Chief Information Security Officer
Lead end-to-end security strategy and build a high-performing team to defend Cape's carrier-grade mobile network against nation-state threats while enabling rapid innovation. Requires 10+ years in information security including 5+ years in senior leadership building programs from early stage.
About the job
Responsibilities
- Own Cape's end-to-end security strategy — network infrastructure, product/application security, cloud and corporate IT, and physical/personnel security.
- Build and lead a security team capable of defending a carrier-grade network against sophisticated, well-resourced adversaries, including nation-state actors.
- Design and drive the security architecture and controls for a cellular network we operate ourselves, from the radio access network through core infrastructure and subscriber data systems.
- Partner closely with Engineering leadership to embed security into the product development lifecycle.
- Lead teams conducting threat modeling, penetration testing, red-teaming, and incident response programs.
- Set and communicate security policy to the board and executive team, translating technical risk into business terms and making tradeoffs with speed of execution.
- Vet and manage relationships with external security vendors, auditors, and researchers, including running a responsible disclosure / bug bounty program.
- Champion a security-first culture across the entire company, not just within the security team.
Requirements
- 10+ years in information security, with at least 5 years in a senior security leadership role (CISO, VP Security, Head of Security) at a company with meaningful infrastructure or regulatory complexity.
- Experience managing geographically dispersed teams of engineers.
- A track record of building security teams and programs from an early stage, not just operating a mature one you inherited.
- Deep technical credibility — you can go toe-to-toe with your best engineers on architecture and risk, while also speaking fluently to executive leadership and the board.
- A genuine belief that privacy and security are inseparable, and that protecting users sometimes means resisting internal and external pressure to compromise on either.
- Excellent judgment under ambiguity and the ability to move fast without cutting corners that matter.
Nice-to-Haves
- Direct experience securing telecom, network infrastructure, or other critical infrastructure — you understand things like SS7, radio networks, or core carrier systems, or you've secured environments of comparable complexity (e.g., cloud infrastructure providers, fintech, critical infrastructure).
- Experience securing an environment with Forward Deployed Engineers and the complexity around high risk travel.
Skills
Information Security, Security Architecture, Threat Modeling, Penetration Testing, Red Teaming, Incident Response, Network Security, Compliance, Ss7, Radio Networks, Core Carrier Systems
Similar jobs
Security Engineering jobsLeads company-wide information security, data governance, compliance, and risk programs while driving AI security strategy and executive-level governance. The role requires board presentation experience, enterprise customer engagement, vendor and supply chain risk expertise, and multiple security certifications.
Executive leader responsible for setting strategy and leading Huntress’s global Threat Detection & Response organization across SOC, incident response, detection engineering, threat hunting, and adversary tactics. Requires 10+ years in security leadership and 5+ years managing managers and directors.
Leads Anthropic’s coordinated vulnerability disclosure and CNA programs, including jailbreak disclosures, external researcher partnerships, public communication, and AI-assisted triage. The role requires disclosure coordination, vulnerability-response operations, and security-community engagement experience.
Leads Exa’s company-wide security strategy, architecture, engineering, governance, incident response, and team development across AI infrastructure, cloud, products, and corporate systems. Requires executive-level security accountability and deep technical credibility in a rapidly scaling technology company.
Leads ID.me’s Product Security program and security engineering team, partnering with Product and Engineering to reduce risk through practical, developer-aligned controls. Requires strong technical depth across application and cloud security, outcome-based leadership, and experience building security programs in fast-moving cloud-native environments.