Sciens Building Solutions is self-described as a trusted national provider of comprehensive life safety and security solutions, including fire detection, suppre
Chief Information Security Officer
Location
Florida
Posted
74 days ago
Salary
0
Seniority
Lead
Job Description
Chief Information Security Officer
Sciens Building Solutions
• Develop and maintain a pragmatic cybersecurity strategy and roadmap aligned to business objectives. • Define security policies, standards, and procedures appropriate for a fast-growing SMB environment. • Establish cybersecurity governance, risk appetite, and reporting mechanisms. • Present cyber risk updates to executive leadership and private equity (PE) stakeholders in plain business terms. • Identify, assess, and prioritize cyber risks using a risk-based approach. • Oversee vulnerability management, penetration testing, and remediation efforts. • Lead compliance initiatives, such as SOC 2, ISO 27001, NIST, CMMC, HIPAA, PCI-DSS. • Ensure third-party and vendor risk management processes are in place. • Own the incident response plan, tabletop exercises, and breach readiness. • Lead response to security incidents, ransomware events, or data breaches. • Coordinate with legal, insurance, forensics, and external advisors as needed. • Oversee backup, disaster recovery, and business continuity planning. • Oversee core security tooling (IAM, endpoint security, SIEM/MDR, email security, cloud security). • Ensure secure configuration of cloud, SaaS, and on-prem environments. • Partner closely with IT and operations teams to embed security into operations. • Make cost-effective build vs. buy decisions. • Support cybersecurity due diligence for acquisitions. • Assess security posture of acquisition targets and provide risk summaries. • Align security maturity with PE exit strategy (strategic buyer or IPO readiness). • Build a security-aware culture through training and phishing simulations.
Job Requirements
- Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent work experience).
- 10+ years in information security, IT risk, or cybersecurity leadership.
- Experience in SMB, PE-backed, or high-growth environments.
- Strong working knowledge of: Cloud security (AWS, Azure, GCP, SaaS), Identity & access management, Endpoint and network security, Incident response and ransomware defense.
- Proven ability to communicate cyber risk to non-technical executives and investors.
- Experience with at least one recognized security framework (NIST, ISO, CIS).
- Excellent problem-solving and analytical skills.
- Strong communication and interpersonal abilities.
- Ability to manage multiple projects and meet deadlines in a fast-paced environment.
Benefits
- Competitive salary based on qualifications.
- Paid time off plan and holidays.
- 401(k) matching.
- Short term and long-term disability.
- Medical, dental, and vision plans with options.
- Life insurance.
- Company laptop.
- Professional career development opportunities.
- Tuition reimbursement program.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Who are we and why should you join us? BetterHelp is on a mission to remove the traditional barriers to therapy and make mental health care more accessible to everyone. Founded in 2013, we are now the world’s largest online therapy service, providing affordable and convenient therapy across the globe. Our network of over 30,000 licensed therapists has helped millions of people take ownership of their mental health and change their lives forever. And we’re not stopping there – as the unmet need for mental health services continues to grow, BetterHelp is committed to being part of the solution. As a Senior Security Engineer, (Applications Team) at BetterHelp, you’ll join a diverse team of licensed clinicians, engineers, product pros, creatives, marketers, and business leaders who share a passion for expanding access to therapy. And as a mental health company, we take employee mental health just as seriously as we do our mission. We deeply invest in our team’s well-being and professional development, because we know that business and individual growth go hand-in-hand. At BetterHelp, you’ll carve your own path, make an immediate impact, and be challenged every day – with a supportive community behind you the whole way. What are we looking for? We are looking for a motivated Application Security Engineer who is looking to help build the maturity of our Application Security Team while growing their own security skill set. Our team prioritizes the full lifecycle of security triage: identifying vulnerabilities, reproducing exploits, meticulous code analysis, and crafting production-ready fixes. We are looking for an engineer with good attention to detail, the ability to learn quickly and pick up new skills independently, and a get-things-done