Chief Information Security Officer (Insurtech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Chief Information Security Officer (Cybersecurity): Leading cybersecurity strategy, security operations, and governance, risk, and compliance for a publicly traded insurance carrier with an accent on regulatory compliance and SOC 2 programs. Focus on protecting enterprise systems against evolving threats, managing SOX audit cycles, and reporting cybersecurity posture to the Board of Directors.
Location: Hybrid in Morristown, NJ or Austin, TX
Salary: $237,500 - $390,000
Company
provides tailored insurance coverage and preventative maintenance plans for homeowners through an intuitive, modern experience.
What you will do
- Develop and execute the enterprise cybersecurity strategy aligned with business risk and regulatory requirements.
- Build and lead security operations, including threat detection, incident response, and vulnerability management.
- Own the end-to-end SOC 2 program and the governance, risk, and compliance (GRC) function.
- Manage identity governance, privacy, data protection strategy, and third-party risk programs.
- Report cybersecurity posture, risk trends, and incident activity to the Board of Directors and Audit and Risk Committee.
- Lead disaster recovery, business continuity planning, and the enterprise Incident Response Plan.
Requirements
- 10+ years of experience in cybersecurity, with 5+ years in a senior leadership role (CISO, VP of Security).
- Experience at a regulated, publicly traded company with direct involvement in SOX audit cycles.
- Proven track record of end-to-end ownership of a SOC 2 program.
- Strong GRC background and experience navigating multi-regulator environments.
- Ability to present risk and incident information to boards of directors and regulators.
- Must be based in or be able to work in Morristown, NJ or Austin, TX.
Nice to have
- Experience in the insurance, Insurtech, or fintech industries.
- Familiarity with privacy frameworks like CCPA/CPRA.
- Certifications such as CISSP, CISM, CRISC, or CISA.
- Background in security engineering or application security.
Culture & Benefits
- Comprehensive medical, dental, and vision insurance (100% employer-covered dental & vision).
- 401(k) retirement plan, FSA, and employer-paid life insurance.
- Equity compensation eligibility.
- Flexible Time Off and a 12-week parental leave program.
- Professional training and internal career growth opportunities.
- Onsite perks including snacks, drinks, and catered lunches.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →