← All roles
VP

Vice President, Information Security

Procare Solutions · Software · 201-500 employees

Atlanta, GA · Hybrid · full_time

One opening, also advertised in Denver, Colorado.

CLI Career Level

SVP-equivalent

Moderate confidence

Opportunity Score

83/100

Strong

High confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Aug 17, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — VP / Head of Security (US)

CLI Take

Broader than the title suggests

This role reads SVP-equivalent despite being advertised as “Vice President, Information Security” — the stated scope is wider than the employer's title implies. Scope language covers enterprise-wide remit; multinational responsibility; board or committee interaction; executive committee exposure, and it reports to CTO and carries SOC 2 and PCI DSS accountability. Team size is not disclosed and remains the main open question before pursuing it.

Why this role scores the way it does

83/100 — strong opportunity quality. CLI reads this as a SVP-equivalent mandate. Strongest signal: Scope language covers enterprise-wide remit; multinational responsibility; board or committee interaction; executive committee exposure. 2 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

SVP-equivalent — The employer lists this as “Vice President, Information Security”. CLI reads it as SVP-equivalent because the role shows enterprise-wide remit; multinational responsibility; board or committee interaction; executive committee exposure, reports to a C-level executive, board-level exposure expected.

Moderate confidence

What makes it attractive

  • Scope language covers enterprise-wide remit; multinational responsibility; board or committee interaction; executive committee exposure.
  • CLI's analysis of the posting describes a strategic build or transformation mandate.
  • Board-level exposure is expected in the role.
  • The role carries more scope than the employer's title suggests.
  • The role reports to a C-level executive.

What to probe before applying

  • No material concerns identified in the posting.

Scoring components · Strong

Compensation versus comparable roles55 · weight 15%

The employer discloses a base range, but there is no comparable set to benchmark it against yet.

Reporting level71 · weight 12%

The role reports to a C-level executive.

Functional and geographic scope100 · weight 12%

Scope language covers enterprise-wide remit; multinational responsibility; board or committee interaction; executive committee exposure.

Quality of the mandate100 · weight 12%

CLI's analysis of the posting describes a strategic build or transformation mandate.

Executive and board exposure100 · weight 10%

Board-level exposure is expected in the role.

Role authority versus title100 · weight 10%

The role carries more scope than the employer's title suggests.

Company scale and trajectory58 · weight 10%

Employer profile: 201-500 employee organization, pe backed ownership, private equity, revenue 50m 250m.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals100 · weight 5%

No adverse signals identified in the posting.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

$200,000 – $250,000 base salary, disclosed by employer

Sample size not yet sufficient for a market comparison

Budget management is explicitly listed as a responsibility, including using quantitative risk frameworks to influence budget decisions.

See the full benchmark bands by level and region

The mandate

Establish and execute Procare’s enterprise-wide information security strategy and culture as the company's top security leader. The role is tasked with protecting customer data for 40,000+ childcare centers, enabling compliant product growth, and translating complex cyber risk for the executive team and board.

Reporting to the CTO, this leader oversees Security Operations, GRC, AppSec, and Cloud Security functions. The remit covers a portfolio of 5+ applications serving 40,000+ customers within the Roper Technologies family of companies.

Scope

  • Reports to CTO
  • Board-level exposure expected

Domains and regulation

  • Enterprise Security
  • Product Security
  • Application Security
  • Cloud Security
  • Cyber Defense
  • GRC
  • Identity
  • Privacy
  • Incident Response
  • SOC 2
  • PCI DSS
  • CCPA
  • SOC 2
  • PCI DSS
  • CCPA

Requirements

Must have

  • 12+ years of progressive experience in information security
  • 4+ years in a CISO, Deputy CISO, or VP of Security role
  • Proven track record leading security at a B2B SaaS or cloud-native technology company
  • Hands-on leadership of SOC 2 Type II and PCI audits
  • Deep expertise in cloud security architecture (AWS, Azure, and/or GCP) and secure SDLC
  • Experience managing security through enterprise sales cycles and customer trust reviews

Preferred / bonus

  • Nothing listed as optional.

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

About Procare Solutions

Procare Solutions provides child care management software and payment processing services for daycare centers, after-school programs, and school districts. The platform manages administrative tasks including attendance tracking, tuition collection, and family engagement for over 37,000 centers. The organization maintains a large volume of sensitive PII and financial transaction data within the early childhood education sector.

