Director, security risk management jobs near me - 132 jobs
Let us run your job search
Sit back and relax while we apply to 100s of jobs for you - $25
Chief Compliance Officer (CCO) / Chief Information Security Officer (CISO)
Lendswift
Remote director, security risk management job
LendSwift is a modern, technology-driven consumer lending company on a mission to provide fast, transparent credit solutions to underserved borrowers. We deliver flexible lending products while maintaining the highest standards of compliance,security, and trust. Our sister company is GigFi, which provides merchant cash advances to gig workers and small businesses.
We're seeking an experienced Chief Compliance Officer (CCO) / Chief Information Security Officer (CISO) to lead our compliance and information security programs. This executive will be a key member of the leadership team, ensuring LendSwift operates with full regulatory compliance and robust data security across all operations.
The ideal candidate has deep expertise in consumer lending, a strong track record in bank partnership lending models, and proven success building and overseeing compliance and information security frameworks.
Tasks
Compliance:
Maintain and improve a comprehensive Compliance Management System (CMS) that aligns with applicable federal and state consumer lending laws and regulations (e.g., TILA, ECOA, FCRA, GLBA, UDAAP).
Manage and maintain strong working relationships with our bank partners, ensuring ongoing compliance with bank oversight requirements and participation in exams and audits.
Oversee licensing, regulatory reporting, and interactions with federal and state regulators.
Advise senior leadership on compliance risks, trends, and mitigation strategies.
Lead compliance training, monitoring, and issue management programs.
Information Security:
Own the design and execution of our enterprise information security program to protect customer and company data.
Ensure compliance with GLBA, SOC2, PCI DSS, and other applicable data security frameworks.
Develop and enforce policies, procedures, and controls for data privacy, cybersecurity, and incident response.
Oversee vendor due diligence and third-party riskmanagement as it relates to information security.
Report regularly to executive leadership and the Board on the state of information security.
Requirements
8+ years of progressive leadership experience in compliance and/or information security in the consumer lending industry.
Extensive knowledge of the bank partnership lending model and managing bank sponsor relationships.
Hands-on experience with multi-state lending operations and regulatory requirements.
Proven ability to lead, build, and scale compliance and security programs in a high-growth environment.
Strong communication skills; comfortable engaging with regulators, bank partners, auditors, and legal counsel.
Bachelor's degree required; JD, CIPP, CISSP, or other relevant certifications a plus.
Benefits
Highly flexible remote work environment.
Unlimited PTO.
Lean, AI-forward leadership team.
The chance to shape compliance and security strategy for a growing fintech innovator.
Competitive compensation and comprehensive benefits.
#J-18808-Ljbffr
$89k-136k yearly est. 7d ago
Looking for a job?
Let Zippia find it for you.
Chief People Officer
Stryker Corporation 4.7
Remote director, security risk management job
Step Up For Students is a state-approved, nonprofit scholarship funding organization that helps administer scholarships for Florida schoolchildren:
The donor-funded Florida Tax Credit Scholarship (FTC) Program and the Family Empowerment Scholarship for Educational Options (FES-EO) helps K-12 students attend private schools.
The Family Empowerment Scholarship for Students with Unique Abilities (FES-UA) empowers families to personalize the education of their students by directing funds to where they're needed most.
The Personalized Education Program (PEP), which is part of FTC, for students who are not enrolled full-time in private or public school.
New Worlds Scholarship Accounts supports K-5 public school students who need additional academic support in reading and/or math.
The Transportation Stipend to help K-8 students travel to a public school of their choice
Public education is rooted in the promise of equal educational opportunity, regardless of income, special needs, or home address.
Step Up For Students is a partner of public schools, and these scholarships strengthen public education by offering options to all families so they can choose the learning environment that best meets their children's individual needs.
The Opportunity:
The Chief People Officer (CPO) plays a critical role in supporting the transformation and growth of Step Up For Students. Reporting directly to the CEO, the CPO will provide strategic leadership across Human Resources, Workforce Planning, Coaching and Culture, and Internal Communications. This role requires a collaborative, forward-thinking leader who can align people strategies with the organization's mission and long-term goals. The CPO will work closely with executive leadership to shape a high-performing, inclusive culture that supports both employee well‑being and organizational success.
Responsibilities:
Build and operationalize a workforce planning model that aligns headcount, skills, and organizational structure to SUFS' growth strategy.
Establish an organization-wide performance and talent review rhythm, including leadership assessment, development planning, and succession visibility.
Redesign onboarding and reboarding to accelerate clarity, connection to mission, and understanding of the value chain.
Set the Learning and Development strategy and introduce programs that strengthen leadership capability and functional excellence at scale.
Elevate employee communications and modernize the intranet experience to improve clarity, transparency, and alignment across a fully remote workforce.
Lead and develop HR Operations, Talent Acquisition, L&D, Culture, and Employee Communications teams with clear goals, expectations, and operating standards.
Partner with C‑Suite to integrate people strategy into financial planning, systems design, and organizational priorities, including compensation philosophy and job architecture.
Advise the CEO and senior leadership team on culture, organizational health, and talent decisions while maintaining high standards for employee relations, compliance, and policy stewardship.
Ideal Candidate:
Minimum 15 years of leadership experience in talent management, including hiring, onboarding, upskilling, performance tracking, and contractor management.
SPHR (Senior Professional in Human Resources) certification required.
Proven track record of successfully scaling organizations through periods of rapid growth, with experience leading cultural and operational change.
Experience leading through complex, high‑pressure, and challenging organizational scenarios with confidence and effectiveness.
Demonstrated strategic leadership capabilities and strong policy development proficiency.
Minimum 7 years of experience working within nonprofit organizations, especially those serving diverse socio‑economic populations and individuals with a broad range of abilities.
Minimum 7 years of experience in fast‑paced, process‑critical sectors such as large enterprises, banking, payments, or retail is an asset, especially with experience supporting timely and efficient operations.
Clear alignment with the mission and values of Step Up For Students.
Location: United States Remote, East Coast working hours
DRiWaterstone is proud to lead this search on behalf of Step Up For Students.
#J-18808-Ljbffr
$99k-126k yearly est. 4d ago
Director, Business Process Architecture (West) - ServiceNow/IRM, Security, Risk & Resilience
Newrocket
Remote director, security risk management job
Director, Business Process Architecture; ServiceNow, IRM, SecOps
Remote - West Coast
Please note that this position will cover the Western US region, we will consider applicants within California, Oregon, Washington, Arizona, Nevada.
Why Us
NewRocket is a ServiceNow Global Elite Service Partner, delivering solutions that revolutionize the world of work. We are a leading global technology strategy, design, and enterprise operations partner to public and private sector clients. We work with some of the world's biggest brands, bridging the gap between what customers expect and what their technology can deliver. We are
“Raising the Bar”
in delivering technology's promise to create new kinds of experiences for our customers.
The Role
Our primary objective for this position is to find enthusiastic candidates who are strong hands-on leaders experienced with industry risk and security regulations, standard and frameworks and capable of leading the delivery of consulting, implementation and integration services of IRM (Integrated RiskManagement) and/or solutions to external customers, primarily on the ServiceNow platform.
This senior-level Business Process Architect (Risk and Security) will within our Service Delivery organization and will be responsible for leading, coaching and mentoring teams to capture customers' business processes and desired outcomes. The Business Process Architect will manage customer outcomes on complex level, enterprise projects.
Our Core Values: Excellence, Creativity, Integrity, Teamwork and Empathy
#ExCITE
At NewRocket, these values guide everything we do: they are the foundation of our culture and define how we
Go Beyond
for our clients.
What You Will Be Doing
Facilitate executive level workshops, translating business requirements into prioritized outcomes
Provide input to the Global Engineering Capability Leader on strategic decisions, budgets, hiring, and process changes
Conduct workshops and lead multiple implementations from a customer strategy standpoint
Lead customers in process definition and mapping
Define customer needs, determine strategies, develop plans/proposals, and make recommendations around customer's internal processes and functions for improved efficiency and effectiveness
Collaborate with Solution and/or Technical Architects to develop the overall project implementation plan
Collaborate with other Delivery teams on Special projects or Assignments (such as the Centers of Innovation and Industrialization).
Facilitate sessions on requirements definition, product architecture and workflow, develop mapping between current modes of operations and future modes of operation
Develop strategic plans for measurable implementation approach
Develop supporting tactical plans for strategic scope
Develop and present SOWs with supporting task breakdowns with the Program Managers and Account Managers
Develop and maintain delivery standards for ServiceNow solutions and the enabling technology from vendor partners
Develop and nurture relationships with technology vendors and services partners
Maintain an updated holistic view of changing architecture for solution environments, updated with each release of capability
Define customer needs, determine strategies, develop plans/proposals and make recommendations around customer's internal processes and functions for improved efficiency and effectiveness
Collaborate with Solution and/or Technical Architects to develop the overall project implementation plan
Collaborate with other Delivery teams on Special projects or Assignments (such as the Centers of Innovation and Industrialization).
Oversee the development of Business Process Architects. Manage career progression including hiring, performance reviews, mentoring, and coaching
Mentor customer and partner technical resources during implementation projects. As needed, conduct informal, ad-hoc training sessions.
Support the Company's vision and promote the Company's core operating values
What You Bring Along
Strong knowledge of business process architecture principles for cloud-based platforms
Experience working and managing team with industry risk and security regulations, standards, and frameworks such as NIST, ISO, CoBIT, ISF, PCI, SANS, FedRAMP, GDPR
Experience facilitating executive level workshops
ServiceNow Certified System Administrator (CSA), ServiceNow Certified Implementation Specialist (CIS), ITIL Foundations (nice to have and ability to obtain)
Experience designing business processes around software tools. Must be able to guide customers through the implementation both from process and technology perspective.
Consulting orientation, able to handle stressful customer situations diplomatically
Excellent written and oral communication skills. Must be able to communicate effectively with both business-oriented and technically oriented customers and partners. Also, must be able to effectively communicate customer requirements and issues to other team members.
Experience with Risk Frameworks/ServiceNow IRM
Experience with SecOps applications and frameworks
Strong problem-solving skills: ability to simplify complex situations
Comfortable working in a matrixed organization
Strong relationship management skills with all levels
Ability to lead a group of teams located across multiple time zones
Comfortable working with ambiguity and change
BSc in CS, IT or similar technical discipline or equivalent experience
Minimum of five (5) years of experience as a client-facing technical consultant customizing and deploying packaged software as a billable resource would be nice to have
Experience facilitating executive level workshops
We Take Care of Our People
NewRocket is committed to a diverse and inclusive workplace. We value and celebrate diversity, believing that every employee matters and should be respected and heard. We are proud to be an equal opportunity workplace and affirmative action employer, committed to providing employment opportunity regardless of sex, race, creed, color, gender, religion, marital status, domestic partner status, age, national origin, or ancestry, physical or mental disability, medical condition, sexual orientation, pregnancy, citizenship, military, or Veteran status. For individuals with disabilities who would like to request an accommodation, please contact ******************* *****************************************************************
$124k-179k yearly est. Auto-Apply 1d ago
Information Security - Governance, Risk, and Compliance (GRC) Director (Remote)
Procter & Gamble 4.8
Remote director, security risk management job
Information Technology at Procter & Gamble is where business, innovation and technology integrate to build a competitive advantage for P&G. Our mission is clear -- we deliver IT to help P&G win with the over 5 billion consumers we serve worldwide. Our IT professionals are diverse business leaders who apply IT expertise to deliver innovative, tech-focused business models and capabilities for our 65 iconic, trusted brands.
From Day 1, you'll be trusted to dive right in, take the lead, use your initiative, and build billion-dollar brands that help make everyday activities easier and make the world a better place! Our company offers purposeful work that will take your career places you never envisioned, in creative workspaces where innovation thrives and where your technical expertise is recognized and rewarded.
The Opportunity
P&G is seeking a Governance,Risk, and Compliance Director passionate about safeguarding data, enabling business through smart riskmanagement, and shaping the future of cybersecurity. The IT Governance,Risk, and Compliance (GRC) Organization at Procter & Gamble is responsible for risk identification, assessment, and remediation across the IT landscape, as well as driving automated governance and compliance breakthroughs. As the GRC expert, you'll play a critical role in maturing and maintaining the securityrisk and compliance posture of our organization. You will lead initiatives that align our security program with business goals, ensure regulatory and policy compliance, and creatively solve problems to managerisk for the company.
Responsibilities:
+ Governance:
+ Maintain and evolve the information security policy framework and controls aligned with industry best practices (e.g., NIST, ISO 27001, CIS).
+ Establish and track metrics to measure policy adherence and program maturity.
+ Drive internal alignment on security roles, responsibilities, and expectations.
+ RiskManagement:
+ Manage the enterprise riskmanagement process including risk identification, analysis, treatment planning, and reporting.
+ Conduct securityrisk assessments for internal systems, projects, vendors, and business processes.
+ Facilitate risk-based decision-making at all levels of the organization.
+ Compliance:
+ Ensure ongoing compliance with applicable regulations and frameworks (e.g., GDPR, HIPAA, CCPA, SOX).
+ Maintain a library of evidence and documentation to support audit and regulatory needs.
+ Monitor the effectiveness of IT controls and identify gaps in compliance. Analyze control measurements for negative trends and reoccurrence frequency. Collaborate with internal/external auditors on compliance audits, audit findings, and issue remediation
+ Awareness & Enablement:
+ Contribute to the continuous improvement of the risk and compliance mindset across P&G. Build IT risk awareness by providing support and training to others.
+ Collaborate cross-functionally with IT, Legal, Privacy, and Business Operations teams.
+ Stay up to date with how current events,security focus areas, and the regulatory environment may impact P&G's compliance processes
Estimated Percent of Time Spent on Work
25% - Risk identification, analysis, and assessment
40% - Plan and drive enterprise-wide initiatives to reduce risk and improve compliance across the organization
25% - Assess and improve the effectiveness of IT controls and compliance across the enterprise
10% - Collaboration with internal/external auditors, driving a risk-aware compliance mindset
Job Qualifications
Required:
+ Bachelor's degree in Computer Science, Computer Systems Engineering, Cybersecurity, Industrial Engineering, Business Management Information Systems, Software Development, or related field
+ Prior hands on experience working in a security-focused role, such as Information Security Analyst, SOC Analyst,Security Engineer, etc.
+ 8+ years of experience in Governance,Risk, and Compliance with a focus on Information Security
+ In-depth knowledge of major security frameworks (e.g., NIST CSF, ISO 27001, SOC 2).
+ Experience conducting risk assessments, audits, and control testing.
+ Strong understanding of regulatory compliance requirements (e.g., GDPR, HIPAA, SOX, PCI DSS).
+ Proven ability to write policies,manage documentation, and communicate clearly to both technical and non-technical stakeholders.
+ Ability to influence and build relationships with business unit stakeholders, external service providers, and architecture teams.
+ The ability to work independently, collaborate, and learn quickly.
+ English fluency (speak, write, and read)
Preferred Skills:
+ Certified in CISSP, ISACA CRISC, CGEIT, CISA, or similar
Pay Range: $160,000 - $220,000
Compensation for roles at P&G varies depending on a wide array of equal opportunity factors including but not limited to the specific office location, role, degree/credentials, relevant skills, and level of experience. At P&G compensation decisions are dependent on the facts and circumstances of each case. Total rewards at P&G include salary + bonus (if applicable) + benefits. Your recruiter may be able to share more about our total rewards offerings and the specific salary range for the relevant location(s) during the hiring process.
Our company is committed to providing equal opportunities in employment. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Immigration Sponsorship is not available for this role. For more information regarding who is eligible for hire at P&G along with other work authorization FAQ's, please click HERE (******************************************************* .
P&G participates in e-verify as required by law.
Qualified individuals will not be disadvantaged based on being unemployed.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Job Schedule
Full time
Job Number
R000136880
Job Segmentation
Experienced Professionals
Starting Pay / Salary Range
$160,000.00 - $220,000.00 / year
$160k-220k yearly 60d+ ago
Chief Impact Officer (Remote from New York)
Jobgether
Remote director, security risk management job
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Chief Impact Officer in New YorkThis role offers the opportunity to lead and expand a company's influence across the corporate social responsibility (CSR) and social impact ecosystem. You will drive strategic partnerships, build thought leadership, and elevate brand visibility while fostering meaningful social impact initiatives. The Chief Impact Officer will collaborate closely with internal teams to align partnership efforts with growth objectives and serve as a public-facing representative across conferences, media, and industry events. This position blends entrepreneurial energy with strategic insight, requiring a balance of relationship-building, creative engagement, and measurable impact execution. The role is remote and ideal for a purpose-driven leader passionate about CSR, ESG, and sustainable social impact.Accountabilities:
Develop and execute a partnership strategy targeting enterprise CSR leaders, Fortune 1000 companies, foundations, and ecosystem partners
Identify, cultivate, and convert high-impact strategic relationships that drive brand visibility, revenue, and long-term growth
Represent the company publicly at conferences, panels, keynote presentations, and media engagements
Collaborate with sales, marketing, and leadership teams to align partnership efforts with overall company objectives
Contribute to thought leadership through publications, podcasts, and other platforms to strengthen the company's reputation
Provide strategic insight on CSR, ESG, and social impact trends to inform product, partnership, and go-to-market strategies
Ensure the company's impact story is authentic, compelling, and resonates with enterprise stakeholders
Requirements:
10+ years of progressive experience in CSR, ESG, sustainability, or social impact leadership within enterprise organizations
Demonstrated success in business development, partnerships, or external-facing leadership roles in the impact space
Established credibility and recognized presence within the CSR and social impact ecosystem
Strong professional network of enterprise CSR leaders, partners, and influencers
Exceptional relationship-building, public speaking, storytelling, and presentation skills
Strategic thinker with creative approaches to audience engagement and partnership development
Comfortable representing the company at high-profile events and media opportunities
Entrepreneurial, self-directed, and energized by building initiatives that deliver measurable social impact
Experience working in fast-paced, startup or high-growth environments
Passion for mission-driven work and leveraging technology to create positive social change
Benefits:
Competitive salary with bonus potential ($180,000-$200,000 DOE)
Health, dental, and vision insurance
Unlimited PTO, holiday, and birthday off
Unlimited Social Impact Time Off (SITO)
Paid annual holiday break between Christmas and New Year's
Mission-aligned company events and volunteering opportunities
Remote, fully flexible work environment
Inclusive startup culture with accelerated career growth and professional development
Participation in culture-building initiatives such as Culture Club and team events
Why Apply Through Jobgether?We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.We appreciate your interest and wish you the best! Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$180k-200k yearly Auto-Apply 2d ago
Director, Information Security
Moov
Remote director, security risk management job
As Director of Information Security at Moov you will be responsible for the comprehensive enterprise-wide information security policy, strategy, architecture, operations, and capability enhancements of Moov and our platform. This position collaborates with the senior leadership team on security strategy, capability enhancements, and the development of enterprise security awareness and accountability.
You will:
Key Responsibilities:
Develop, implement, and maintain information security policies, practices, and operations.
Oversee incident evaluation and response, ensuring swift and effective handling.
Manage corporate information securityrisk and regulatory architecture and status reporting efforts.
Create and roll out audit and compliance programs.
Implement technical compliance solutions and support for security awareness and training programs to ensure compliance.
Collaborate with cross-functional teams to maintain a high standard of cybersecurity posture and response.
Build and operate a security and compliance program for money movement regulations, aligning with information security policies and standards.
Foster a security-conscious culture and ensure the platform's security.
Leadership and Strategy:
Execute a plan to achieve and maintain industry compliance for SOC 1, SOC 2, PCI, NACHA, FedRAMP, and other compliance programs.
Research, educate, and recommend technical solutions to support compliance efforts.
Develop, implement, and manage a comprehensive organization-wide information security and riskmanagement program.
Deliver education on compliance with security policies.
Conduct securityrisk assessments and manageriskmanagement processes.
Ensure compliance with relevant laws, regulations, and policies in Moov's information security practices.
