Senior Director leading security, compliance, governance, risk, and corporate IT functions at a fintech company. Hands-on player-coach who builds programs (audits, risk assessments, security operations, vendor reviews) while recruiting and scaling a team; sets enterprise policy for Engineering and partners across leadership.
185k – 215k/yr
On-site10+ YOESecurity Engineering
About the role
What You’ll Own
Security Strategy & Governance
Develop and execute inKind’s enterprise security strategy, policies, standards, and operating procedures.
Lead security planning aligned with company growth, product expansion, and regulatory requirements.
Set enterprise security policy and standards that the product and engineering organizations build against.
Serve as a senior advisor to leadership on security, compliance, and risk matters.
Compliance & Audit
Own the company’s compliance strategy and roadmap.
Lead audit readiness and certification programs, including SOC 2, PCI DSS, privacy programs, vendor and third-party risk management, and regulatory compliance requirements.
Partner with Legal and Finance on governance and regulatory obligations.
Ensure compliance programs remain scalable as the business grows.
Establish company-wide risk management and risk assessment programs.
Develop security metrics, executive dashboards, and reporting frameworks.
Lead incident response planning, tabletop exercises, and business continuity initiatives.
Manage third-party security reviews and vendor risk assessments.
Corporate IT Operations
Own corporate IT operations, including the internal IT team, endpoint and device management, internal systems, and helpdesk support.
Manage identity and access administration across corporate systems and SaaS applications.
Establish IT standards, device lifecycle and asset management, and operational service levels.
Ensure IT operations support a secure, productive workforce across the company’s office and distributed environments.
Product & Platform Security Partnership
Partner with Engineering and Product to integrate security into the software development lifecycle and define secure development standards.
Provide governance, policy, and advisory oversight for cloud (AWS) security architecture and application security (Engineering owns platform implementation).
Advise on threat modeling, secure architecture reviews, and security testing practices.
Ensure security requirements are represented throughout the product lifecycle.
Leadership & Organizational Development
Build and lead a high-performing IT, Security, & Compliance organization.
Hire, mentor, and develop security, compliance, and IT professionals.
Establish accountability frameworks and performance metrics.
Create a culture of security awareness and shared responsibility.
Required Qualifications
10+ years of progressive experience in security, compliance, IT, governance, or risk management.
Experience leading and developing people across security, compliance, or IT, with the depth to operate as a hands-on technical leader.
Demonstrated success as a hands-on, player-coach leader in a lean or scaling environment — personally executing core security, compliance, and IT work while building the team.
Proven experience owning compliance programs and audits, including SOC 2 and PCI DSS.
Experience presenting to executive leadership, auditors, and external stakeholders.
CISSP, CISM, CRISC, CCSP, or equivalent certifications.
Preferred Qualifications
Bachelor’s degree in Information Security, Computer Science, Engineering, or a related field.
Experience in fintech, payments, financial services, or regulated industries.
Experience managing corporate IT and device management platforms (e.g., MDM).
Experience supporting high-growth startup or scale-up organizations.
Benefits
Unlimited PTO
9 Paid Company Holidays
100% Company-Paid Medical and Dental Coverage for Employees
Vision Coverage Available
Company-Paid Short-Term Disability
Child Care Benefits
Generous Parental Leave
Professional Development Opportunities
Daily Catered Lunches and Snacks
Dining Credit within the inKind Network
Compensation
Base Salary: $185,000 – $215,000 DOE
Skills
SOC 2pci dsscisspcismcriscccspAWSMDMVulnerability ManagementIncident ResponseRisk Assessmentthreat detectionidentity and access management
Leads technical security, compliance (SOC 2, GDPR, ISO 42001), vulnerability management, and infrastructure hardening for a fast-growing fintech. Requires 3-7 years in security engineering with hands-on AWS, vuln tooling, and audit experience.
185k – 300k/yr
On-siteSecurity Engineering
Head of IT & Security
NexHealthSeattle, WA +1
Lead NexHealth's security governance, compliance, IT operations, and incident response. Build and scale the security program and team from the ground up while partnering with engineering and leadership.
175k – 220k/yr
On-site8+ YOESecurity Engineering
Head of Security & Compliance
CascaSan Francisco, CA
Lead security and compliance for an AI-native banking startup. Build security tooling, manage a team of appsec engineers, own compliance (SOC 2, ISO 27001), and secure AI agent workflows.
200k – 255k/yr
On-site5+ YOESecurity Engineering
Head of Security
TatariNew York, NY +2
Lead security engineering team and roadmap for a late-stage AdTech SaaS company. Own incident response, risk management, AWS/K8s security, and compliance programs including SOC 2.
200k – 250k/yr
Hybrid7+ YOESecurity Engineering
Director, Corporate Security
Komodo HealthUnited States
Director of Corporate Security responsible for building and maturing the company's internal security program, including identity/access management, endpoint protection, SaaS security, AI governance, incident response, and compliance. Requires 7+ years director-level experience, team leadership, and cross-functional partnership in regulated or healthcare environments.