Industry
Software
Headcount
201-500 employees
Headquarters
Denver, Colorado
Founded
1992
Ownership
Private equity backed
Funding
Private equity backed
Revenue
$50M – $250M
Investors
Warburg Pincus, TA Associates

Full company profile for Procare Solutions →

View original job description
About ProcareFor over 30 years, Procare Solutions has been dedicated to empowering early childhood educators by providing products and services that enable them to focus on the care, safety and education of children. We recognize the responsibility that comes with nurturing and educating children, which is why our child care management solutions are designed to automate business processes, help ensure safety and compliance, communicate with families and provide educational resources and training to help teachers and children thrive.Over 40,000 satisfied customers have chosen Procare Solutions as their trusted partner in providing exceptional care for young minds.A Little About The RoleThe VP Information Security is a senior leader responsible for establishing and executing Procare’s enterprise-wide information security strategy, program, and culture. Reporting to the CTO this role will serve as the company's top security leader — translating complex cyber risk into business language, protecting customer data, enabling compliant product growth, and building a world-class security organization.This is an operationally engaged, high-visibility role that blends strategic vision with operational execution. The ideal candidate is a proven security leader who thrives in a fast-moving SaaS environment, understands how security is changing in an AI first world, and can operate confidently in the boardroom while remaining deeply trusted by engineering and product teams.Procare's security organization protects 40,000+ childcare centers and millions of families who depend on our platform daily. Our program includes:Mature compliance posture: SOC 2 Type II certified across all products; PCI DSS v4.0.1 Level 1 Service Provider; TX-RAMP authorizedEnterprise security tooling: CrowdStrike NextGen-SIEM, Contrast Security/Veracode for application security, Automox for patch management, Barracuda/Abnormal.ai for email securityProactive security culture: Monthly product security meetings, CSIRT incident response team, public trust center (SafeBase), quarterly Security Steering Committee with C-suite participationParent company support: Member of Roper Technologies family with access to shared security resources, threat intelligence, and enterprise toolingWhat You’ll DoSecurity Strategy & LeadershipDefine, own, and continuously evolve a multi-year enterprise security roadmap aligned to business objectives, growth stage, and risk appetiteServe as the primary security advisor to the executive leadership team, present security posture, risk metrics, and investment cases with clarityLead a high-performing security organization including Security Operations, GRC, AppSec, and Cloud Security functionsChampion a security-first culture across the company through education, executive sponsorship, and accountabilityTranslate technical risk into business impact using quantitative risk frameworks (e.g., FAIR) to influence budget and strategic decisionsNavigate Roper Technologies cybersecurity framework, maintaining compliance with mandatory foundational controls and implementing selected optional controls to achieve maturity targets; serve as primary security liaison to parent companyEstablish AI security governance program to evaluate, approve, and manage AI tool adoption across the organization; implement controls for AI-specific risks including data leakage, prompt injection, and model securityManage security across diverse product portfolio (5+ applications) with varying technology stacks, customer bases, and compliance requirements; ensure consistent security standards while accommodating product-specific needsBuild and maintain executive cybersecurity dashboards providing real-time visibility into security posture, risk metrics, and program progress for board, parent company, and executive leadershipCloud & Product SecuritySecure the company's SaaS platform and cloud environments (AWS/Azure/GCP) by driving secure SDLC, vulnerability management, remediation SLAs, and penetration testing programsPartner with Product and Engineering leadership to embed security by design — shifting security left into development workflows without impeding velocityOversee Identity and Access Management (IAM), Zero Trust architecture, data encryption, and cloud security posture management (CSPM/CNAPP)Define and maintain security standards for APIs, microservices, container security, and third-party integrationsGovernance, Risk & Compliance (GRC)Own and maintain the company's Information Security Management System (ISMS), risk register, and policy frameworkLead and maintain Type II and PCI DSS v4.0.1 certifications; oversee ISO 27001, TX-RAMP, GDPR, CCPA, and other applicable regulatory frameworksManage customer security questionnaires, enterprise security reviews, and security-related RFP/procurement processes in partnership with Sales and LegalDevelop and enforce vendor and third-party risk management programs to minimize supply chain exposureEnsure compliance with applicable federal, state, and international data privacy and security regulationsManage state-specific compliance programs including TX-RAMP certification with quarterly vulnerability reporting and evidence submission requirementsImplement and maintain customer trust center and security documentation portal to streamline enterprise security reviews and RFP processesLead supply chain security and vendor breach response program; assess impact of third-party compromises and coordinate remediation across affected systemsEnsure compliance with child data protection