Lead the information security team that is protecting Moov.
Recruit, motivate, mentor, and lead the best security talent.
You have:
Bachelor's degree in Computer Science, Engineering, Information Systems, Cyber Security, Business, or a related academic discipline.
7-10+ years of relevant experience or an equivalent combination of education and experience.
Strong knowledge of regulatory requirements and information securitymanagement frameworks, including SOC 1, SOC 2, ISO/IEC 27001, ITIL, SOX, PCI, FedRamp, and NIST.
Ability to work in a fast-paced environment.
Knowledge of payment systems, fintech, or online banking.
Certification in CISSP, CISM, CRISC, CISA, CFE, or similar is highly recommended.
Experience with banking regulations.
Knowledge of OSS tools and active participation in OSS community.
Experience working with remote-only teams.
Experience with mid-size organizations and startups.
Our company:
Moov is a 100% remote company with people from more than 26 states. We're backed by a16z and other respected investors. We won Visa's global Everywhere Initiative and our community of builders grows larger every day. We're committed to building a team that represents a variety of backgrounds, perspectives, and skills and we embrace diversity, creativity, and equal opportunity.
Our people:
Our customers come from all walks of life and so do we. We hire great people from a variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger.
We have mountain bikers, skiers/boarders, runners, video gamers, musicians, movie buffs, weight lifters, and about every other type of person in between. We enjoy solving problems and tackling challenges with creativity. If we don't know the answer, we revel in the hunt to find it. We like helping people and choose to give first. We're patient, open, and honest. If you share our values and enthusiasm for making the complex simple and delightful, you'll find a home at Moov.
Benefits include:
Competitive base salary + employee stock options w/early exercise opportunity
100% remote. We make remote-work work.
We match what you contribute to your 401(k) up to 5% of your salary
Generous parental leave
Medical Ins: Health Savings Account (HSA) option w/employer contribution
EAP and other wellness resources
Unlimited PTO+ generous paid holiday schedule
Professional Development Budget, we have a culture that encourages and promotes professional growth and development
Home office stipend
Culture of people helping people who give first, celebrate wins together and embrace autonomy, transparency, and trust
The opportunity to join an experienced and ambitious team passionate about solving customers' needs and who love what they do
Partner with a community of 3000+ developers around the world, helping them focus on possibilities vs payments
Employee referral incentive
Salary range: $220k - $232k based on experience, geography, and other key factors
Advice:
If you're nervous about not meeting every qualification above, apply anyway. Moov is all about pushing boundaries-ours, yours, and the industry's-so we look for curious people willing to experiment and grow. While we can't teach curiosity and compassion, we can teach some technical skills. Of course, we can't guarantee anything, but as Michael Scott says,“You miss 100% of the shots you don't take!” (Or was that Wayne Gretzsky?)
One more thing:
Don't go iron your clothes for your interview (do people still own irons?). We're all pretty casual here, so you can wear whatever you are most comfortable in.
Okay-last thing:
When you meet with us, have some concrete, tangible examples of when you've added value, improved something, created something, or done some fantastic, customer-centric work. We also want to learn about you as a person. If you want to know what it's like working at Moov, check out stories from our employees.
PS:
Share our job roles with others! Wouldn't it be nice to make new friends and bring over old friends? We think so.
Moov Financial is a participant of E-Verify. All potential employees and employees are bound by the guidelines in the MOU and the rules and responsibilities. For more or up to date information on E-verify, go to ********************** and click on E-verify.
$220k-232k yearly 41d ago
Chief Information Security Officer (CISO)
Optery, Inc.
Remote director, security risk management job
The Role
Optery is seeking a hands-on, entrepreneurial CISO to lead and extend our security program end-to-end. This is a hands-on builder role for someone who not only sets the strategy, but also executes the plan,manages controls, reviews data, and interacts directly with employees, customers and auditors. You will partner closely with company leadership to advance our security, privacy, compliance, and controls programs.
Optery's security program is already well-established, having successfully completed its SOC 2 security audits every year since 2022 through to today.
You will be responsible for policies,risk,security operations, third-party/vendor security, application/product security, incident response, and supporting customer/security questionnaires. You will also be the internal champion for securing the organization and its people, customers, systems, and processes.
Key Responsibilities
Own Optery's information security strategy, roadmap, and policies, aligned to our industry-leading security and privacy products
Lead and extend Optery's security program mapped to common frameworks (SOC 2, ISO 27001, CIS, NIST), appropriate for a high-growth, remote-first company
Partner with engineering to embed secure SDLC practices: threat modeling, code scanning, secrets management, access controls, and secure cloud configuration
Design and run an incident response program, including playbooks for data handling, data broker interactions, ransomware/social engineering scenarios, and customer notifications
Oversee identity and access management across core systems (SaaS, cloud, data, admin apps) following least-privilege principles
Lead vendor and third-party security reviews, especially for data- or privacy-impacting services
Partner with GTM, finance, ops, and sales to complete security questionnaires, DPAs, and customer diligence to unblock deals
Work with product/legal to ensure our data flows and retention/erasure practices align with CCPA, GDPR, and other consumer privacy laws we help our customers exercise
Define, track, and report security KPIs/KRIs to leadership and the board
Train and evangelize security practices across a distributed team so security is part of onboarding and day-to-day work
Qualifications
8+ years in information security, with increasing ownership across GRC,security engineering, and/or product/app security
Experience building or maturing a security program at a SaaS, data, cybersecurity, or privacy-focused company
Practical experience with SOC 2 and/or ISO 27001 (authoring policies, gathering evidence, working with auditors, driving remediation)
Strong understanding of cloud security (preferably AWS): networking, IAM, secret management, logging/monitoring
Comfortable meeting with customers, prospects, and partners to explain Optery's security posture and win trust
Excellent written and verbal communication skills; able to write policies people can actually follow
Startup-friendly mindset: willing to prioritize, right-size controls, and make progress quickly
Nice to have
Experience at a company that handles PII
Experience securing distributed/remote teams and mixed contractor/employee environments
Background in data protection technologies (DLP, EDR, MDM, SSO, CASB) and how to roll them out in stages
Experience supporting enterprise sales cycles by answering security questionnaires
Recognized thought leader in security, fluent public speaker, and active participant in public-facing security communities and conferences
Location
Optery is a fully remote global team. This role is based in the United States and requires working U.S. business hours (Eastern, Central, Mountain, or Pacific).
Compensation and Benefits
Base Salary: $200,000 - $220,000
Competitive Equity
Health, dental, and vision insurance
401(k) with employer match
Paid time off
Home office stipend
Equal Opportunity
Optery values diversity and is an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, sexual orientation, marital status, disability, genetic information, age, parental status, military service, or any other non-merit factor.
$200k-220k yearly Auto-Apply 60d+ ago
Vice President, Chief Information Security Officer
Kldiscovery 2.7
Remote director, security risk management job
Introduction
KLDiscovery offers a fantastic opportunity for you to use your talents to make a meaningful impact in a fast-paced, growing technology and services organization! KLDiscovery is a global leader in eDiscovery, compliance, and data management solutions, empowering law firms, corporations, and government agencies to tackle their most complex legal and regulatory challenges.
We are looking for a Vice President, Chief Information Security Officer to join our team who is passionate about our mission and brings initiative, authenticity, and collaborative spirit to everything they do. If you're fueled by innovation and committed to delivering exceptional results, KLDiscovery is the perfect place to grow your career.
Work Status: Remote, work from home opportunity.
Is This Role For You?
The Vice President, Chief Information Security Officer provides strategic and operational direction to the organization to ensure the attainment of business objectives. Ensure that all revenue and profit goals are met. Revise objectives and policies in response to changes in internal and external conditions. Coordinate operations between divisions and departments. Establish responsibilities and procedures for attaining objectives. Establish strategies and objectives, coordinating with all organizational goals and standards. Responsible for financial performance and attainment of profit goals.
A Day in The Life
Development of policies and standards aimed at minimizing costs related to acquisition, implementation, and operation of IT systems across business units. This includes the management of vendor relationships and ensuring this is leveraged across business units.
Manage and develop key performance indicators to assure customer satisfaction and operational performance; manage problem escalation and communication with senior management and customers where appropriate.
Ensure software and hardware license compliance through documented, established process.
Coordinate gap analysis to identify training needs for department. Define requirements and ensure compliance for next level of advancement. Direct, coach, and mentor management staff in performance management skills. Build a department that optimizes senior talent, while promoting the growth of junior talent. Performance Management including collecting data on regular basis, organize and create annual reviews, provide regular coaching of individuals. Manage the timeliness of reviews for the department.
Provide daily operational direction and oversight in meeting committed service level agreements (SLAs). Maintain and improve operational policies and procedures.
Provide quarterly updates to the BoD and Senior Level Management.
Travel as necessary for internal needs as well as client requested audits.
What You Will Bring To The Role
Bachelor's degree in technology-related field or equivalent work experience.
15+ years' experience; Ten to Thirteen years management. This experience should include:
Management of production data centers and external customer SLA support
Demonstrated success in providing best practice process and support implementation
Proven track record and managing teams of 20 or more people
Demonstrated knowledge of global telecommunications
Demonstrated quality control implementation experience
Demonstrated success in change management
Extensive experience with the build out, growth,management, and support of high-volume Data Centers
Fiscal responsibility, including creating and managing to a budget
Demonstrated ability to create a vision for IT Operations focused on IT Service Management and ITIL
Demonstrated success in defining, tracking, and communicating internal and business focused metrics
Demonstrated success in defining and implementing a global IT shared services model
Coaching, developing, and mentoring direct reports and ensure processes are in place to develop the future leaders of the IT organization
Skills:
Must be able to synthesize large amounts of data/concepts effectively into understandable terms both written and oral
Must be capable of communicating with Sr. Level Management both verbally and in written communications
Must be adaptive with varied skill sets that can fit into a variety of project situations
Must be quick learning and possess a high comfort-level with non-repetitive projects and new challenges
Must be quick thinking: ability to listen, grasp concepts and engage during interactive discussions
Should be able to work with limited supervision
Should have strong organizational and time management skills
Should be well rounded with an exceptional work ethic
Should be results-oriented with an exceptional ability to be independent, motivated, and proactive
Should be customer-focused and possess resilient interpersonal talents and poise to manage change
Excellent communication (oral, listening, and writing) skills
Strong problem solving, time management and organizational skills
Understanding of data center commercial market space
General knowledge of applications management processes and methodologies
Expert knowledge of system management and process methodologies and practices
Strong understanding with practical application of WAN/LAN and internet connectivity and concepts.