attitude with eagerness to build something awesome! What will you do? - Work with a nimble passionate security team, collaborating with development and product. - Conduct vulnerability triage: handle internal and external vulnerability reports, and more importantly: go beyond investigating and write fixes yourself. - Review code and help make decisions about secure coding decisions. - Review new product features to ensure they are designed with security in mind - Collaborate with other developers and teams for long term security success. - Code solutions for preventative measures and generating alerts. - Use your detective work to get to the AH-HA! moment when you find and replicate the root cause of an issue and figure out how to fix it. - You will care and be involved in our product, mission, and success - way beyond checking off tasks. What will you NOT do? - You will NOT worry about "runway", "cash left", or "how much time we have until the next round". We have the startup DNA but we're fully backed and funded, all the way to success. - You will NOT be confined to your "job". You will get involved in product, marketing, business strategy, and almost everything we do. - You will NOT be bogged down by office politics, ego, or bad attitude. Only positive, pleasure-to-work-with people are allowed here! - You will NOT get yourself burned out. We work hard but we believe in maintaining a sustainable work/life balance. Really. Can I work remotely? Yes. We operate on PST and candidates in any time zone are welcome to apply. We ask employees to travel to our San Jose, CA office up to three times per year plus one company-wide offsite to collaborate in person and strengthen working relationships. Travel expenses are covered and reasonable accommodations are made for those under unique circumstances who cannot travel. What technologies will you work with? Our application uses a combination of well established and more recent technologies, always innovating, always experimenting. Our current tech stack is: - Backend: PHP/Laravel, MySQL, Docker, AWS (SQS, ElastiCache, RDS) - Frontend: React, Nextjs, Twig (php templates), Tailwind, jQuery, SCSS, HTML & CSS - Tools: Static analysis tools (Semgrep, phpstan), DASTs Requirements - 5+ years of experience in web application security - Strong experience with code review, security reviews, security architecture, pentesting, and bug bounty programs - Experience working in full-stack projects - Experience with discovering and fixing common web security vulnerabilities - Experience using web application pentesting tools (e.g. Burp Suite) - Basic understanding of networking concepts (DNS, TCP/IP, VPNs) - Able to explain complex ideas either verbally or in writing to a mixture of audiences - Knowledge and understanding of the OWASP Top 10 - Experience creating security automations with GitHub Actions or other methods Bonus (Great to have, but not required) - Experience coding in PHP and working with React/Next.js - Experience using scripting, using regex, and writing bash scripts - Experience with applications deployed in AWS & Kubernetes - Awareness of AI and LLMs, and how they are used in consumer products - Experience using AI and LLMs in security research - Experience with threat modeling Benefits - Remote work with regular in-person bonding experiences sponsored by the company - Competitive compensation - Holistic perks program (including free therapy, employee wellness, and more) - Excellent health, dental, and vision coverage - 401k benefits with employer matching contribution - The chance to build something that changes lives – and that people love - Any piece of hardware or software that will make you happy and productive - An awesome community of co-workers The base salary range for this position is $130,000 - $185,000. In addition to the base salary, this position is eligible for a performance bonus and the extensive benefits listed here (subject to eligibility requirements): Teladoc Health Benefits 2026. Total compensation is based on several factors – including, but not limited to, type of position, location, education level, work experience, and certifications. This information is applicable to all full-time positions. At BetterHelp we thrive on difference and individuality, and as part of the Teladoc Health family, we are proud to be an Equal Opportunity Employer. We never have and never will discriminate against any job candidate or employee due to age, race, ethnicity, religion, sex, color, national origin, gender, gender identity, sexual orientation, medical condition, marital status, parental status, disability, or Veteran status.
Cybersecurity Engineer (SOAR) [JOB ID 20260319]
Phoenix CyberSubject Matter Expert Services for Enterprise and Government. Specializing in Security Engineering & Operations.
Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team. This is a remote, work-from-home position with the possibility of minimal travel within the continental United States. Requirements: - Degree in a STEM related discipline and/or a minimum 5 years of experience - 2+ years of experience developing with Python - Working knowledge of scripting languages Bash and PowerShell - At least 3 years of experience in software development with COTS integration - Working knowledge of one or more programming languages such as C#, JavaScript, or Node.js - Experience in API development/consumption - Prior consulting experience Nice to have: - Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security - Experience with SOAR tools, Swimlane, Cyber Triage, Phantom - Experience with container services (Docker, Kubernetes, etc.) - Linux administration experience - Cloud infrastructure experience (AWS, Google, or Azure) - Experience with the ELK (Elasticsearch, Logstash, Kibana) stack, Elastic Cloud on Kubernetes (ECK), Kafka, Beats, and/or Splunk - Experience using Agile methodologies - Prior government, large enterprise experience - Government security clearance Responsibilities: - Provide technical expertise and real-life experience in creating innovative solutions within the cybersecurity space - Develop and implement automations in response to security incidents - Proactively collaborating, developing, and designing security orchestrations with SMEs/engineers, vendors, and project stakeholders - Ability to navigate and adapt to a fast-paced ever-changing environment with a team of like-minded, cross-functional individuals Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team. Phoenix Cyber is an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status. Phoenix Cyber participates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to https://www.e-verify.gov/
SOAR Engineer [Job ID 20260319]
Phoenix CyberSubject Matter Expert Services for Enterprise and Government. Specializing in Security Engineering & Operations.
Phoenix Cyber is looking for a SOAR Consultant to support a commercial client. This is a 100% remote, work-from-home position anywhere in the continental United States. Requirements: - Minimum 2 years of SOAR experience - Expert knowledge of SOAR technologies - Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security - Degree in a STEM related discipline and/or a minimum 5 years of cybersecurity experience - Cybersecurity consulting experience Nice to Have: - Experience with Palantir - Experience with PowerBI Responsibilities: - Provide technical expertise and real-life experience in creating innovative solutions within the cybersecurity space - Develop and implement automations in response to security incidents - Proactively collaborating, developing, and designing security orchestrations with SMEs/engineers, vendors, and project stakeholders - Ability to navigate and adapt to a fast-paced ever-changing environment with a team of like-minded, cross-functional individuals Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team. Phoenix Cyber is an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status. Phoenix Cyber participates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to https://www.e-verify.gov/ Salary range is flexible.
Cybersecurity Engineer [JOB ID 20260319]
Phoenix CyberSubject Matter Expert Services for Enterprise and Government. Specializing in Security Engineering & Operations.
Phoenix Cyber is looking for Cybersecurity Engineers to join our client delivery team. This is a remote, work-from-home position with the possibility of minimal travel within the continental United States. Requirements: - Degree in a STEM related discipline and/or a minimum 5 years of experience - Prior experience or support of Security Operations and Incident Response - Excellent understanding of Cyber Security Operations and Incident Response processes - IT certifications such as CySA, CEH, etc - Security clearance required Nice to have: - Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security - Linux administration experience - Cloud infrastructure experience (AWS, Google, or Azure) Responsibilities: - Provide technical expertise and real-life experience in creating innovative solutions within the cybersecurity space - Candidate will develop, support, tune and deploy security solutions - Creates WAF rules to mitigate threats and implement security best practices - Develop and enhance SIEM content for Cybersecurity teams, including correlations, enrichments, dashboards, reports, and alerts that appropriately illustrate and characterize web application attacks and mitigation mechanisms - Develop and implement automations in response to security incidents - Ability to navigate and adapt to a fast-paced ever-changing environment with a team of like-minded, cross-functional individuals Phoenix Cyber is a national provider of cybersecurity engineering services, operations services, sustainment services and managed security services to organizations determined to strengthen their security posture and enhance the processes and technology used by their security operations team. Phoenix Cyber is an equal opportunity employer and complies with Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veteran's Readjustment Assistance Act (VEVRAA), all amendments to these regulations, and applicable executive orders, federal, and state regulations. Applicants are considered without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, and/or veteran status. Phoenix Cyber participates in E-Verify to confirm the employment eligibility of all newly-hired employees. To learn more about E-Verify, including your rights and responsibilities, go to https://www.e-verify.gov/