requirements and education sector-specific regulations; implement specialized controls for sensitive family and student informationSecurity Operations & Incident ResponseLead a 24/7-capable security operations capability including SIEM, EDR, XDR, and threat intelligence platformsOwn the cyber incident response program: detection, investigation, containment, communication, and post-incident review (PIR) processesTest business continuity and disaster recovery plans with cross-functional stakeholdersMonitor emerging threat intelligence; proactively brief leadership on ransomware, social engineering, supply chain, and AI-driven threat vectorsLead Zero Trust architecture planning and implementation across corporate and product environments as multi-year strategic initiative: coordinate with infrastructure, network, and identity teamsCorporate Security & IT Risk ManagementOversee corporate IT security including endpoint protection, patch management, and corporate network security controlsImplement enterprise patch management programs using automated tools to ensure timely remediation of vulnerabilities across workstations and serversDirect Active Directory security assessments and identity hygiene programs across all domain instancesEnsure MFA enforcement for all privileged accounts and coordinate rollout of authentication requirements for staff and customersPeople & Organizational LeadershipRecruit, develop, and retain a diverse security team including Security Engineers, Analysts, GRC Specialists, and an AppSec functionDefine team structure, career ladders, OKRs, and budget for the security organizationManage external security vendors, MSSPs, auditors, and counsel relationshipsOur Ideal Candidate Will Have12+ years' of progressive experience in information security, with at least 4 years' in a CISO, Deputy CISO, or VP of Security roleProven track record leading security at a B2B SaaS or cloud-native technology company; experience scaling security programs from growth stage to enterprise maturityDeep expertise in cloud security architecture (AWS, Azure, and/or GCP), secure SDLC, and modern threat detection and responseHands-on leadership of SOC 2 Type II and PCI audits; direct experience with ISO 27001, GDPR, CCPADemonstrated ability to communicate security risk to non-technical executives and board members; experience presenting to audit committees or governance boardsExperience managing security through enterprise sales cycles including customer trust reviews, penetration test sharing, and security questionnaire programsTrack record of building and scaling security teams from the ground up, including hiring, organizational design, and vendor managementBachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field required; Master's degree or MBA preferredOne or more industry certifications strongly preferred: CISSP, CISM, CCSP, CISA, CRISC, CEHExecutive presence with the ability to build trust at board level and peer-level across the C-suiteStrong business acumen — understands how security decisions impact revenue, customer trust, and company valuationExceptional communication skills: able to explain complex security concepts in plain language to diverse audiencesCollaborative, low-ego leader who can influence without authority and build bridges between security, engineering, legal, and salesResilient under pressure; sound judgment in high-stakes incident scenariosSkilled at managing competing priorities across multiple compliance programs, product teams, and parent company requirements; able to sequence initiatives and communicate trade-offs effectivelySecurity Technology ExperienceCore Security Platforms:Cloud security: Wiz, Orca, Prisma Cloud, or equivalent CSPM/CNAPP solutionsEndpoint/XDR: CrowdStrike, SentinelOne, Microsoft Defender, or equivalentSIEM/SOAR: CrowdStrike NextGen-SIEM, Splunk, Sumo Logic, or equivalentIdentity/IAM: Okta, Auth0, Azure AD, or equivalentSpecialized Security ToolsEmail security: Proofpoint, Mimecast, Abnormal.ai, or equivalent next-gen solutionsApplication security: Veracode, Checkmarx, Contrast Security, Snyk, or equivalent SAST/DAST platformsGRC/Compliance: Vanta, Drata, OneTrust, or equivalent automation platformsTrust & transparency: SafeBase, Whistic, or equivalent trust center solutionsPatch management: Automox, Ivanti, or equivalent endpoint management platformsEmerging Security CategoriesAI security and governance tools (familiarity with landscape preferred)Zero Trust architecture frameworks and implementation toolsPhysical RequirementsThis position works most of the time in a fixed office location and may involve sitting and/or standing for prolonged periodsFrequently required to communicate verbally and in writing (mostly email) with customers, prospects, and other employeesUse of computer, telephone, and other office equipment for the greater part of the workdayOccasional travel may be required for this positionWhy Procare?Excellent comprehensive benefits packages including: medical, dental, & vision plansHSA option with employer contributionsVacation time, holidays, sick days, volunteer & personal days401K Plan with employer match and immediate vestingEmployee Stock Purchase PlanEmployee Discount ProgramMedical, Dependent Care, and Transportation FSA PlansCompany paid Short and Long-Term disability and Life InsuranceRTD EcoPass for all Denver employeesTuition Reimbursement and continued Professional DevelopmentFast paced, high energy workplace environment in prime downtown locationRegular company provided mealsSalary$200,000 - $250,000/year DOELocationThis position can be based in our Denver, CO or Atlanta, GA offices. Procare operates in a hybrid working model based on business needs. Candidates must be willing and able to work in office a minimum of 3 days per week.

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.