Driving Career Growth, Benefit Excellence: The KLD Advantage
At KLD we invest in employees and their families by placing their wellbeing first. We offer competitive total compensation that includes base pay, bonus potential, inclusive benefits, wellness programs, and perks. We use market and industry data to inform pay decisions while considering geography and labor markets, individual experience, and business needs. Individual compensation will vary, although a reasonable estimate of the current annualized base pay range for this position is $200,000 to $250,000.
We offer a high-performance laptop computer, options for wireless headset or external speaker, up to two 24” 2K monitors, and a mobile phone for business use.
Generous paid time off, offering various time off options to help employees maintain a work-life balance, such as vacation, paid sick leave, parental leave, paid jury leave, and more!
Comprehensive health, dental, vision and supplemental benefits packages that include life insurance, short- and long-term disability, to promote the health of our employees.
Remote-friendly, flexible working culture, where you can apply to work from several global locations.
A focus on continuous professional development through various training and education reimbursement programs.
A diverse and inclusive workplace where we all learn, grow, and achieve the greatest heights…together.
A surrounding team of mission-driven individuals who genuinely love what they do.
Equity incentives and company bonus programs; that way, we all share in the success of KLDiscovery.
Free, fun, interactive and incentivized global wellness program that promotes the wellbeing of our employees plus offers a wide range of perks and discounts!
Free Employee Assistance Program (EAP) because we all could use a little help and support every now and then.
401(k) with employer match, to help our employees achieve financial success.
KLD supports the communities where our employees live and offers a paid community service day for employees to volunteer with what resonates with them.
To keep our furry, 4-legged family members healthy, KLD employees can opt for Pet Insurance.
Who We Are
KLDiscovery provides technology-enabled services and software to help law firms, corporations, and government agencies solve complex data challenges. With offices in 26 locations across 17 countries, KLDiscovery is a global leader in delivering best-in-class data management, information governance, and eDiscovery solutions to support the litigation, regulatory compliance, and internal investigation needs of clients. Our Nebula Ecosystem provides powerful end-to-end eDiscovery and enterprise-grade information governance. Through its global Ontrack data recovery business, KLDiscovery delivers world-class data recovery, disaster recovery, email extraction and restoration, data destruction, and tape management.
We Provide Equal Employment Opportunity
At KLDiscovery we believe that inclusion and diversity make us stronger. We are committed to fostering an inclusive environment for all employees that enhances wellbeing and belonging. We welcome and celebrate individuals of all backgrounds, experiences, and perspectives.
We do not discriminate on the basis of race, color, religion, gender, pregnancy, gender identity, sexual orientation, national origin, age, disability, genetic information, veteran status, or any other protected status. We are happy to support you with any accommodation request at any stage in our hiring process.
Texas PI# A04094801
#LI-TF1
#LI-Remote
$200k-250k yearly Auto-Apply 46d ago
Chief Information Security Officer (CISO)
Enterprise Mangement Solutions Inc.
Remote director, security risk management job
Salary: $55.00 per hour to $90.00 per hour,
ABOUT ENTERPRISE MANAGEMENT: Enterprise Management Solutions, LLC. (Enterprise) is a full-spectrum administrative and operational management firm headquartered in Baltimore, Maryland. We provide contracted infrastructure support to independently governed organizations in sectors such as behavioral health, primary care, supportive housing, food service, commercial real estate, and nonprofit development.
Enterprise does not own or govern the organizations we serve. Instead, we operate as a trusted administrative services provider under formal contractual agreements, offering high-level back-office services that allow our clients to focus on mission execution and program delivery.
Our scope of service includes:
Comprehensive fiscal systems and multi-entity accounting
Human resource infrastructure and staff onboarding
Legal compliance and audit readiness
Technology integration and IT systems governance
Organizational growth planning and fiscal sustainability analysis
Federal and state grant compliance, budget monitoring, and reporting
Financial and operational performance dashboards
CEO- and executive-level strategy support
Our goal is to relieve mission-driven companies of administrative burden by overseeing financial and operational systems that allow leadership teams to focus on quality care and innovation.
DISCLOSURES:
The specific statements shown in each section of this are not intended to be all-inclusive. They represent typical elements and criteria considered necessary to perform the job successfully. The jobs responsibilities/tasks may be modified and/or expanded over time. Company will inform the personnel member when changes in the respective job description are made.
COMPANY WEBSITE:*********************************
COMPANY PHONE NUMBER: **************
HUMAN RESOURCES PHONE NUMBER: ************** ext. 10
POSITION TITLE: Chief Information Security Officer (CISO)
ALTERNATE TITLE(S): Chief Cybersecurity Officer (CCSO), Chief Security Officer (CSO Cybersecurity), Senior Cybersecurity Executive
COMPANY: Enterprise Management Solutions, LLC. (in support of all customer companies under contract)
DIVISION: Technology & Information Security
DEPARTMENT: n/a
UNIT: n/a
BENEFITS PACKAGE:
In addition to hourly wages, eligible employees may receive a comprehensive benefits package that includes:
Paid Time Off (PTO)
Family and Medical Leave
Health, Medical, and Dental Insurance Reimbursement or health insurance coverage, as available
Supplemental Health and Disability Insurance Options
Retirement Savings Plan
Professional Development Support and Continuing Education Opportunities
WORK SCHEDULE: Two days per week: Tuesday and Thursday, 8:00 AM 5:00 PM (daily lunch break from 12:00 PM 1:00 PM)
ACCOUNTABLE TO: Chief Executive Officer (COO, in absence of CEO)
ACCOUNTABLE FOR: Oversight of cybersecurity strategy, data protection, regulatory compliance, and the supervision of all information security systems, personnel, and vendors across all affiliated companies. This role is responsible for ensuring uninterrupted cybersecurity operations, incident response readiness, and cross-training protocols to protect critical client and company assets.
CLASSIFICATION: W-2 employee; part-time hourly
COMPENSATION RANGE: Ranges between $55.00 per hour to $90.00 per hour, and is commensurate with experience, expertise, verified credentials, and available company budget.
ANTICIPATED TRAVEL:
Up to 10% of the time (interoffice and site-based meetings)
WORKPLACE POLICY: This is a 100% in-office role at Baltimore HQ, two days per week. Remote work or telework is prohibited unless explicitly pre-approved in writing by the CEO.
SUMMARY OF POSITION RESPONSIBILITIES:
The Chief Information Security Officer (CISO) serves as the organizations highest-ranking cybersecurity executive, responsible for designing, implementing, and maintaining a resilient information security program that safeguards company and client systems against internal and external threats.
The CISO oversees all areas of cybersecurity including policy development,riskmanagement, threat detection, incident response, and compliance with federal and state regulations (HIPAA, HITECH, GDPR, SOC2, PCI-DSS, NIST, and others as applicable).
This role also ensures that Enterprise delivers all contracted Information Security, IT Governance, and Cybersecurity RiskManagement services to affiliated entities, protecting sensitive healthcare, housing, financial, and client records.
The CISO plays a critical role in aligning technology security with enterprise goals, while proactively mitigating risks across all operational areas.
SCHEDULED DUTIES AND RESPONSIBILITIES:
Cybersecurity Strategy & Leadership
Develop and execute a company-wide cybersecurity program aligned with business and client requirements.
Translate the CEOs strategic vision into measurable,risk-based security initiatives.
Conduct long-term security planning, including disaster recovery and business continuity.
RiskManagement & Regulatory Compliance
Ensure strict compliance with HIPAA, HITECH, GDPR, SOC2, PCI-DSS, NIST, and state regulations.
Perform enterprise-wide risk assessments and vulnerability scans.
Maintain and update incident response, breach notification, and audit readiness protocols.
Threat Monitoring & Incident Response
Direct the Security Operations Center (SOC) or equivalent vendor-managed services.
Oversee intrusion detection, SIEM monitoring, log review, and malware defense.
Lead incident response, forensic investigation, and breach communication with executive leadership.
Identity, Access, and Data SecurityManage identity and access management systems, including MFA and privileged access controls.
Oversee endpoint, mobile device, and server security configurations.
Ensure encryption,secure backups, and data loss prevention across all platforms.
Vendor & Third-Party Oversight
Review vendor contracts,security certifications, and compliance attestations.
Establish standards for secure integration with external technology providers.
Lead vendor riskmanagement and third-party security audits.
Internal Policies & Training
Develop internal cybersecurity policies, acceptable use guidelines, and SOPs.
Deliver quarterly staff training on phishing, ransomware, and cybersecurity awareness.
Conduct simulated incident drills and security tabletop exercises.
Collaboration & Executive Support
Advise the CEO and COO on cybersecurity risks and budget needs.
Partner with CFO, HR, and Operations Managers to ensure cross-department compliance.
Provide security briefings to the Board of Directors and client executives.
UNSCHEDULED DUTIES AND RESPONSIBILITIES:
Respond to emergent cybersecurity threats or system alerts.
Support investigations of insider threats, fraud, or data misuse.
Participate in interdepartmental workgroups to integrate new systems securely.
Maintain active knowledge of evolving threats, ransomware tactics, and industry best practices.
Lead recovery efforts in the event of a cyber-attack or natural disaster affecting IT infrastructure.
PHYSICAL DEMANDS:
Prolonged periods sitting at a desk and working on a computer.
Occasional lifting up to 25 pounds.
WORKING CONDITIONS:
Cross-functional collaboration with executives and technical staff.
100% in-office role at Baltimore HQ (two days per week, no remote or hybrid unless CEO approved).
Travel up to 10% may be required for audits, client meetings, or incident response.
Must be available during scheduled hours with flexibility for emergent needs.
