Chief Information Security Officer

  • Remote/Home Office - USA

We are Omnissa! 

The world is evolving fast, and organizations everywhere—from corporations to schools—are under immense pressure to provide flexible, work-from-anywhere solutions. They need IT infrastructure that empowers employees and customers to access applications from any device, on any cloud, all while maintaining top-tier security. That’s where Omnissa comes in.

The Omnissa Platform is the first AI-driven digital work platform that enables smart, seamless and secure work experiences from anywhere. It uniquely integrates multiple industry-leading solutions including Unified Endpoint Management, Virtual Apps and Desktops, Digital Employee Experience, and Security & Compliance through common data, identity, administration, and automation services. Built on the vision of autonomous workspaces - self configuring, self-healing, and self-securing - Omnissa continuously adapts to the way people work; delivering personalized and engaging employee experiences, while optimizing security, IT operations and costs. we're experiencing rapid growth—and this is just the beginning of our journey!

At Omnissa, we’re driven by a shared mission to maximize value for our customers. Our five Core Values guide us: Act in Alignment, Build Trust, Foster Inclusiveness, Drive Efficiency, and Maximize Customer Value—all with the aim of achieving shared success for our clients and our team. As a global private company with over 4,000 employees, we’re always looking for passionate, talented individuals to join us. If you're ready to make an impact and help shape the future of work, we’d love to hear from you!

What is the opportunity?:

Reporting to the SVP, Operations, the Chief Information Security Officer will be a strong leader who can develop, implement, and oversee the overall information security strategy for our organization. This role requires strong collaboration with cross-functional teams to ensure that our systems and data are protected against cybersecurity threats, as well as building robust data protection practices to instill trust with our customers. This role will be responsible for Commercial, Federal & On-Premise Product Compliance, Privacy Operations, Customer Security Assurance, Risk Management, Incident & Crisis Management, Enterprise Resiliency, Information Security Engineering, Architecture, Security Operations, Product and Applications Security as well as liaising with R&D, Sales, Marketing, Legal, and other stakeholders to include customers. Proficient in business dynamics and well-versed in information protection and privacy laws, the ideal candidate will demonstrate the ability to work autonomously and collaborate with diverse stakeholder groups to uphold and build upon Omnissa’s secure operating environment.

The ideal candidate will have a proven track record of building and/or implementing and improving the maturity of security programs in cloud-based SaaS organizations and possess excellent leadership and communication skills. You must have the ability to effectively balance risk and business priorities. Here’s More:

  • Define and optimize the security strategy in concert with the executive leadership team, and stakeholders across the business.
  • Lead the development and implementation of comprehensive information security strategies and initiatives in concert with the executive leadership team, and stakeholders across the business to protect the confidentiality, integrity, and availability of Omnissa systems and data.
  • Work with customers and prospects to address security concerns as well as supporting GTM where significant deals require interaction from the CISO to close.
  • Identify, assess, and prioritize security risks and vulnerabilities across the organization.
  • Develop and implement risk management processes to mitigate threats effectively. Coaching and mentoring to ensure your team members are motivated and engaged.
  • Provide continuous feedback to ensure that they continue to add value while maintaining high standards. Collaborate with Engineering and Product Leaders and other organization stakeholders to help define and influence wider product strategy, roadmaps, and designs. Lead commercial, federal, and product compliance programs.
  • Establish and administer a privacy and security incident response process and be actively engaged on high priority incidents, including preparation, investigation, response, and impacted customer notification and communications.
  • Build strategic and comprehensive plans to define, develop, maintain, and implement policies and processes that enable consistent, effective data security practices to minimize risk and ensure the confidentiality of information and customer data as well as deepen the trust with customers and partners.
  • Monitor compliance with security policies and procedures and drive continuous improvement efforts.
  • Develop and manage privacy and security awareness training programs for employees to promote a culture of security and privacy awareness and best practices throughout the organization.
  • Establish a strategic framework to guide annual security investment decisions, incorporating KPI’s and metrics to measure performance and outcomes effectively.
  • Collaborate with legal teams to ensure compliance with evolving laws and regulations, translating regulatory knowledge into actionable plans to mitigate potential risks.
  • Provide regular briefings to the Executive Team, Board and Investors on security status and risks; advocate for the overall security strategy and necessary budget allocation; disseminate security and risk management best practices across all business functions.
  • Ensure compliance with relevant industry standards, regulations, certifications, and legal requirements, such as ISO 27001, SOC 2, HIPAA, GDPR, PCI, ISMAP IRAP, FedRAMP, SOX, NIST, etc.
  • Evaluate the security posture of third-party vendors and partners and ensure that appropriate security measures are in place to protect our data and systems. Review and approve all custom security and privacy related contractual terms.
  • Manage Security Operations, Threat Intelligence, and Vulnerability Management Teams to include the Security Operations Center (SOC) operating 7x24x365 Drive security analysis of new product and service releases.
  • Develop effective Key Performance Indicators to continuously monitor the effectiveness of the Omnissa Information Security Program.
  • Regularly brief Omnissa Executive Leadership and Board on key business risks and program maturity.

