J
JobQuip
AR
Voltar às vagas

Chief Information Security Officer (CISO)

ashby:FloatMeSan Antonio, TX or Jacksonville, FLSalário a combinarContrato

Descrição

About the Role We’re hiring a Chief Information Security Officer (CISO) to own and elevate our security program at FloatMe. The ideal candidate should be very hands-on, not just a “policy manager”. We need someone who can sit in a compliance review one hour and be configuring security tooling themselves the next. Infrastructure - This candidate will have stewardship over our infrastructure including individual computer hardware, office infrastructure, cloud infrastructure, code security and infrastructure, app architecture and security, AI security, and critical partnerships architectures. Security - This candidate’s stewardship requires expertise in securing all of the above areas, help us pursue SOC2 compliance, and maintain the highest security for our users and staff. You’ll own our security roadmap, our compliance certifications, our partner security reviews, and the day-to-day technical operations that keep our members’ data safe. Hands-On Required - We’re a small, nimble team, which means this role requires the flexibility to switch gears between tactical execution and strategic planning. This role reports to our SVP, Engineering. If you’re excited to join a fast-moving fintech where you can build something meaningful, we’d love to hear from you! What You’ll Do Steer the architecture of our Cloud, Device, Code, App, AI, and Network infrastructure with a mind for security-first designs and plans. Set the direction for a small number of our staff regarding our infrastructure design, security, integrations and partnerships, and more (IT, Data, and Security). Serve as the primary security point of contact for our bank and fintech partners, completing security questionnaires, third-party risk assessments, and due diligence requests. Own our SOC 2 Type II program end-to-end, including scoping, control design, evidence collection, and auditor management. Maintain and strengthen our compliance posture across GLBA, PCI DSS, and other applicable financial services regulatory frameworks. Manage and improve our core security infrastructure: SIEM, EDR, WAF, IAM, secrets management, and vulnerability scanning tools. Conduct or manage regular penetration testing and vul nerability assessments, and drive remediation to closure. Lead incident response efforts — including hands-on triage, containment, forensics, post-incident review, and breach notification processes. Build and run security awareness training and phishing simulations across the company. Review and negotiate security requirements in partner and vendor contracts. Partner cross-functionally with Product, Engineering, Finance, and Legal to embed security into everything we build. Develop and maintain our multi-year security roadmap and report security posture and risk to executive leadership.

Candidatar-se

Publicado 24/06/2026
Candidatura bloqueada

Cadastre-se para ver a vaga completa e se candidatar

Crie uma conta gratuita para abrir a candidatura, salvar a vaga e acompanhar o progresso.