COMPETENCIES AND SKILLS:
Visionary leadership with deep technical and cybersecurity acumen.
Expertise in riskmanagement, incident response, and compliance frameworks.
Skilled in cloud security (AWS, Azure, Google Cloud), SaaS protection, and on-premises systems.
Strong command of cybersecurity frameworks: NIST CSF, ISO 27001, COBIT.
Familiarity with healthcare IT and HIPAA/HITECH security requirements.
Effective communicator able to brief executives and train staff.
Demonstrated ability to lead multidisciplinary teams and managesecurity vendors.
LEVEL OF EDUCATION / TRAINING / QUALIFICATIONS:
Masters degree in Cybersecurity, Computer Science, or Information Technology (required).
Certified Information Systems Security Professional (CISSP) in good standing (required).
Additional certifications (CISM, CISA, CCSP, CRISC) strongly preferred.
Minimum 810 years of progressive cybersecurity leadership experience, with at least 5 years in a senior or CISO role.
Experience overseeing security in healthcare, housing, financial, or government environments strongly preferred.
Demonstrated track record of regulatory compliance, successful incident response, and enterprise-level security program development.
$55-90 hourly 8d ago
Chief Information Security Officer-Remote
Pathgroup 4.4
Remote director, security risk management job
The Chief of Information Security and Security Officer (CISO) is responsible for providing leadership and operational excellence for developing and supporting security initiatives and policies along with developing strategies to protect sensitive data,managingsecurityrisks, investigating and remediating security incidents and promoting security awareness and compliance across the organization. The CISO acts as the primary contact for security-related matters and serves as the organization's HIPAA Security Officer.
Job Responsibilities:
Leadership & Strategy:
Develop and manage a comprehensive information security and riskmanagement program aligned with business objectives and regulatory requirements.
Serve as the organization's HIPAA Security Officer and lead all activities related to ensuring the security of protected health information (PHI).
Collaborate with executive leadership, legal, compliance, and IT teams to integrate security into all aspects of operations and technology.
Serves in a leadership capacity in the execution of the organizations Cyber Incident Response plan, coordinating action, communication, and mitigation efforts in conjunction with Executive Leadership.
Keep current with emerging security trends, conduct research and make recommendations for improvements to current processes. Advise, counsel and educate executive and management teams on technology's relative importance and financial impact.
Governance,Risk & Compliance:
Establish, implement, maintain, and audit information security policies, procedures, and controls in accordance with PathGroup's Compliance Program, federal laws, and industry-standard best practices.
Conduct regular risk assessments and security audits to identify vulnerabilities and recommend mitigations.
Oversee security incident response planning and investigation of security breaches, including documentation and reporting.
Work closely with the Chief Information Officer and Privacy Officer to develop and administer security awareness training for all employees and contractors.
Security Operations:
Lead strategic security and incident response planning to achieve business goals by prioritizing defense initiatives through the deployment, monitoring, maintenance, development, and upgrading of current and future security tools, technologies, and systems.
Ensure regular risk assessments, penetration testing, and remediation efforts are conducted on a regular and timely basis.
Monitor and analyze network and system activity for anomalies and trends to prevent and remediate security incidents in a timely manner.
Work with IT to implement secure system configurations and DevSecOps practices.
Third-Party, Vendor and Client Management:
Evaluate third-party vendors and partners for security and compliance posture.
Complete all required security assessments from existing or prospective clients.
Participate in contract negotiations to ensure appropriate security requirements and data protection terms are in place.
Management:
Manage the employee hiring process including developing and updating s, developing performance expectations, identifying essential functions and knowledge, skills and abilities required for applicable positions, and selecting and assigning staff.
Supervise and manage employee and team performance by coaching, counseling, motivating, and evaluating employees on a continual basis. Implement disciplinary action as needed and in consultation with Human Resources.
Coordinate team projects, schedule work assignments, set priorities, and direct the work of subordinate employees.
Ensure effective employee relations by sustaining an ethical, non-discriminatory and safe work environment and establishing effective communication lines and methods. Identify and solve employee problems,manage conflict, and respond to grievances as needed.
Perform all job responsibilities in alignment with the industry's best security practices and regulatory guidelines to protect confidentiality, integrity, and availability of protected health information and other sensitive company data.
Must be familiar with and abide by the Corporate Compliance Program and all Corporate policies, including the Privacy and Security policies.
NON-ESSENTIAL FUNCTIONS:
Nothing in the job description restricts management's right to assign or reassign duties and responsibilities to this job at any time.
Other duties as assigned
$102k-141k yearly est. 3h ago
Chief Information Security Officer
Creditly Corp
Remote director, security risk management job
Company Credit Genie is a mobile-first financial wellness platform designed to help individuals take control of their financial future. We leverage artificial intelligence to provide personalized insights and are building a financial ecosystem by offering tools and services that provide instant access to cash, and building credit. Our goal is to empower every customer to achieve long-term financial stability.
Founded in 2019 by Ed Harycki, former Swift Capital Founder (acquired by PayPal in 2017). Backed by Khosla Ventures and led by industry pioneers from companies such as; PayPal, Square, and Cash App, we are well positioned to build the future of inclusive finance through cutting-edge technology and customer-centric solutions.
Overview
As Chief Information Security Officer (CISO), you will be the primary leader responsible for developing and implementing our information security strategy. You'll protect our systems, data, and customer trust by overseeing cybersecurity operations, ensuring compliance with regulatory standards, and mitigating risks in a dynamic fintech environment. This role demands a visionary leader with deep expertise in cybersecurity, preferably in fintech, and a passion for securing innovative financial products.
What you'll do
* Develop and execute a comprehensive cybersecurity strategy to protect our platform, customer data, and intellectual property.
* Ensure compliance with fintech and data privacy regulations, including GDPR, CCPA, PCI-DSS, and other relevant standards.
* Oversee the design, implementation, and monitoring of security controls for payment processing, lending platforms, and other financial products.
* Lead incident response, including managing and mitigating cybersecurity breaches, vulnerabilities, and regulatory inquiries.
* Collaborate with product, engineering, and compliance teams to embed security-by-design principles into new features and services.
* Build and maintain a robust security framework for credit and lending operations, ensuring protection against fraud and data breaches.
* Conduct risk assessments and implement mitigation strategies for emerging threats in the fintech landscape.
* Manage relationships with external security vendors, auditors, and regulatory bodies.
* Develop and lead a high-performing security team, fostering a culture of proactive riskmanagement.
* Support international expansion by aligning security practices with global data protection and financial regulations.
* Stay ahead of cybersecurity trends, advising the executive team on evolving threats and technologies.
Who you are
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
* 10+ years of progressive experience in cybersecurity, with at least 5 years in a senior leadership role at a fintech or high-growth tech company.
* Deep expertise in securing credit and lending platforms, preferably in the fintech industry, with knowledge of fraud prevention,secure payment processing, and regulatory compliance (e.g., Truth in Lending Act, Fair Credit Reporting Act).
* Proven track record in designing and implementing security architectures for cloud-based systems, APIs, and financial applications.
* Strong understanding of data privacy, encryption, and consumer protection laws in a fintech context.
* Experience leading incident response, penetration testing, and vulnerability management programs.
* Exceptional communication skills, with the ability to explain complex security concepts to non-technical stakeholders, from engineers to board members.
* Strategic mindset with the ability to balance security rigor with business innovation in a fast-paced startup environment.
Nice to have
* Experience at a fintech company with exposure to payment processing, lending, or brokerage platforms.
* Familiarity with SOC 2, ISO 27001, or other cybersecurity certifications and frameworks.
* Knowledge of international cybersecurity regulations to support global operations.
* Experience building and scaling security teams in high-growth environments.
Benefits and Perks
Our goal is to provide a comprehensive offering of benefits and perks that promote better financial, mental, and physical wellness.
We believe working alongside each other in person is the best way to build a great product and foster a strong company culture. Our expectation is that employees are in the office five days a week, allowing for optimal collaboration, inclusivity, and productivity. At the same time, we understand that life happens and recognize the importance of flexibility. We are committed to supporting our employees when circumstances arise that require remote work or adjusted schedules. Our goal is to ensure everyone can effectively balance personal and professional responsibilities while maintaining our collaborative and productive environment.
Here are some highlights of our benefits and perks offerings, feel free to ask your recruiting partner for more details on our comprehensive offering for employees.
* 100% company-paid medical, dental, and vision coverage for you and your dependents on your first day of employment.
* Monthly fitness reimbursement up to $100 or a full membership to LifeTime Fitness
* 401(k) with a 3.5% match and immediate vesting
* Meal program for breakfast, lunch, and dinner
* Life and accidental insurance
* Flexible PTO
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one part of your total compensation and rewards package at Credit Genie. You may also be eligible to participate in the bonus and equity programs. You will also have access to comprehensive medical, vision, and dental coverage, a 401(k) retirement plan with company match, short & long term disability insurance, life insurance, and flexible PTO along with many other benefits and perks.
Credit Genie is a proud Equal Opportunity Employer where we welcome and celebrate differences. We are committed to providing a workspace that is safe and inclusive, where everyone feels supported, connected, and inspired to do their best work. If you require any accommodations to participate in our recruitment process, please inform us of your needs when we contact you to schedule an interview.
$108k-162k yearly est. 60d+ ago
Chief Information Security Officer
Credit Genie
Remote director, security risk management job
Company
Credit Genie is a mobile-first financial wellness platform designed to help individuals take control of their financial future. We leverage artificial intelligence to provide personalized insights and are building a financial ecosystem by offering tools and services that provide instant access to cash, and building credit. Our goal is to empower every customer to achieve long-term financial stability.
Founded in 2019 by Ed Harycki, former Swift Capital Founder (acquired by PayPal in 2017). Backed by Khosla Ventures and led by industry pioneers from companies such as; PayPal, Square, and Cash App, we are well positioned to build the future of inclusive finance through cutting-edge technology and customer-centric solutions.
