VP, Information Security
Remote
Applications have closed
TrueAccord
TrueML is a software company developing machine learning-driven products that prioritize customer experience and revolutionize the experience of consumers seeking financial health. The mission-driven team of data scientists, financial services industry experts, and customer experience fanatics are building technology to serve people in a way that recognizes their unique needs and preferences as human beings and that endeavors toward ensuring nobody gets locked out of the financial system.
TrueML is driving its mission through a family of companies and products that are reinventing the way consumers are engaged in financial services for better experiences and more productive outcomes. TrueAccord Corp, a subsidiary of TrueML, licenses products for first- and third-party debt collection services, and has served more than 20 million consumers in debt with an empathetic, digital-first approach. The company was established in 2013 by serial entrepreneurs, Ohad (Chief Executive Officer) and Nadav (Chief Innovation Officer) Samet after being treated badly while subjected to collections on a small balance.
The Opportunity:
As the Vice President of Information Security, you will be responsible for ensuring the security of our organization's information systems and data. In this highly visible leadership role you will work across the organization and with our security partners (auditors, security management platform providers, and clients), to manage risk, ensure compliance, and continually optimize our Information Security program in a highly regulated technology domain.
What You'll Do:
- Develop and implement an enterprise-wide information security strategy that aligns with business objectives and regulatory requirements.
- Work closely with other departments to identify, assess, and manage risks to the organization's information systems and data.
- Evaluate and implement appropriate security controls and technologies to protect the organization's information systems and data from unauthorized access, use, disclosure, modification, or destruction.
- Lead incident response and manage security incidents to minimize impact and ensure continuity of operations.
- Monitor and measure the effectiveness of security controls and technologies, and provide regular reports to executive leadership on the state of information security.
- Develop and maintain policies, procedures, and standards related to information security, and ensure that they are communicated and enforced throughout the organization.
- Stay current with the latest developments in information security and ensure that the organization is compliant with relevant laws, regulations, and industry standards.
- Manage the information security budget and ensure that resources are allocated effectively.
What We're Looking For:
- At least 10 years of experience in information security, with at least 5 years in a leadership role.
- Bachelor's degree or equivalent relevant experience
- Experience in developing and implementing information security programs that comply with regulatory requirements as well as business continuity and disaster recovery programs.
- Thorough understanding of financial services regulatory requirements, such as the Gramm-Leach-Bliley Act (GLBA), the Sarbanes-Oxley Act (SOX), the Payment Card Industry Data Security Standard (PCI DSS), and other industry-specific regulations.
- Experience with a diverse set of industry-standard Information Security Frameworks (e.g. COBIT, ISO, CIS, ISF, NIST, SOC 2, etc.)
- Experience in assessing and managing risks to information systems and data.
- Experience in incident response and managing security incidents.
- Experience with conducting compliance assessments and audits, including working with external auditors.
- Ability to communicate effectively with regulators and auditors on matters related to information security and compliance.
- Excellent communication skills, with the ability to communicate complex information and security concepts to non-technical stakeholders.
- Ability to lead and manage a team of information security professionals.
- Relevant industry certifications, such as CISSP, CISM, or CRISC, are strongly preferred.
- Possess strong leadership qualities, including a calm demeanor, especially under pressure
For California Applicants: we collect personal information for employment purposes. We do not sell personal information. Most of the information we have is provided to us by you and/or collected as part of the employment process. For more details on how we use, share, and delete personal information see our Privacy Policy.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CISM CISSP COBIT Compliance CRISC GLBA Incident response Machine Learning NIST PCI DSS Privacy Security strategy SOC SOC 2 SOX Strategy
Perks/benefits: 401(k) matching Career development Fitness / gym Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Parental leave Unlimited paid time off Wellness
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Cyber Security Architect jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Cybersecurity Analyst jobs
- Open IT Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open CISM-related jobs
- Open ISO 27001-related jobs
- Open Network security-related jobs
- Open Application security-related jobs
- Open Windows-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security assessment-related jobs
- Open Kubernetes-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open DevSecOps-related jobs
- Open CEH-related jobs