Director of Security
Remote
- We’ve funded over $100 billion in loans for our customers, more than any other fintech - We ranked #1 in the U.S. on LinkedIn's Top Startups 2020 and 2021 - We are Forbes’ Best Online Mortgage Lender for 2023 - We are USA Today’s Best Mortgage Lenders of 2023, Best for FHA Loans - We have raised over $1.2 billion in equity capital to transform the mortgage industry, the largest financial asset class in the world - And we’re just getting started!
We are a place where smart, hungry, ambitious people who want to recognize their full potential thrive.
A Better Opportunity
We are seeking a Director of Security to lead our security initiatives in a fast-paced fintech environment. This senior-level position will be responsible for developing and implementing comprehensive security strategies to safeguard our organization's assets, data, and systems against evolving threats. The ideal candidate will possess extensive experience in information security, compliance, and risk management, particularly within the fintech sector.
Responsibilites
- Create and execute a robust security strategy that aligns with organizational goals and industry best practices.
- Oversee the design, implementation, and maintenance of security policies and procedures to ensure compliance with regulatory requirements and 3rd party attestations such as NY DFS, GDPR, PCI-DSS, and SOC 1/2.
- Conduct regular risk assessments and vulnerability assessments to identify potential security risks and develop mitigation plans.
- Incident Response: Lead the development and management of the security incident response plan, ensuring it is regularly tested and updated.
- Manage and mentor a team of security professionals, fostering a culture of continuous improvement and professional development.
- Work closely with legal, engineering, IT, and operations teams to integrate security requirements into business processes.
- Oversee day-to-day security operations, including monitoring security infrastructure (firewalls, SIEM tools), incident handling, and investigations.
- Design and maintain a robust security architecture that protects the company's digital assets, including cloud-based systems and applications.
- Evaluate and manage relationships with third-party vendors, ensuring they meet the company's security standards.
- Develop and implement a comprehensive security awareness program for all employees to foster a security-conscious culture.
- Collaborate with IT and business units to develop and maintain business continuity and disaster recovery plans.
- Develop key security metrics and provide regular reports to executive management on the state of security within the organization.
Qualification
- 5 to 8 years of experience in information security, with a strong background in fintech or other regulated environments.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field; a Master’s degree is preferred.
- Relevant certifications such as CISSP, CCSP, or CISM are highly desirable.
- Proficiency in security governance standards, cloud architecture (preferably AWS), microservices, DevSecOps practices, and knowledge of data protection laws.
- Strong understanding of threat landscapes, vulnerability management, and incident response methodologies.
- Excellent verbal and written communication skills with the ability to articulate complex technical concepts to both technical and non-technical stakeholders.
- Strong leadership capabilities with a proven track record of managing high-performing teams.
- Ability to thrive in a dynamic environment while maintaining focus on strategic objectives.
- A proactive approach to problem-solving with an emphasis on innovation in security practices.
Our total rewards package consists of base salary, benefits, and opportunity for yearly cash bonus. Some of our benefits include:
- Comprehensive healthcare, retirement, and voluntary benefits. Think medical, dental, vision, health savings accounts, 401k, and more. - Personalized care and tools for realizing your mental health and wellness goals.- Company paid for lunch when working in the office.- Additional benefit perks & discounts.
Disclaimer
Better Home & Finance Holding Company is an equal opportunity employer committed to fostering an inclusive and diverse environment for our employees. We are committed to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status, or any other reason protected by law.
We are committed to working with and providing reasonable accommodation to applicants with physical or mental disabilities. Better will not discriminate against any qualified individual who is capable of performing the essential functions of the job with or without reasonable accommodation.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: AWS CCSP CISM CISSP Cloud Compliance Computer Science DevSecOps Finance FinTech Firewalls GDPR Governance Incident response Microservices Monitoring Risk assessment Risk management Security strategy SIEM SOC SOC 1 Strategy Vulnerability management
Perks/benefits: 401(k) matching Career development Equity / stock options Health care Salary bonus Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.