Overview
As Chief Information Security Officer (CISO), you will be the primary leader responsible for developing and implementing our information security strategy. You'll protect our systems, data, and customer trust by overseeing cybersecurity operations, ensuring compliance with regulatory standards, and mitigating risks in a dynamic fintech environment. This role demands a visionary leader with deep expertise in cybersecurity, preferably in fintech, and a passion for securing innovative financial products.
What you'll do
Develop and execute a comprehensive cybersecurity strategy to protect our platform, customer data, and intellectual property.
Ensure compliance with fintech and data privacy regulations, including GDPR, CCPA, PCI-DSS, and other relevant standards.
Oversee the design, implementation, and monitoring of security controls for payment processing, lending platforms, and other financial products.
Lead incident response, including managing and mitigating cybersecurity breaches, vulnerabilities, and regulatory inquiries.
Collaborate with product, engineering, and compliance teams to embed security-by-design principles into new features and services.
Build and maintain a robust security framework for credit and lending operations, ensuring protection against fraud and data breaches.
Conduct risk assessments and implement mitigation strategies for emerging threats in the fintech landscape.
Manage relationships with external security vendors, auditors, and regulatory bodies.
Develop and lead a high-performing security team, fostering a culture of proactive riskmanagement.
Support international expansion by aligning security practices with global data protection and financial regulations.
Stay ahead of cybersecurity trends, advising the executive team on evolving threats and technologies.
Who you are
Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
10+ years of progressive experience in cybersecurity, with at least 5 years in a senior leadership role at a fintech or high-growth tech company.
Deep expertise in securing credit and lending platforms, preferably in the fintech industry, with knowledge of fraud prevention,secure payment processing, and regulatory compliance (e.g., Truth in Lending Act, Fair Credit Reporting Act).
Proven track record in designing and implementing security architectures for cloud-based systems, APIs, and financial applications.
Strong understanding of data privacy, encryption, and consumer protection laws in a fintech context.
Experience leading incident response, penetration testing, and vulnerability management programs.
Exceptional communication skills, with the ability to explain complex security concepts to non-technical stakeholders, from engineers to board members.
Strategic mindset with the ability to balance security rigor with business innovation in a fast-paced startup environment.
Nice to have
Experience at a fintech company with exposure to payment processing, lending, or brokerage platforms.
Familiarity with SOC 2, ISO 27001, or other cybersecurity certifications and frameworks.
Knowledge of international cybersecurity regulations to support global operations.
Experience building and scaling security teams in high-growth environments.
Benefits and Perks
Our goal is to provide a comprehensive offering of benefits and perks that promote better financial, mental, and physical wellness.
We believe working alongside each other in person is the best way to build a great product and foster a strong company culture. Our expectation is that employees are in the office five days a week, allowing for optimal collaboration, inclusivity, and productivity. At the same time, we understand that life happens and recognize the importance of flexibility. We are committed to supporting our employees when circumstances arise that require remote work or adjusted schedules. Our goal is to ensure everyone can effectively balance personal and professional responsibilities while maintaining our collaborative and productive environment.
Here are some highlights of our benefits and perks offerings, feel free to ask your recruiting partner for more details on our comprehensive offering for employees.
100% company-paid medical, dental, and vision coverage for you and your dependents on your first day of employment.
Monthly fitness reimbursement up to $100 or a full membership to LifeTime Fitness
401(k) with a 3.5% match and immediate vesting
Meal program for breakfast, lunch, and dinner
Life and accidental insurance
Flexible PTO
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one part of your total compensation and rewards package at Credit Genie. You may also be eligible to participate in the bonus and equity programs. You will also have access to comprehensive medical, vision, and dental coverage, a 401(k) retirement plan with company match, short & long term disability insurance, life insurance, and flexible PTO along with many other benefits and perks.
Credit Genie is a proud Equal Opportunity Employer where we welcome and celebrate differences. We are committed to providing a workspace that is safe and inclusive, where everyone feels supported, connected, and inspired to do their best work. If you require any accommodations to participate in our recruitment process, please inform us of your needs when we contact you to schedule an interview.
$108k-162k yearly est. Auto-Apply 41d ago
Director of Information Security
Rxvantage
Remote director, security risk management job
We're seeking an experienced Director of Information Security to join our dynamic team and help drive our growth. In this role, your job will be to coordinate people and processes to instill a “security first” mindset for information management, systems development, acceptable use of these systems, staff awareness, and oversight of our vendors and partners.
This security professional will lead the management of risk and compliance of intellectual property, including day-to-day network and cyber tool monitoring, oversight, and ongoing security testing. The individual performing this role will enforce policies and procedures that ensure compliance with state, federal, and industry standards and requirements, ensuring our customers' and company's data are protected.
As the Director of Information Security, you will implement a security-readiness plan and provide guidance on how to quickly and effectively respond to any and all security incidents. In addition, this role will be instrumental in implementing controls and monitoring capabilities that provide visibility into the organization's security posture.
At RxVantage we transform how medical practices engage with life sciences resources and expertise to improve patient care. Our platform intelligently connects healthcare providers with the precise life sciences experts that they need, when they need them. As a result, medical practices stay on the cutting edge of patient care without disrupting workflows. Trusted by more than tens of thousands of healthcare practitioners and all major life sciences companies, RxVantage has powered millions of educational exchanges between healthcare teams and life sciences companies.
What you'll be doing:
Creating and implementing a security roadmap based on current and ongoing assessments
Ensuring policies are developed and maintained from both a business & technical perspective for the application, data, and security needs of the organization
Working with Legal to ensure agreements are congruent with policies
Overseeing the GRC (Governance Risk and Compliance) process
Ensuring compliance with industry laws and regulations for data security and privacy to include CCPR, 21 CFR Part 11, SOC2, NIST SP800-53
Monitoring the Identity and Access Management Framework
Benefits:
Competitive Salary
100% Company-Paid Premiums for Employee's Medical Health (HDHP 4500), Vision, and Dental Plans + $4,400 company sponsored contribution into an HSA
Short-term and Long-term Disability
Life Insurance
401k Matching
Work from Anywhere within the US
Flexible PTO
100% Paid Parental Leave
Post-Parental Leave Program - $5k stipend to assist with expenses, 4 week 100% paid “Ease-Back” return to work transition period
Charitable donation matching
Location:
Our “Work from Anywhere” philosophy is aimed at making sure that we recruit a diverse range of thought leadership to ensure that our technology is better able to serve local health care providers. Our goal is to hire the country's top talent and allow them to create an environment within the U.S. where they can do their best work.
About Our Organization:
At RxVantage, we're a small company with a big mission: to connect healthcare providers with the right life science experts and resources they need, exactly when they need them, to improve patient care. We've built a software platform that's changing the way providers learn about the latest medical advancements and technologies. Every year, our platform powers over 1 million educational exchanges between medical practices and life science companies, making it easier for them to stay informed and provide better care.
We have a proven product, a strong mission, and a passionate team. Now, we're looking for talented people to help us grow even more. If you're driven, eager to make an impact, and ready to be part of something meaningful, we want to hear from you!
---
RxVantage is an equal opportunity employer and dedicated to ensuring that we represent the local communities where our health and wellbeing providers serve as pillars of support to our family, friends, and neighbors. Our representation within these communities allows us to embody a diverse set of backgrounds, experiences, abilities and perspectives; and provide an inclusive environment for our team to feel empowered to be their authentic selves, without fear of harassment or discrimination.
$117k-170k yearly est. Auto-Apply 4d ago
Chief Information Security Officer (Part-time)
TiDB
Remote director, security risk management job
Join us as we scale our business by building on our tremendous success around the world. The massive database market is going to double over the next few years and TiDB is a global player positioned as a major disruptor with TiDB Database and Database as a Service offering. TiDB is an open-source, cloud-native, distributed SQL database for elastic scale and real-time analytics. Large and high-growth organizations in markets as varied as financial services, logistics, gaming, e-commerce and software as a service have successfully deployed and expanded their TiDB footprint on mission-critical applications. Our strong open-source community roots (39,500+ stars on GitHub), innovative products and inclusive culture draw passionate and dedicated people to our company. Learn more about TiDB careers and join our team to be at the forefront of innovation and growth.
Role Overview
We are seeking a part-time Chief Information Security Officer (CISO) to lead TiDB's global security strategy. This role will be responsible for defining and executing a comprehensive information security,riskmanagement, and compliance program that protects TiDB's products, infrastructure, customers, and employees.
As CISO, you will partner closely with product, sales, legal, and executive leadership to ensure security is embedded into everything we do - from the core of TiDB to our SaaS/cloud offerings and enterprise engagements.
Responsibilities
Proven experience as a CISO or senior security leader in a high-growth B2B SaaS environment.
Strong understanding of cloud security, DevSecOps, zero trust architectures, and modern compliance frameworks.
Exceptional communicator with executive presence-comfortable interfacing with CISOs, CIOs, and security decision-makers.
Experience supporting GTM motions, including joining sales calls, handling due diligence, and presenting to security-conscious enterprise buyers.
Define, implement, and continuously evolve TiDB's global information security strategy and roadmap.
Drive adoption of best practices in application security, data security, and infrastructure hardening.
Establish and maintain a comprehensive riskmanagement framework aligned with ISO 27001, SOC 2, GDPR, CCPA, and other relevant standards.
Work with legal and compliance teams to monitor evolving regulations in key markets.
Engage directly with enterprise customers to build trust in TiDB's security practices.
Effectively represent the company through thought leadership, including written contributions and participation in public speaking engagements.
Qualifications
Proven experience leading security at a global SaaS, cloud infrastructure, or database company.
Deep understanding of distributed systems, cloud-native architectures, and DevSecOps practices.
Strong knowledge of security frameworks and regulations (ISO 27001, SOC 2, NIST, GDPR, etc.).
Demonstrated ability to lead incident response and crisis management.
Excellent communication and executive presence; comfortable engaging with boards, regulators, and enterprise customers.
Fluent public speaker or participates actively in a public facing security community.
We encourage people from underrepresented groups to apply. Come advance with us! In keeping with our values, no employee or applicant will face discrimination/harassment based on: race, color, ancestry, national origin, religion, age, gender, marital domestic partner status, sexual orientation, gender identity, disability status, or veteran status. TiDB also strives to prevent other, subtler forms of inappropriate behavior (e.g., stereotyping) from ever gaining a foothold in our organization. Whether blatant or hidden, barriers to success have no place at TiDB.
