. Both roles are essential but differ in scope and responsibilities within cybersecurity teams.

Are Ciso Information Security Officer jobs in high demand?

Ciso Information Security Officer roles are in high demand due to increasing cybersecurity threats and the need for organizations to protect sensitive data. These positions often require strong technical skills, certifications like CISSP, and experience managing security strategies in complex environments. The job outlook remains positive with steady growth expected in cybersecurity leadership roles.

How much does a Ciso Information Security Officer get paid?

A CISO (Chief Information Security Officer) typically earns a salary ranging from $130,000 to over $250,000 annually, depending on the size of the organization, industry, and experience level. CISOs often hold advanced certifications like CISSP and oversee security strategies, risk management, and compliance efforts.

Is a Ciso Information Security Officer a risky job?

A Ciso Information Security Officer role involves managing cybersecurity risks and protecting organizational data, which can be high-pressure due to the potential impact of security breaches. The job often requires working with complex systems, responding to incidents, and staying current with evolving threats, making it a demanding but essential position in organizations' security strategies.
More about Ciso Information Security Officer jobs

What cities are hiring for Ciso Information Security Officer jobs?

Cities with the most Ciso Information Security Officer job openings:

What job categories do people searching Ciso Information Security Officer jobs look for?

The top searched job categories for Ciso Information Security Officer jobs are:

Infographic showing various Ciso Information Security Officer job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 23% Part Time, and 2% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $148,746 per year, or $71.5 per hour.

Chief Information Security Officer (CISO)

SAP SuccessFactors

Newtown Square, PA โ€ข On-site

Full-time

Posted 14 days ago


Job description

We help the world run better
At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging - but it matters. You'll find a place where you can be yourself, prioritize your wellbeing, and truly belong. What's in it for you? Constant learning, skill growth, great benefits, and a team that wants you to grow and succeed.ย 

OVERVIEW

SAP secures the digital core of the world's most complex organizations. As AI-industrialized cybercrime fundamentally reshapes the threat landscape, we are strengthening an already high-performing security organization to bring our capabilities together in ways that will make us faster, smarter, and more seamlessly integrated.

We are seeking

With Cyber-threats evolving at machine speed, SAP is seeking a strategic, operationally rigorous and technology-forward Chief Information Security Officer (CISO) to lead core cybersecurity functions. The CISO will serve as the executive accountable for cyber defense, security engineering, identity protection, incident response, and operational resilience. The CISO will advance the secure adoption of AI across complex cloud environments while strengthening SAP's protection against AI-specific threats and cloud vulnerabilities.

Under our federated governance model, the CISO operates as the executive leader accountable for SAP's core cyber defense capabilities while maintaining close strategic alignment with dedicated enterprise leaders across Physical Security, Product Security, Cloud Compliance, Security Risk Management and Customer Assurance & Trust. This position demands an executive who can build resilient technical guardrails, advance AI-enabled and highly automated threat response, and protect enterprise assets without slowing business execution.

ย 

The role

As CISO, you will lead the capabilities that protect SAP from cyber threats, reduce exploitable exposure, govern access to critical systems and data, and strengthen the resilience of SAP's essential business services. Reporting directly to the Chief Security Officer, you will bring together deep operational expertise and sound executive judgment to protect SAP and enable the business to operate securely on a global scale.

This role carries significant external reach - you will interface regularly with customers, regulators, law enforcement, intelligence partners, and government authorities worldwide. At the forefront of your mandate: accelerating the responsible adoption of AI-driven security technologies while advancing SAP's ability to anticipate, detect, and respond to AI-enabled threats at speed and scale.

ย 

What you'll build

You will drive the ongoing evolution and optimization of our enterprise-wide portfolio spanning:

  • Global 247 security operations
  • Cyber detection and threat defense
  • Cyber incident response and crisis management
  • Vulnerability and attack-surface reduction
  • Identity and access management
  • Enterprise security engineering, automation, and zero-trust architecture
  • AI and agentic systems security, including AI-enabled cyber defense
  • Business continuity, technology resilience, disaster recovery, and cyber recovery

ย 

Key Responsibilities

Global security operations and cyber defense

  • Lead SAP's global 247 Security Operations Center, including security monitoring, detection engineering, threat intelligence, threat hunting, investigation, containment, remediation, and operational recovery.
  • Architect SAP's machine-speed defense capabilities by driving the continued evolution of an intelligence-led, AI-enabled, and highly automated SOC capable of real-time detection, investigation, and response.
  • Advance autonomous containment and remediation where appropriate, governed by defined decision criteria, technical guardrails, and human oversight.
  • Establish measurable performance expectations for detection coverage, response effectiveness, service reliability, operational readiness, automation, and continuous improvement.

Incident response and threat intelligence

  • Direct SAP's global cyber-incident response capability, including crisis playbooks, escalation structures, technical coordination, executive communications, containment, remediation, and recovery.
  • Lead preparedness exercises, simulations, and red-team scenarios addressing sophisticated criminal, state-sponsored, insider, cloud, supply-chain, and AI-enabled threats.
  • Translate threat intelligence, incident findings, and lessons learned into measurable improvements across prevention, detection, response, remediation, and resilience.
  • Maintain effective relationships with relevant customers, regulators, law enforcement, government authorities, intelligence partners, and industry stakeholders.

