AYN

Senior Information Security Officer

Kiteworks · New Hampshire, United States · hybrid

As a Senior Information Security Officer, you will be part of the global security and compliance team. This team takes care of corporate security, including IT and cloud security, as well as the full compliance program of Kiteworks. As Kiteworks sells secure communication and collaboration products, security and compliance are top priorities for the company. Kiteworks has many security certifications and assurance reports, and as the business expands to new jurisdictions, it will need to obtain more certifications in the coming years.

As a senior member of the team, you will report directly to the Global IT CISO and are expected to work independently as well as take the lead on team projects. The role requires you to work on many things simultaneously, such as running audits, performing gap or threat analyses, and answering customer questions. We also count on you to champion security improvement initiatives, whether that's access management or software development. As part of these projects, you will be collaborating with other teams, such as IT and development.

Kiteworks moves fast, and it's our team's job to manage risk while helping the business grow just as fast. That balancing act matters more than ever as Kiteworks embraces AI, and we're the ones making sure that adoption happens securely.

We are specifically looking for a pragmatic problem solver who not only identifies risks but also proposes mitigations and gets things done.

We may be in compliance, but we are allergic to bureaucracy.

Note: this is a hybrid role with three days in our Portsmouth office.

What you'll do- Taking ownership of external security audits such as ISO 27001, BSI C5, and SOC 2

- Performing gap analysis and implementing new security frameworks and standards

- Keeping information security procedures up to date across departments

- Acting as full domain owner for at least the identity and access management and supplier management domains

- Executing control tasks, for example access checks, supplier reviews, and internal audits

- Using AI to automate recurring tasks

- Coordinating with control owners to support timely execution of their tasks

- Implementing security improvement projects, for example in IT or software development

- Handling security incidents

- Taking part in the weekly security meeting and flagging new risks and opportunities

- Answering questions on security and privacy from customers, prospects, and colleagues

- Onboarding newly acquired companies to the global security and compliance program

What you'll bring- At least 5 years' experience in information security and compliance

- Experience with ISO 27001 and information security management systems

- Experience with BSI C5 or SOC 2

- Experience with audits

- Experience with risk analysis

- Experience with identity and access management

- Knowledge of the GDPR and privacy legislation

- Affinity with IT and software development

- Affinity with AI

- Experience in a tech company is highly preferred

- Pragmatic problem-solving skills

- Ability to work independently

- Collaboration skills

- Fluent in English

About Kiteworks

The Kiteworks single-tenant-by-design virtual appliance delivers full data sovereignty, governing employees’ and AI agents’ access to, use, and sharing of sensitive data under the same identity, policy, encryption, and audit controls. Compliance is built in, not bolted on.

The values that define us- Execution – We deliver results with focus, ownership, and consistency. Our teams take initiative, solve challenges proactively, and continuously optimize how we work to create meaningful impact for our customers.

- Transparency – We communicate openly and clearly, ensuring stakeholders have the information they need to make informed decisions. We foster a culture of trust, welcome feedback, and embrace accountability in everything we do.

- Integrity – We uphold the highest standards of honesty and responsibility. Our teams act ethically, consistently honor commitments, and build trust through principled, reliable actions.

Compensation range:- Salary Range: $70,000 - $85,000

- Base pay depends on many factors, such as location, education, experience, and skills. Base pay is only one part of Kiteworks competitive Total Rewards package that can include benefits, perks, equity, and bonuses. The base pay range is subject to change and may be modified in the future.

Benefits & Perks

Equity - stock options to share in company success

Healthcare

- 3 Cigna plans (PPO, EPO, HDHP)

- 90% covered (PPO/EPO) + $0 premium HDHP

- $1,200–$2,400 HSA contribution

- Competitive vision and dental coverage

Savings & Retirement

- FSA + Dependent Care FSA

- 401(k) with 100% match (up to $5K), immediate vesting

Coverage - Fully paid life & disability insurance

Family Benefits

- 16 weeks (birthing) / 8 weeks (non-birthing)

- $10K lifetime reimbursement fertility benefit

Care & Support - One Medical membership + EAP counseling

Time Off & Flexibility

- Unlimited PTO + 10 holidays

- 10 work-from-anywhere days

Commitment to equal opportunity & inclusion

Kiteworks is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances.

Other requirements

Ability to meet Kiteworks, customer, and/or government security screening requirements for this role. These requirements include, but are not limited to, the following specialized security screenings.

Kiteworks Background Check

This position requires passing the Kiteworks background check upon hire/transfer and every two years thereafter.

Apply on the employer’s site