← All roles
CISO

Chief Information Security Officer

Veritone · Software · 501-1,000 employees

Irvine, CA · Hybrid · full_time

Listed by the employer as “VP, Information Security and Compliance”. Title normalized for comparability.

CLI Career Level

Enterprise CISO

Moderate confidence

Opportunity Score

66/100

Solid

High confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Aug 17, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — VP / Head of Security (US)

CLI Take

Scope matches the title

CLI reads this as an Enterprise CISO mandate, consistent with how the employer has titled it. Scope language covers enterprise-wide remit; global responsibility; responsibility across business units; board or committee interaction; executive committee exposure, and it carries SOX and PCI DSS accountability. The reporting line sits below the executive team — the role reports to Chief Legal Officer. Team size is not disclosed and remains the main open question before pursuing it.

Why this role scores the way it does

66/100 — solid opportunity quality. CLI reads this as an Enterprise CISO mandate. Strongest signal: Scope language covers enterprise-wide remit; global responsibility; responsibility across business units; board or committee interaction; executive committee exposure. Main drag on the score: The reporting line sits below the executive team — the role reports to Chief Legal Officer. 2 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

Enterprise CISO — The employer lists this as “VP, Information Security and Compliance”. CLI reads it as Enterprise CISO because the role shows enterprise-wide remit; global responsibility; responsibility across business units; board or committee interaction; executive committee exposure, board-level exposure expected, 501-1,000 employee organization.

Moderate confidence

What makes it attractive

  • Scope language covers enterprise-wide remit; global responsibility; responsibility across business units; board or committee interaction; executive committee exposure.
  • CLI's analysis of the posting describes a strategic build or transformation mandate.
  • Board-level exposure is expected in the role.

What to probe before applying

  • The reporting line sits below the executive team — the role reports to Chief Legal Officer.
  • The posting reads closer to an individual contributor mandate: hands-on delivery expected.

Scoring components · Solid

Compensation versus comparable roles55 · weight 15%

The employer discloses a base range, but there is no comparable set to benchmark it against yet.

Reporting level0 · weight 12%

The reporting line sits below the executive team — the role reports to Chief Legal Officer.

Functional and geographic scope100 · weight 12%

Scope language covers enterprise-wide remit; global responsibility; responsibility across business units; board or committee interaction; executive committee exposure.

Quality of the mandate100 · weight 12%

CLI's analysis of the posting describes a strategic build or transformation mandate.

Executive and board exposure100 · weight 10%

Board-level exposure is expected in the role.

Role authority versus title25 · weight 10%

The posting reads closer to an individual contributor mandate: hands-on delivery expected.

Company scale and trajectory67 · weight 10%

Employer profile: 501-1,000 employee organization, publicly traded, revenue 50m 250m.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals100 · weight 5%

No adverse signals identified in the posting.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

$200,000 – $250,000 base salary, disclosed by employer

Sample size not yet sufficient for a market comparison

See the full benchmark bands by level and region

The mandate

Serve as the company’s Chief Information Security Officer and executive champion for global enterprise security and compliance. The leader will design and execute a strategy to protect customer data, IP, and infrastructure across commercial SaaS and public sector business units while managing public company risk requirements.

Reports to the Chief Legal Officer. Leads a global security and compliance organization across security operations, engineering, risk management, and regulatory compliance for a public SaaS company.

Scope

  • Reports to Chief Legal Officer
  • Board-level exposure expected
  • Public company experience required
  • Clearance: Active or clearable U.S. Government Security Clearance (DoD Secret or Top Secret) preferred (preferred)

Domains and regulation

  • Enterprise Security
  • Cloud Security
  • GRC
  • Product Security
  • Compliance
  • Incident Response
  • Third-Party Risk
  • Privacy
  • Infrastructure Security
  • Cyber Defense
  • SOX
  • PCI DSS
  • SOC 2
  • FedRAMP
  • CMMC
  • NIST 800-171
  • CCPA
  • NYDFS Part 500

Requirements

Must have

  • 10+ years of progressive leadership experience in info sec and cloud architecture within a global, publicly traded SaaS company
  • Hands-on experience leading a cloud solution through the FedRAMP authorization lifecycle (PMO/JAB or Agency route)
  • Fluency in public sector regulatory landscapes including NIST 800-53, NIST 800-171, CMMC, CJIS, and FISMA
  • Demonstrated success negotiating security exhibits, DPAs, and risk terms with enterprise clients and vendors
  • Experience building and leading global security operations and compliance teams
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related technical discipline

Preferred / bonus

  • Nothing listed as optional.

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

Not stated in the posting: Specific team size not disclosed; Specific budget for security tooling and headcount not disclosed.

About Veritone

Veritone provides enterprise artificial intelligence software and services, centered on its aiWARE operating system that orchestrates a vast ecosystem of machine learning models. The company serves customers in media, entertainment, public sector, and justice industries to automate workflows and analyze unstructured data. A security leader would oversee a distributed cloud infrastructure supporting high-stakes data processing for both commercial and government clients.

