United States Remote (Global) Employment

Nymbus, Inc. is hiring a Chief Information Security Officer

About the Role

Nymbus, Inc. is hiring a Chief Information Security Officer (CISO) for a strategic and operational executive leadership role. You will lead and evolve our enterprise security program, requiring deep banking regulatory expertise and the ability to proactively assess and enhance security in a fast-moving fintech environment.

What You'll Do

  • Own and continuously mature the enterprise Information Security Program.
  • Align controls and architecture with NIST CSF, NIST 800-53, FFIEC guidance, PCI DSS, and SOC requirements.
  • Conduct proactive program assessments and identify security gaps, working cross-functionally to execute risk mitigation.
  • Develop and execute a multi-year security roadmap aligned to business growth and regulatory expectations.
  • Present clear, risk-based recommendations to executive leadership and the Board.
  • Translate strategy into measurable execution plans with defined milestones.
  • Drive remediation of audit, regulatory, and penetration testing findings.
  • Ensure strong incident response, vulnerability management, and change management and development programs.
  • Implement metrics that demonstrate real risk reduction and program effectiveness.
  • Lead and develop a high-performing Information Security team.
  • Provide clear direction, prioritization, and performance accountability across detection engineering, vulnerability management, application security, and security architecture.
  • Oversee operation and optimization of core security tooling, budget, and contract renewal management, including SIEM/XDR platforms (e.g., Wazuh), vulnerability management (e.g., Tenable), and application security testing (e.g., Veracode).
  • Ensure security diagrams, architecture artifacts, and workflow documentation are audit-ready.
  • Establish measurable performance objectives and operational KPIs for the security team.
  • Drive automation and continuous improvement across monitoring, alert triage, vulnerability remediation, and DevSecOps integration.
  • Build a culture of ownership, urgency, and technical depth cross-functionally.
  • Maintain sufficient hands-on familiarity with security tooling and architecture to effectively challenge assumptions and provide technical direction.
  • Assist in the management of Nymbus’ risk log with the ability to identify, manage, and make security risk recommendations.
  • Develop a deep understanding of our platform, cloud architecture (AWS/GCP), integrations, and AI initiatives.
  • Partner with the CTO, engineering, product, NOC, and operations leaders.
  • Ensure strong embedded security controls into SDLC, DevOps, and cloud-native development practices.
  • Serve as the subject matter expert in banking security and regulatory expectations.
  • Lead SOC/PCI audit readiness and regulatory exam preparedness.
  • Engage confidently with regulators, auditors, and bank and credit union clients and prospects.
  • Establish governance frameworks for secure and responsible AI usage.
  • Assess model risk, data protection, and security implications of AI-driven products.
  • Stay ahead of evolving regulatory expectations in AI and fintech.

What We're Looking For

  • 10+ years of progressive experience in information security leadership.
  • Significant experience in banking, financial services, or regulated fintech.
  • Deep knowledge of NIST CSF & NIST 800-53, FFIEC guidance, PCI DSS, and SOC audits.
  • Experience leading cloud-first security programs (AWS and/or GCP).
  • Demonstrated ability to independently assess risk and make defensible decisions.
  • Strong executive communication and cross-functional leadership skills.
  • Experience operating in high-growth or fast-changing environments.

Nice to Have

  • Preferred certifications: CISSP, CISM, CRISC or equivalent.

Technical Stack

  • AWS, GCP
  • SIEM/XDR platforms (e.g., Wazuh)
  • Vulnerability management (e.g., Tenable)
  • Application security testing (e.g., Veracode)

Team & Environment

You will lead and develop a high-performing Information Security team.

Benefits & Compensation

  • Annual Cash Bonus and Equity Options
  • Fully Remote
  • 401(k) plan
  • Insurance - Health, Dental and Vision
  • Time Off

Work Mode

This role operates in a global work mode.

Nymbus, Inc. is an equal opportunity employer.

Required Skills
AWSGCPSIEM/XDR platformsVulnerability managementApplication security testingNIST CSFNIST 800-53FFIEC guidancePCI DSSSOC auditsRisk AssessmentCloud SecurityInformation Security Leadership
Looking for a remote dev community?

200+ professionals, 37 countries, one network

Working remotely doesn't mean working alone. Iglu connects you with developers, designers, and digital experts worldwide. Collaborate, learn, and grow together.

Global professional network
Knowledge sharing & collaboration
Regular community events
Cross-project opportunities
Join the community
37 countries represented
About company
Nymbus, Inc.

Nymbus is a modern fintech company delivering technology solutions to banks and credit unions. They operate in a highly regulated environment and partner closely with financial institutions to power modern core transformations and broader outsourced digital banking brand solutions.

Visit website
Job Details
Department Information Technology
Category management
Posted 14 days ago