What experience will you bring to Omnissa?

  • 15+ years of experience in SaaS/IT Operations and Information Security Leadership Roles.
  • Previous experience as a CISO at a B2B, cloud-based SaaS company, approaching security with a DevOps mindset.
  • You prefer security by enablement, automation, and guardrails over gates and roadblocks.
  • Familiarity with securing and operating on public Cloud (AWS, Azure, GCP) providers.
  • Comfortable working with highly technical engineering teams who have a strong sense of autonomy in their decision-making, be it technical or product focused.
  • Possess domain knowledge of common information security, business continuity and privacy management frameworks, regulatory requirements, and applicable standards such as ISO 27001, SOC 2, HIPAA, GDPR, PCI, ISMAP IRAP, FedRAMP, DISA IL, CMMC, NIST, SOX, NIAP Common Criteria, BSI EAL4+, C5, ISMAP, IRAP, etc.
  • Understanding the principles of product and application security to include common security vulnerabilities in software such as OWASP Top-10 and SANS Top-25 Excellent written and verbal communication skills.
  • You can articulate complex cybersecurity concepts to both technical and non-technical audiences. You are adept as translating security problems to business impact.
  • Experience with highly regulated industries such as healthcare, financial services, government, and publicly listed companies.
  • Capable of leading and inspiring cross-functional, interdisciplinary teams to accomplish both tactical and strategic objectives, with a keen focus on achieving business outcomes.
  • Exhibits a high level of personal integrity and professionalism, with the capacity to manage confidential matters with discretion and maturity.
  • Demonstrated success in formulating information security strategy, policies, and procedures, along with a proven ability to implement programs that achieve excellence in a dynamic environment.

Location: United States (Remote/Home Office) - Ideally in close proximity to a major airport

Omnissa industry recognition and awards:

  • Gartner Magic Quadrant: Consistently positioned as a leader in Gartner’s Magic Quadrant for Desktop as a Service (DaaS) and Virtual Desktop Infrastructure (VDI).
  • IDC MarketScape Q2 2024: Recognized as a leader in IDC MarketScape reports for EUC.
  • Forrester Wave report for Q4 2023: Workspace ONE received the highest scores in the current offering category and the second-highest scores in the strategy category.
  • Customer Satisfaction and Reviews: High ratings and positive reviews on platforms like Gartner Peer Insights and TrustRadius.

Omnissa’s commitment to diversity & inclusion: Omnissa is committed to continuing their mission to build a diverse and inclusive workforce that reflects the communities we serve across the globe. Fostering inclusiveness is one of our key values, that acts as a bedrock of our operational model and culture. Omnissa is an Equal Opportunity Employer and Prohibits Discrimination and Harassment of Any Kind: Omnissa is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at Omnissa are based on business needs, job requirements and individual qualifications, without regard to race, color, religion or belief, national, social or ethnic origin, sex (including pregnancy), age, physical, mental or sensory disability, HIV Status, sexual orientation, gender identity and/or expression, marital, civil union or domestic partnership status, past or present military service, family medical history or genetic information, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Omnissa will not tolerate discrimination or harassment based on any of these characteristics. Omnissa welcomes applicants of all ages. Omnissa will provide reasonable accommodations to applicants and employees who have protected disabilities consistent with local law.

Disclaimer for US-Based Roles: This job requisition is not eligible for employment-based immigration sponsorship by Omnissa