Enterprise security engineering, identity, and exposure management

  • Define and enforce enterprise security architecture and zero-trust principles across SAP's multi-cloud, corporate, identity, endpoint, network, infrastructure, API, and software supply-chain environments.
  • Lead enterprise identity and access management, including identity governance, privileged access, authentication, authorization, lifecycle management, access assurance, and machine identities.
  • Drive continuous threat-exposure management across on-premises and legacy systems, cloud platforms, SaaS environments, identities, externally accessible assets, and SAP's enterprise AI landscape.
  • Establish risk-based remediation priorities, escalation pathways, exception processes, and transparent accountability for reducing exploitable vulnerabilities, exposures, and attack paths.

AI and Agentic systems security

  • Establish security controls, identity and access models, data protections, and runtime safeguards for AI models, autonomous agents, LLM pipelines, prompt and context interactions, APIs, microservices, and supporting cloud integrations.
  • Advance AI-enabled detection, investigation, threat analysis, attack-path identification, and response automation to counter increasingly sophisticated and AI-accelerated threats.
  • Partner with Product Security, development, architecture, and engineering leaders to address threats affecting AI models, agents, pipelines, interfaces, integrations, and runtime environments.
  • Ensure AI and emerging-technology security requirements are incorporated into applicable enterprise architecture, engineering, operational, monitoring, and incident-response processes.

Continuity and resilience

  • Lead SAP's enterprise business-continuity, technology-resilience, disaster-recovery, and cyber-recovery capabilities.
  • Establish critical-service and dependency mapping, recovery objectives, resilience standards, testing requirements, crisis-management integration, and executive reporting.
  • Validate SAP's ability to withstand and recover from severe cyber and operational disruption through scenario exercises, technical recovery testing, and disciplined remediation.
  • Ensure incident response, business continuity, disaster recovery, and cyber recovery operate as an integrated resilience capability.

Cross-functional collaboration and governance alignment

  • Align technical priorities and operational security measures with the enterprise risk tolerance and risk management framework established by the Head of Security Risk Management.
  • Partner with Product Security, development and engineering leaders to integrate applicable security requirements, defensive telemetry, and operational readiness into software development and release lifecycles.
  • Drive the automation of applicable Secure Software Development & Operations Lifecycle requirements while supporting development velocity and preserving Product Security's accountability for secure product development.
  • Work through SAP's federated Business Information Security Officer community to strengthen adoption, accountability, business alignment, and consistent implementation across the enterprise.
  • Partner systematically with the Head of Cloud Compliance to embed scalable and automated control requirements into security technologies and operational capabilities.
  • Provide the CSO, C-suite, and Executive Board with timely, decision-oriented reporting on operational security performance, material threats, incidents, exposure, AI-related risks, and cyber resilience.

What You'll Bring

For internal candidates: A proven track record of operational excellence within SAP's security or engineering divisions, with demonstrated cross-functional influence and deep familiarity with our technical stack.

For external candidates: Proven experience as a CISO, Deputy CISO, or VP of Security in an enterprise environment, ideally spanning high-velocity cloud systems and AI/ML integrations.

Leadership & Organizational Experience

  • Significant executive leadership experience within a large, complex, global technology, cloud, software, critical infrastructure, or highly regulated organization
  • A proven record of directing major cyber incident responses and guiding executive stakeholders through high-pressure situations
  • Experience leading global, mission-critical security operations, including a 247 Security Operations Center
  • Experience managing large, geographically distributed organizations, senior leaders, strategic suppliers, managed services, and significant operating budgets
  • Experience leading enterprise business continuity, disaster recovery, technology resilience, and cyber-recovery capabilities

Technical Expertise

  • Deep knowledge of modern cyber detection and response, threat intelligence, threat hunting, digital forensics, security monitoring, zero-trust architecture, and machine-identity security
  • Strong technical command in cloud security (AWS, Azure, GCP), zero-trust design, container/Kubernetes security, and API security
  • Strong experience leading vulnerability, exposure, and attack-surface management programs with risk-based remediation
  • Strong experience leading enterprise identity governance, privileged access management, authentication, authorization, and identity-lifecycle capabilities
  • Solid understanding of AI-specific threat vectors, including prompt injection, model inversion, agent privilege escalation, and training-data poisoning

Communication & Influence

  • The ability to collaborate with and influence peer executives while maintaining clear decision rights and organizational accountability
  • Outstanding written and verbal communication skills, with experience engaging executive leadership, boards or board committees, customers, regulators, and external stakeholders

Qualifications

  • 10 or more years of progressive experience in cybersecurity, information technology, operational resilience, or a related discipline
  • A bachelor's or advanced degree in cybersecurity, computer science, engineering, business, risk management, or a related field
  • Professional credentials such as CISSP, CISM, or comparable executive-level qualifications are preferred
  • Fluency in English is required; proficiency in German and experience working across international environments are an advantage

ย 

Meet your team
You will join SAP's Global Security & Cloud Compliance organization as a member of the CSO's executive leadership team, working alongside experienced leaders in operations, cyber risk, product security, physical security, compliance, and trust.

Bring out your best
SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.ย ย 
We win with inclusion
SAP's culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better world.
SAP is committed to the values of Equal Employment Opportunity and provides accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team: Careers@sap.com.
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.

Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity,ย  gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability, in comp...


SAP logo

About SAP

Sourced by ZipRecruiter

Industry

It services and computer and computer peripheral equipment and software wholesalers

Company size

10,000+ Employees

Headquarters location

Newtown Square, PA, US

Social media