$112k-161k yearly est. Auto-Apply 39d ago
Alliance Director - API Security
Wallarm
Remote director, security risk management job
Since 2016, Wallarm has been on a mission to secure the internet's critical infrastructure: APIs. Today, we are the trusted choice for over 200 of the world's most innovative companies, from high-growth startups to Fortune 500 and Nasdaq leaders. Our unified platform provides full-lifecycle API security - helping teams discover their attack surface, protect against modern threats, and respond to incidents in real-time. As a graduate of Y Combinator and fueled by a recent $55M Series C, we are scaling our global, remote-first team of 150+ innovators to solve the next generation of security challenges.
About the role:
We are seeking an experienced and highly motivated Alliance Director to lead and expand strategic partnerships with technology vendors. This role will play a critical part in scaling our go-to-market efforts by developing joint solutions, enabling co-selling and co-marketing motions that create long-term value through aligned ecosystem strategies.
Responsibilities:
Alliance Strategy & Execution
Define and execute the strategic partnership roadmap aligned with business goals.
Identify, evaluate, and onboard new partners that enhance our API security platform offering.
Develop joint business plans with key partners, including co-selling, co-marketing, and solution integration opportunities.
Partner Management & Enablement
Own and grow relationships with strategic alliance partners.
Build executive-level and field-level alignment between Wallarm and alliance partner organizations.
Lead alliance enablement programs to ensure successful technical and sales collaboration.
Go-to-Market (GTM) Collaboration
Drive joint GTM initiatives, including campaigns, demand generation, and solution launches.
Align with sales leadership to develop partner-influenced pipeline and revenue targets.
Monitor and report on performance metrics for each alliance and recommend adjustments as needed.
Cross-Functional Leadership
Collaborate with product, marketing, sales engineering, and legal to ensure the successful execution of alliances.
Influence product roadmap by advocating for partner-integrated features and capabilities.
Job requirements We are looking for candidates with:
7-10 years of experience in strategic alliances, business development, or channel sales within cybersecurity or cloud/SaaS environments.
Deep understanding of the cybersecurity landscape; API security knowledge is a strong plus.
Experience managing alliances with technology partners.
Proven ability to build high-impact GTM partnerships that drive measurable results.
Strong business acumen and ability to influence C-level stakeholders both internally and externally.
Excellent communication, negotiation, and presentation skills.
Bachelor's degree required; MBA or technical degree a plus.
Nice to have:
Familiarity with modern API ecosystems (e.g., REST, GraphQL, OpenAPI, Kubernetes, API gateways).
Background in enterprise security products, including API security.
Ability to thrive in a fast-paced, high-growth startup environment.
Why Join Us:
Be part of a category-defining company in the booming API Security space.
Work with a passionate, high-performing team at the intersection of security, innovation, and go-to-market strategy.
Remote work and flexible working hours.
Competitive salary and bonuses.
Paid days off and medical insurance.
Working equipment.
Professional development and career growth opportunities.
All done!
Your application has been successfully submitted!
Other jobs
$82k-147k yearly est. 60d+ ago
Director, Platform Security
Levi Strauss 4.3
Remote director, security risk management job
Calling all originals: At Levi Strauss & Co., you can be yourself - and be part of something bigger. We're a company of people who like to forge our own path and leave the world better than we found it. Who believe that what makes us different makes us stronger. So add your voice. Make an impact. Find your fit - and your future.
We are looking a visionary and product-minded Director of Platform Security to lead our security architecture practices and be at the forefront of our digital transformation journey. This role is ideal for a strategic partner who excels at the intersection of security, usability, and automation to help the business. You will shape our security platform strategy, embed security into our development lifecycle, and lead a team of security engineers and architects that span our global retail, e-commerce, and enterprise platforms. You will have both technical expertise and partnership capability to promote secure innovation and provide scalable, developer-friendly solutions. You will report to the Senior Director of Enterprise Security.
About the Job
Leadership and Strategy
Provide transformational leadership for building the security roadmap for our global ecommerce platforms, corporate infrastructure, and retail environment. Build, mentor, and lead a team of engineers and architects supporting all countries around the globe and other LS&Co brands.
Build bridges with Digital, Technology, Product, and Security leaders across the organization to ensure security is embedded in the operation and experience of our digital ecosystem.
Deliver a flagship experience for our consumers, employees, and partners.
Security Architecture
Provide architectural oversight of security infrastructure, including WAF/BOT and fraud protection, cloud security solutions, IAM/CIAM, and others. Ensure identification, prioritization, and remediation of vulnerabilities across customer-facing environments.
Champion modern web frameworks within the MACH framework (Microservices, API-First, Cloud-Native, Headless) and DevOps/ Lean practices to ensure that our platforms stay secure and deliver value to our consumers.
Secure Development and Cloud Security
Partner with product engineering teams to embed security into the software development lifecycle (SDLC) for e-commerce and mobile platforms, ensure secure coding practices, automated testing, and threat modeling.
Lead the adoption and enforcement of cloud security best practices across AWS, Azure, or GCP environments, with a focus on scalability and resilience.
Compliance and RiskManagement
Support compliance programs and ensure regulatory compliance with industry security standards (e.g., ISO 27001, NIST, SOC 2, GDPR, HIPAA).
Partner with security operations to ensure delivery of risk-resilient infrastructure and participate in incident response efforts including investigation, mitigation, and post-incident reviews to improve security posture.
About You
10+ years of experience in security engineering, architecture, or technical product management, with tangible accomplishments in retail, ecommerce, or similar customer-facing digital experiences.
Expertise in OWASP, CIS Benchmarks, SCAP, and secure coding practices.
Experience with cloud platforms (AWS, Azure, GCP) and modern DevSecOps tooling; familiarity with Kubernetes, microservices, and serverless architectures.
Working knowledge of encryption, tokenization, hashing, and data protection strategies; familiarity with authN/authZ patterns including OAuth, mTLS, OIDC, SAML, API keys, certificates, and credential lifecycle management.
Subject matter expertise in identity management, both corporate and consumer identities, including lifecycle management, privileged access management, and ITDR.
Experience embedding security into CI/CD and cloud-native environments.
Expertise in leading diverse, geographically distributed teams and in navigating the complexities associated with different locations and time zones.
Connect, communicate, inspire, and promote collaboration across a spectrum of departments and departments.
This is a remote role based in the United States.
The expected starting salary range for this role is $144,800 - $241,200
per year
.
We may ultimately pay more or less than the posted range based on the location of the role. The amount a particular employee will earn within the salary range will be based on factors such as relevant education, qualifications, performance and business needs.
Levi Strauss & Co. (LS&Co.) offers a total rewards package that includes base pay, incentive plans, 401(k) matching, paid leave, health insurance, product discounts, and more designed to help you and your family stay healthy, meet your financial goals, and balance the demands of your work and personal life. Available benefits and incentive compensation vary depending upon the specifics of the role; details relating to a specific role will be made available upon request. Read more about our benefits here.
LS&Co. is an affirmative action and equal employment opportunity employer. We welcome and value people from diverse cultures, backgrounds, and experiences to make LS&Co. a collective success.
#LI-Remote
EOE M/F/Disability/VetsLOCATIONRemote - USAFULL TIME/PART TIMEFull time
FILL DATE
This position is expected to be filled by 03/12/2026.Current LS&Co Employees, apply via your Workday account.
$144.8k-241.2k yearly Auto-Apply 29d ago
Information Security Manager
Presidential Staffing Solutions
Remote director, security risk management job
Benefits:
401(k)
401(k) matching
Competitive salary
Dental insurance
Health insurance
Opportunity for advancement
Paid time off
Vision insurance
Benefits/Perks
Competitive Compensation
Career Advancement Opportunities
Great Work Environment
Job SummaryWe are seeking an experienced Information SecurityManager to join our team! As our Information SecurityManager, you will be responsible for managing all Information Security projects, ensuring the safety and security of the data in our care, and identifying and eliminating threats before they start. You will also work closely with other departments to ensure compliance with security best practices and create reports to present to upper management and other department heads on security protocols. The ideal candidate has previous experience working in Information Security, has demonstrable experience leading a team, and has a deep understanding of best security practices.
Responsibilities
Manage IT projects and oversee goals, ensure metrics are being met, and projects are being completed in a timely manner
Work closely with staff to manage any support issues that arise, handle all user access credentials, and hardware inventory
Maintain and adjust any documentation for users in regard to common technology processes, hardware handling, and more
Maintain and adjust any communications procedures to ensure staff issues are being heard and handled appropriately
Investigate any security incidents and handle documentation and remediation
Monitor security systems to protect data and spot any questionable activity before it becomes a threat
Present reports to upper management to discuss security concerns and ongoing efforts, as needed
Qualifications
Previous experience in IT Security and Management preferred
Strong interpersonal and communication skills
Demonstratable experience and knowledge in IT,security, and best practices
Strong leadership ability
Self-driven and motivated
The ability to meet deadlines and work under high-pressure situations
Flexible work from home options available.
Compensation: $140,000.00 - $150,000.00 per year
PROVIDING QUALITY STAFFING AND CONSULTING
SINCE 2011
Based out of San Antonio, Tex as, our minority women-owned company specializes in all staffing and consulting needs. Whether you're trying to hire a pharmacist, a respiratory therapist, or skilled and non-skilled laborer, we will staff your company with the best candidate. We bring extensive experience and professionalism and we will personalize our assistance to your needs and concerns. Most of our contracts are with the Army and Air Force as Sub-Contractors.
Our staff has a quick turn around and have been able to fill positions within 48 hours with short notice, we have filled hard to fill locations and jobs, and managed over 16 contracts with over 70 employees at a time. Managed call-ins at 24/7 hospitals and ensured shifts were filled, and managed PRNs with notice of less than 24 hours. Also, provided temp laborers for next day jobs.
