Build, own, and drive a multi-year cybersecurity roadmap that is tied to business priorities and risk reduction — not just reactive tasks
Serve as the internal face of the cybersecurity program; every team at Mark43 should know who you are, understand the strategy, and know to come to you first
Translate complex security challenges into clear plans and decisions for engineering teams, product leaders, and executive stakeholders
Partner with Engineering, Product, and IT to embed security into systems, workflows, and decision-making from the start
Build and maintain a metrics program that tracks Security Operations ticket volume, themes, and SLAs; vulnerability aging and remediation rates; incident response investigation counts and patterns; and other KPIs that reflect the health and progress of the program
Regularly report on program health to leadership with clear, honest analysis of where we are and where we need to go
Lead and mature the Security Operations function, ensuring coverage, responsiveness, and quality across alerts, investigations, and escalations
Strengthen incident readiness through clear runbooks, escalation paths, tabletop exercises, and post-incident reviews that actually improve the program
Drive progress across application security, identity and access management, vulnerability management, and data protection programs
Champion the use of automation and AI tools across security operations, vulnerability management, and threat detection.
Requirements
10+ years of cybersecurity experience, with at least 4–5 years in a leadership role managing teams in a cloud or SaaS environment
Deep, hands-on experience leading programs across security operations, application security, IAM, vulnerability management, and data protection
A real track record of building and running metrics-driven security programs — you should be able to walk us through your dashboards and what they tell you
Experience working in regulated and customer-facing environments with frameworks such as FedRAMP, NIST, CJIS, HIPAA, or similar; experience in public safety or government technology is a plus
Proven ability to lead complex, cross-functional initiatives across Security, Engineering, Product, IT, GRC, and executive stakeholders
Comfort with AI and automation tools as part of a modern security program
Strong written and verbal communication skills, with the ability to turn technical issues into clear plans, decisions, and strategies
Based in or willing to relocate to the Boston area, with the ability to come into the office several days per week.
Tech Stack
Cloud
Cyber Security
Benefits
Mark43 is committed to the full inclusion of all qualified individuals.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information.
As part of this commitment, we will ensure that persons with disabilities are provided reasonable accommodations.