
Role Overview for Chief Information Security Officer (CISO) with a Fintech Platform – New York, NY
JRG Partners is proud to represent a pioneering force in the financial technology sector. Our client, a high-growth, venture-backed Fintech platform based in the heart of New York City, is redefining the landscape of digital finance with its innovative products and customer-centric approach. As they continue to scale operations and expand their market presence, the integrity, confidentiality, and availability of their data and systems are paramount. To that end, we are conducting an executive search for a visionary and strategic Chief Information Security Officer (CISO) to join their executive leadership team.
This is not just a technical leadership role; it is a critical business enablement position. The CISO will be the principal architect and steward of the company’s comprehensive information security and data privacy vision, strategy, and program. You will be responsible for creating and maintaining a world-class, enterprise-wide security posture that protects the company’s assets, customers, and brand from an ever-evolving landscape of cyber threats. Reporting directly to the Chief Technology Officer (CTO) and with significant visibility to the CEO and Board of Directors, you will serve as the senior-most authority on information security matters.
The ideal candidate is a battle-tested security leader with a deep understanding of the unique challenges and regulatory complexities inherent in the Fintech and financial services industries. You are a strategic thinker who can translate complex technical concepts into clear business risks and opportunities for a non-technical audience. You thrive in a fast-paced, agile environment and possess the gravitas to influence culture, drive change, and build consensus across all levels of the organization. This is a unique opportunity to build and shape the security function from the ground up, embedding security into the DNA of a company that is on a trajectory to become an industry leader.
Key Responsibilities of Chief Information Security Officer (CISO) with a Fintech Platform – New York, NY
The CISO will have a broad mandate covering all aspects of information security and risk management. Key responsibilities will include, but are not limited to:
Security Strategy & Vision
Develop, implement, and maintain a strategic, long-term information security program that aligns with business objectives and mitigates risks. Articulate a clear vision for the future of security and gain executive buy-in.
Governance, Risk & Compliance (GRC)
Establish and lead the GRC function. Develop and enforce security policies, standards, and procedures. Ensure compliance with relevant legal, statutory, and regulatory requirements, including NYDFS Part 500, GDPR, CCPA, PCI DSS, and SOC 2 frameworks.
Threat & Vulnerability Management
Lead the design and operation of a robust threat and vulnerability management program, including regular penetration testing, vulnerability scanning, and remediation efforts. Stay ahead of emerging threats and tailor defenses accordingly.
Security Operations & Incident Response
Oversee the Security Operations Center (SOC) capabilities, whether in-house or managed. Develop, mature, and test a comprehensive incident response plan to ensure the organization can effectively detect, respond to, and recover from security incidents.
Security Architecture & Engineering
Partner closely with Engineering and Product teams to integrate security into the entire software development lifecycle (SDLC). Champion DevSecOps principles and ensure that security is a foundational element of all new products and services. Provide expert guidance on secure architecture for cloud-native applications.
Cloud Security
As a cloud-native organization, you will be the primary owner of cloud security strategy and execution across platforms like AWS, GCP, or Azure. Implement and manage cloud security posture management (CSPM) and cloud workload protection platforms (CWPP).
Data Protection & Privacy
Develop and oversee strategies for data loss prevention (DLP), encryption, and data classification. Partner with the legal department to ensure data privacy practices align with global regulations.
Identity & Access Management (IAM)
Own the enterprise IAM strategy, including privileged access management (PAM), single sign-on (SSO), and multi-factor authentication (MFA) to ensure the principle of least privilege is enforced.
Executive Leadership & Communication
Serve as the primary security advisor to the executive leadership team and the Board of Directors. Effectively communicate the status of the security program, key risks, and investment needs in clear, business-oriented terms.
Budget & Vendor Management
Develop and manage the annual information security budget. Evaluate, select, and manage relationships with third-party security vendors and service providers.
Team Leadership & Development
Build, mentor, and lead a high-performing team of security professionals. Foster a culture of security awareness and continuous learning throughout the entire organization.
Requirements for the Chief Information Security Officer (CISO) with a Fintech Platform – New York, NY
We are seeking an exceptional candidate who meets the following qualifications:
Experience
A minimum of 15 years of progressive experience in information security, with at least 5-7 years in a senior leadership role (e.g., CISO, Deputy CISO, Head of Security) managing a team of security professionals.
Industry Expertise
Demonstrable experience within the Fintech, banking, or financial services sector is mandatory. A deep understanding of the associated regulatory landscape (e.g., FFIEC, GLBA, NYDFS) is critical.
Educational Background
Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field. A Master’s degree is highly preferred.
Professional Certifications
One or more of the following professional certifications is strongly desired: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), or other relevant credentials.
Technical Acumen
Broad and deep technical knowledge across a wide range of security domains, including cloud security (AWS preferred), application security (SAST/DAST), network security, cryptography, endpoint security, and IAM.
Framework Knowledge
Proven experience implementing and managing security programs based on industry-standard frameworks, such as the NIST Cybersecurity Framework, ISO 27001/27002, and CIS Controls.
Strategic Mindset
Ability to think strategically and align security initiatives with business goals. Must be able to move beyond a purely technical focus to a risk-based business enablement approach.
Communication Skills
Exceptional written and verbal communication skills. The ability to distill complex security topics for executive and board-level audiences is essential.
Leadership Qualities
Proven ability to lead, influence, and build relationships with stakeholders across diverse functions, including engineering, legal, product, and finance. A track record of building and developing high-performing teams is required.
Business Acumen
Strong understanding of business principles and the ability to balance security requirements with the needs of a fast-growing, innovative company.
Benefits & Perks Offered
Our client believes in investing in their people and offers a highly competitive and comprehensive benefits package designed to support your well-being and professional growth. This includes:
Competitive Compensation
A highly attractive base salary, annual performance-based bonus, and a significant equity package.
Comprehensive Health Coverage
Premium medical, dental, and vision insurance plans for you and your dependents with minimal employee contribution.
Retirement Savings
A robust 401(k) plan with a generous company match.
Generous Paid Time Off
A flexible and generous PTO policy, including vacation days, sick leave, and company-paid holidays.
Professional Development
A substantial annual budget for conferences, training, certifications, and other professional development opportunities.
Wellness Programs
A monthly wellness stipend, gym membership reimbursement, and access to mental health resources.
Parental Leave
Comprehensive and supportive parental leave policies for all new parents.
Modern Work Environment
A state-of-the-art office in a prime New York City location, with a hybrid work model offering flexibility.
Additional Perks
Commuter benefits, catered lunches, a fully stocked kitchen, and regular team-building events and offsites.
How to Apply
This is a retained search being conducted exclusively by JRG Partners. If you are a transformative security leader ready to make a significant impact at a leading Fintech company, we encourage you to apply.
To be considered for this confidential opportunity, please submit your resume and a cover letter outlining your qualifications and interest in the role. All applications will be treated with the strictest confidence. For more information about our expertise in this domain, please visit the JRG Partners’ Information Technology executive search practice page. We look forward to reviewing your application and discussing this exciting role in more detail.
