Chief Information Security Officer (CISO) (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Chief Information Security Officer (CISO) (Fintech): Establishing and executing an enterprise cybersecurity strategy for a regulated, cloud-first fintech company with an accent on risk-based governance, cloud and product security, and responsible AI adoption. Focus on building defensible security operations, guiding board-level risk management, securing AI/ML systems, and enabling rapid business growth.
Location: Hybrid role in the Phoenix, AZ or San Francisco, CA metropolitan area
Salary: $275,000–$305,000 per year, plus bonus, equity, and benefits
Company
is a digital personal finance company providing personalized financial solutions, including personal loans, home equity loans, debt consolidation, financial tools, and education.
What you will do
- Define and execute a multi-year cybersecurity strategy aligned with business growth and regulatory expectations.
- Advise executive leadership, the Board of Directors, regulators, customers, and strategic partners on cyber risk and security posture.
- Lead governance, risk, compliance, audit readiness, third-party risk, and regulatory reporting across fintech security frameworks.
- Oversee security operations, incident response, threat detection, digital forensics, vulnerability management, and cloud security across AWS, Azure, and/or GCP.
- Embed secure-by-design, DevSecOps, IAM, Zero Trust, and data protection practices across engineering and product development.
- Govern responsible AI adoption, AI risk controls, AI-driven security operations, and secure innovation across the organization.
Requirements
- 12+ years of progressive cybersecurity leadership experience, including CISO or equivalent senior leadership responsibilities.
- Experience in fintech, financial services, or other highly regulated environments.
- Technical expertise in cloud security architecture, DevSecOps, IAM, modern attack vectors, and incident response.
- Extensive experience with PCI DSS 4.0, SOC 2, NIST CSF, ISO 27001, GLBA, and related risk management frameworks.
- Experience securing AI/ML systems and understanding AI-driven cybersecurity risks.
- Strong executive communication skills, including experience presenting to boards and leading cyber crisis response.
Nice to have
- Experience with regulated corporate governance functions, M&A security integration, and organizational scaling.
- Experience governing enterprise AI programs and familiarity with the NIST AI Risk Management Framework or ISO/IEC 42001.
- CISSP, CISM, or CRISC certification.
Culture & Benefits
- 401(k) with employer match.
- Medical, dental, and vision coverage with HSA and FSA options.
- Competitive vacation and sick time, plus dedicated volunteer days.
- Wellness support through an Employee Assistance Program and physical and mental health programs.
- Pet care discounts, financial support through the Care Fund, and employee resource groups supporting diversity and inclusion.
- Hybrid and remote work opportunities across the United States, with hubs in Arizona, California, and Texas.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →