
Information Security Manager
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in United States.
• Manage the SOC 2 program from start to finish while enhancing Information Security policies.
• Oversee the Vanta instance and conduct business continuity exercises.
• Serve as the representative for information security in the Risk + Compliance committee.
• Lead and collaborate with IT/TechOps across corporate IT and security domains.
• Supervise laptop procurement, MDM, onboarding/offboarding processes, SaaS vendor management and hardening, incident response, and data loss protection.
• Set the strategic direction for the IT/TechOps function and team development.
• Manage third-party security assessments and respond to security questionnaires from customers and partner banks.
• Configure the SIEM and establish effective alerting mechanisms.
• Maintain vendor relationships for enhanced visibility and risk mitigation.
• Enhance GCP cloud security, IAM, JIT privilege escalation, group-based access, and platform hardening practices.
• Collaborate with engineering on secure SDLC, dependency and vulnerability scanning, CI/CD pipeline hardening, and threat modeling initiatives.
• Work with the CTO and AI Labs on build-or-buy strategies for agentic security tasks.
• Ensure the secure operation of deployed AI agents.
• Report directly to the CTO while managing IT/TechOps (1).
• CISSP certification is required.
• A minimum of 5 years of experience on a security team.
• Experience in a startup environment.
• Experience at a company that has successfully achieved SOC 2 or ISO 27001 certification.
• A semi-technical degree (such as Information Systems) or several years of hands-on technical experience in scripting, web development, automation, or data analysis.
• Proficient in scripting, prototyping, and utilizing AI and modern tools.
• Excellent communication skills with customers, partner banks, auditors, and internal teams.
• Experience interacting with customers and regulators.
• Familiarity with fintech, lending, or other regulated/high-trust environments is a plus.
• Hands-on experience with GCP security is preferred; AWS experience is also advantageous.
• Experience establishing or managing a SOC 2 program from the ground up is a plus.
• Experience managing due diligence requests from partner banks or enterprise clients is a plus.
• Must not require current or future visa sponsorship to legally work in the United States.
• Competitive cash and equity compensation.
• Comprehensive health benefits (medical, dental, & vision).
• Student loan repayment assistance.
• 401k matching program.
• Commuter benefits.
• Flexible PTO policy.
• Opportunities for growth and performance in a dynamic environment alongside a talented team.
KirkpatrickPrice
Euna Solutions
Gartner
Credence
Get handpicked remote jobs straight to your inbox weekly.