Our consulting division provides contracting assistance, program managing, application assistance, certification assistance and proposal writing. We are very knowledgeable in a variety of areas and are eager to assist your company's prosperity.
$140k-150k yearly Auto-Apply 52d ago
Compliance & Information Security Manager
Installation Made Easy, Inc.
Remote director, security risk management job
Compliance & Information SecurityManager
Department: Compliance
Reports To: VP of Compliance
Installation Made Easy (“IME”) provides software and process management that enable retailers and contractors to offer installed home improvements to homeowners in a convenient, consistent, and affordable manner. IME senior management has over 100 years of retail management and home improvement industry experience.
We are seeking a Compliance & Information SecurityManager to build and manage our corporate compliance and information security governance program. The role will lead regulatory compliance initiatives,manage audit and certification efforts, and partner closely with Compliance, IT, and Security teams to support a strong risk and compliance posture.
The candidate must be able to work independently in a remote environment.
Essential Functions:
Manage compliance programs related to PCI DSS, SOC 1 / SOC 2, and related frameworks.
Serve as project manager for external audits and certifications, coordinating internal teams and external auditors.
Maintain compliance with U.S. consumer privacy and data protection laws, including state privacy and breach notification requirements.
Develop and maintain compliance, privacy, and information security policies and documentation.
Review and redline agreements with customers, partners, and vendors, focusing on data protection,security, and compliance terms.
Oversee the maintenance of the company's certifications and licenses, such as money services licensure and/or business registrations
Support information security governance,risk assessments, vendor risk reviews, and remediation tracking.
Provide compliance support during security incidents and investigations.
Partner cross-functionally and provide compliance guidance and training across the organization.
Perform other duties as required.
Minimum Qualifications:
5+ years of experience in compliance, information security,riskmanagement, or GRC roles.
Hands-on experience managing PCI and SOC audits.
Working knowledge of U.S. consumer privacy and data protection laws.
Experience reviewing and redlining commercial agreements.
Strong project management and communication skills.
Bachelor's degree in a related field or equivalent experience.
Preferred Qualifications:
Certifications such as CISSP, CISM, CRISC, CISA, or CIPP/US.
Experience in a SaaS or software environment.
Familiarity with NIST or ISO 27001 frameworks.
Physical Requirements:
Prolonged periods of sitting at a desk and working on a computer.
Benefits to working with IME:
100% remote work environment
Employer provided equipment.
Medical, dental, and vision insurance
Health savings plan includes employer contribution to health savings account.
Medical and dental flexible spending accounts
Company paid basic life, short-term disability, and long-term disability insurance.
401K plan with employer match
Company matches 100% of the first 4% of salary deferrals.
All contributions, including employer contributions, are 100% vested immediately.
Employee discount program for Electronics, Groceries, Travel, Entertainment, and more
Employee assistance program
Pay on demand.
Critical illness, hospital indemnity, group accident, and legal insurance
Paid time off.
And more!
We are an Equal Opportunity and Drug-Free Workplace.
The is not an exhaustive statement of all duties, responsibilities, or qualifications of the job, nor is it intended to limit opportunities for necessary modifications. The Job Description does not constitute an employment contract of any kind.
$106k-150k yearly est. Auto-Apply 17d ago
Director of Security
Onestudyteam
Remote director, security risk management job
At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes. Our cloud-based platform, StudyTeam, brings research site workflows online and enables sites, sponsors, and other key stakeholders to work together more effectively. StudyTeam is trusted by the largest global biopharmaceutical companies, used in over 6,000 research sites, and is available in over 100 countries. Join us in our mission to advance clinical research and improve patient care.
One mission. One team. That's OneStudyTeam.
The Director of Security leads enterprise security strategy and execution across governance,risk, compliance, and security engineering. This role manages the GRC and Security Engineering teams, partners with technology and business leaders, and ensures the design and operation of secure systems and processes across the organization.
The Director is accountable for program maturity, audit readiness, and continual improvement. The scope includes third party risk, vendor assessment and qualification,security architecture oversight, AI related security assessments and guidance, incident response leadership, and budget ownership for security programs.
This is a hands-on, technical leadership role with high autonomy that blends strategic program leadership with practical execution. The Director will develop roadmaps and metrics, allocate resources, and ensure alignment with business priorities and regulatory obligations.
What You'll Be Working On:
Lead and manage the GRC and Security Engineering teams, including strategy, objectives, staffing, coaching, and performance management.
Own governance,risk, and compliance programs. Maintain ISO 27001 and related controls. Drive audit readiness for HIPAA and other frameworks. Coordinate policy lifecycle management and control testing.
Run vendor assessment and qualification program. Oversee third party riskmanagement, due diligence, contractual security requirements, and continuous monitoring.
Provide AI related security assessments and guidance. Establish acceptable use guardrails for AI, assess model and data risks, and advise on controls for AI enabled solutions.
Oversee security architecture for cloud environments and enterprise platforms. Partner with engineering on secure design for AWS, Azure, identity, network, and data protection.
Direct security engineering operations. Manage EDR and threat detection with CrowdStrike, SIEM operations, CSPM posture management, vulnerability management, and SOAR automation.
Lead incident response readiness and execution. Run tabletop exercises, coordinate investigations, and deliver root cause and lessons learned.
Own and managesecurity budgets, multiyear planning, vendor contracts, and cost optimization while meeting control objectives.
Report program status and risk posture to executives and the board. Define and track KPIs and KRIs. Communicate clearly with technical and non technical stakeholders.
Establish and enforce secure software development practices and SDLC controls with engineering leadership.
Maintain a current security roadmap and maturity plan aligned to business priorities.
Oversee metrics, dashboards, and reporting for program performance and risk reduction.
Coordinate with Legal, Privacy, and Compliance on regulatory obligations and customer security assessments.
Champion security awareness training and culture, sponsor targeted training for engineering and high risk roles.
Evaluate, select, and manage strategic security vendors and platforms, drive successful implementations and integrations.
Represent security in customer meetings and due diligence, provide credible technical and compliance answers.
What You'll Bring to OneStudyTeam:
15+ years of progressive experience in information security or related fields.
10+ years of management experience leading security teams, including people leadership and program ownership.
Bachelor's degree in Computer Science, Engineering, Information Security, or related field.
Relevant certifications strongly preferred. Examples include CISSP and CISM.
[Proven leadership of security programs at enterprise scale. Ability to set strategy, drive execution, and deliver measurable outcomes.
Demonstrated expertise in governance,risk, and compliance programs, including driving the implementation of ISO27001, SOC2, or HITRUST certification.
Experience with AI securityriskmanagement, data protection for AI use cases, and acceptable use guardrails for AI and large language models.
Strong background in secure software development, application security, and SDLC controls, including threat modeling and secure coding practices.
Hands-on knowledge of cloud security for AWS and Azure, identity and access management, network security, data protection, and key management.
We value diversity and believe the unique contributions each of us brings drives our success. We do not discriminate on the basis of race, sex, religion, color, national origin, gender identity, age, marital status, veteran status, or disability status.
Note: OneStudyTeam is unable to sponsor work visas at this time. If you are a non-U.S. resident applicant, please note that OneStudyTeam works with a Professional Employer Organization.
As a condition of employment, you will abide by all organizational security and privacy policies.
This organization participates in E-Verify (E-Verify's Right to Work guidance can be found here).
$90k-144k yearly est. Auto-Apply 7d ago
Client Director - Cyber Security
Redapt 3.8
Remote director, security risk management job
Redapt Inc. is a pioneering world-class data center infrastructure integrator, technology engineering firm, and cloud services provider. Our teams focus on delivering innovative solutions and services that power our customers most demanding applications and enable them to extract powerful insights from data that drives true business value.
We are seeking a dynamic and results-driven Client Director to join our team. In this consultative acquisition sales role, you will be responsible for acquiring, building and maintaining strong client relationships. You will have a solid understanding of client's business needs and providing customized solutions and professional services which are adjacent to cybersecurity, cloud, data center, and networking technologies. This enterprise sales role will require executive peer to peer dialogue and leadership capabilities that will engage the client and internal resources for open and trusted collaboration. You will identify opportunities and engage internal team personnel with clients while simultaneously achieving meaningful wins that advance the clients most strategic projects and/or initiatives.
If you are a motivated individual with a passion for building long term relationships in a fast paced and evolving space that has tremendous upside, then we invite you to apply for this exciting opportunity.
Responsibilities:
You will develop and execute a strategic sales plan to achieve and exceed sales targets within the cybersecurity and IT solutions portfolio.
Prospect, acquire, build and nurture relationships with target clients, understanding their unique challenges and objectives.
Collaborate with internal teams, including technical experts, to design and present comprehensive solutions that address client needs.
Stay updated on industry trends, emerging technologies, and competitor offerings to maintain a competitive edge.
Lead and participate in client presentations, negotiations, and contract discussions.
Provide accurate sales forecasts and reports to the leadership team so we can communicate the necessary resources to execute initiatives for our clients.
Engage with partner OEM, ISV, and Infrastructure technologies to expand relevance and opportunities for our clients to optimize, reduce risk, increase business resiliency, and safeguard digital assets from threats.
Skills you bring with you:
Proven experience in consultative sales, preferably in the cybersecurity and IT industry.
Strong understanding of cybersecurity solutions and IT services.
Excellent communication and presentation skills, with the ability to articulate complex technical concepts to a non-technical audience.
Demonstrated success in building and maintaining long-term client relationships.
Proactive and results-oriented approach to sales.
Must be willing and open to learn new concepts, ideas, frameworks, and technologies that advance and impact our client's organization.
Demonstrated ability to cultivate new relationships and gain trust from key stakeholders.
Qualifications:
Bachelor's degree in a related field or equivalent experience.
5+ years of experience in consultative sales, preferably with a focus on cybersecurity and IT solutions.
100% Hunter
Worked for a Value-Added Reseller or an Integrator.
Travel required:
Travel typically 15-25% or more a month
Equal Employment Opportunity:
Redapt is an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state, or federal laws. All employment is decided based on qualifications, merit, and business need.
#LI-LM1
$93k-134k yearly est. Auto-Apply 60d+ ago
Learn more about director, security risk management jobs