Industry
Software
Headcount
501-1,000 employees
Headquarters
Denver, CO
Founded
2014
Ownership
Public company · NASDAQ:VERI
Funding
Publicly traded
Revenue
$50M – $250M

Full company profile for Veritone →

View original job description
Position SummaryThe VP, Information Security & Compliance, will serve as the Company’s Chief Information Security Officer and executive champion for our global enterprise security and compliance programs. Reporting directly to the Chief Legal Officer, this role will design, execute and mature an overarching security strategy that protects customer data, intellectual property and infrastructure across all of Veritone’s business units, including, but not limited to commercial SaaS and high stringency public sector (federal, state and defense) environments.The role requires a rare blend of strategic vision, commercial SaaS agility, public sector governance (e.g., FedRAMP, NIST, DoD), and public company risk management capabilities (e.g., SOX, SEC disclosure requirements).‎What You'll DoStrategic Leadership & GovernanceSecurity Vision & Roadmap: Architect and execute a multi-year, enterprise wide information security and compliance strategy aligned with commercial growth targets and public sector expansion goals.Executive Presence: Serve as the primary security advisor to the Board of Directors, Executive Leadership Team and entire organization. Clearly translate complex security risks into actionable business terms.Team Leadership: Build, mentor and lead a high performing global security team and compliance organization across security operations, engineering, risk management and regulatory complianceSecurity Culture: Foster a company-wide security first culture through continuous training, awareness programs and cross-functional advocacyComplianceFedRAMP & Defense Authorizations: Lead the strategy, deployment and continuous monitoring required to achieve and maintain FedRAMP (moderate/high), StateRAMP, DoD/CMMC, and CJIS authorizations in cloud environments (AWS GovCloud/Azure Government)Commercial Frameworks: Oversee compliance and auditing for SOC 2 Type II, ISO 27001, PCI-DSS and global privacy standards (GDPR, CCPA/CPRA)Public Company Compliance: Partner with legal, finance and internal audit teams to maintain robust IT general controls (ITGCs) for SOX compliance and support SEC cybersecurity disclosure requirementsSecurity Operations, Architecture & Incident ResponseCloud & Product Architecture: Partner with Enterprise Architecture, Infrastructure, and Engineering teams to embed security controls into multi-tenant SaaS platforms, CI/CD pipelines, and cloud environments.Threat & Vulnerability Management: Direct vulnerability scanning, penetration testing, intrusion detection, and threat intelligence operations to proactively address emerging vector threats.Incident Management: Oversee breach investigations, threat response protocols, and tabletop exercises, ensuring rapid containment, notification, and mitigation when incidents arise.Enterprise Risk Management & OperationsThird-Party & Vendor Risk: Establish and enforce third-party risk management (TPRM) programs to audit and secure vendor ecosystems, software supply chains, and external partners.M&A Due Diligence: Lead security and compliance due diligence for mergers and acquisitions, driving post-acquisition security integration strategies.Business Continuity & Resilience: Construct policies and operational frameworks for Business Continuity Planning (BCP), Disaster Recovery (DR), loss prevention, and fraud prevention.‎What You'll NeedEducation: Bachelor of Science degree in Computer Science, Cybersecurity, Computer Engineering, Information Technology, or equivalent technical discipline.Executive Experience: 10+ years of progressive leadership experience in information security, cloud architecture, and compliance within a global, publicly traded cloud/SaaS technology company.Proven FedRAMP Track Record: Hands-on experience leading a cloud solution through the FedRAMP authorization lifecycle (PMO/JAB or Agency route) and continuous monitoring in AWS and/or Azure cloud environments.Dual-Domain Capability: Equal fluency in scaling commercial enterprise SaaS security and navigating rigid public sector regulatory landscapes (NIST 800-53, NIST 800-171, CMMC, CJIS, FISMA).Executive Presence & Communication: Exceptional ability to communicate security concepts to technical engineers, enterprise buyers, regulatory auditors, and Board members alike.Risk & Contract Negotiation: Demonstrated success negotiating security exhibits, data processing agreements (DPAs), and risk terms with enterprise clients and vendors.BONUS POINTS IF YOU HAVE…Advanced Degree: Master’s degree (M.S. in Cybersecurity/Computer Science or MBA).Industry Certifications: Active professional certifications such as CISSP, CISM, CRISC, CISA, or CCSP.Security Clearance: Active or clearable U.S. Government Security Clearance (DoD Secret or Top Secret preferred).AI/ML Security: Knowledge of security, privacy, and governance frameworks surrounding Artificial Intelligence and Machine Learning workloads.DISCLOSUREOur company provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics.(Colorado & California Only*): The Annual salary listed for the position is a range of $200,000-$250,000. This base pay is for illustrative purposes only and will be determined based on skills and experience comparable to the job requirements. This position may be eligible for additional compensation and benefits including but not limited to: incentive compensation; health benefits; retirement benefits; life insurance; paid time off; parental leave and benefits; and other employee perks and benefits.Note: Disclosure as required by sb19-085 (8-5-20) of the minimum salary compensation for this role when being hired in Colorado & California.‎

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.