Director, Business Information Security Officer
San Francisco, CA or Remote, USA
Applications have closed
- Oversee the execution of Digit’s Information Security Program.
- Define and maintain an ongoing Digit focused Information Security roadmap.
- Partner with technical and business leaders within the business unit to assess Information Security risk and prioritize ongoing improvement efforts.
- Ensure clear lines of communication between Digit and Oportun’s Security team.
- Monitor Digit compliance with the Information Security Program and report on the status and any related risks.
- Serve as the primary liaison between Oportun’s Security team and Digit.
- Build high performing teams that deliver solutions to reduce risk, protect the business and enable growth.
- Foster a team culture that models inclusivity, diversity, transparency and delivery excellence.
- 7+ years of experience with a demonstrated track record of success in information security, risk management, compliance auditing and / or penetration testing.
- 5+ years of experience in building and scaling diverse, inclusive, and high-performing security teams.
- Direct experience with regulated systems (e.g., GLBA, SOX, FFIEC, PCI-DSS, etc.) in the financial industry.
- Relevant certifications (CISSP, CISM, Security+, etc.)
- Bachelor’s degree / graduate degree from an accredited institution in a field of study related to the role.
- Proven track record of delivering to cloud at scale while leveraging Secure-SDLC practices.
- Experience with modern agile engineering approaches and focus on operational excellence.
- Data-driven approach to decision making, in day-to-day leadership and strategic tradeoff analyses.
- Leadership experience with regulatory and industry standards such as PCI, CIS Controls, NIST CSF, SOC 2, etc.
- Ability to build and maintain strong cross-functional partnerships and relationships at all levels of the organization
- Excellent interpersonal and communication skills.
- Competitive salary and equity with robust equity refresh program
- 100% paid medical, dental, & vision benefits
- 100% paid life & disability insurance
- Fertility reimbursement
- Daily lunch stipend
- Internet, commuter, and wellness benefits
- Take what you need PTO policy
- 401k plan
- Flexible, hybrid work environment
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Audits Automation CISM CISSP Cloud Compliance Machine Learning NIST Pentesting Risk management SDLC SOC 2
Perks/benefits: 401(k) matching Career development Competitive pay Equity Fertility benefits Flex hours Flex vacation Health care Home office stipend Insurance Transparency Wellness
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Senior Cyber Security Engineer jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Principal Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Staff Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Product Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Cyber Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Chief Information Security Officer jobs
- Open IT Security Analyst jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Cybersecurity Specialist jobs
- Open Senior Security Architect jobs
- Open Sr. Security Engineer jobs
- Open IT Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open ISO 27001-related jobs
- Open Pentesting-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Security assessment-related jobs
- Open Malware-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open IDS-related jobs
- Open EDR-related jobs
- Open CEH-related jobs
- Open Forensics-related jobs
- Open Kubernetes-related jobs