Nymbus, Inc. is hiring a Chief Information Security Officer (CISO) for a strategic and operational executive leadership role. You will lead and evolve our enterprise security program, requiring deep banking regulatory expertise and the ability to proactively assess and enhance security in a fast-moving fintech environment.
What You'll Do
- Own and continuously mature the enterprise Information Security Program.
- Align controls and architecture with NIST CSF, NIST 800-53, FFIEC guidance, PCI DSS, and SOC requirements.
- Conduct proactive program assessments and identify security gaps, working cross-functionally to execute risk mitigation.
- Develop and execute a multi-year security roadmap aligned to business growth and regulatory expectations.
- Present clear, risk-based recommendations to executive leadership and the Board.
- Translate strategy into measurable execution plans with defined milestones.
- Drive remediation of audit, regulatory, and penetration testing findings.
- Ensure strong incident response, vulnerability management, and change management and development programs.
- Implement metrics that demonstrate real risk reduction and program effectiveness.
- Lead and develop a high-performing Information Security team.
- Provide clear direction, prioritization, and performance accountability across detection engineering, vulnerability management, application security, and security architecture.
- Oversee operation and optimization of core security tooling, budget, and contract renewal management, including SIEM/XDR platforms (e.g., Wazuh), vulnerability management (e.g., Tenable), and application security testing (e.g., Veracode).
- Ensure security diagrams, architecture artifacts, and workflow documentation are audit-ready.
- Establish measurable performance objectives and operational KPIs for the security team.
- Drive automation and continuous improvement across monitoring, alert triage, vulnerability remediation, and DevSecOps integration.
- Build a culture of ownership, urgency, and technical depth cross-functionally.
- Maintain sufficient hands-on familiarity with security tooling and architecture to effectively challenge assumptions and provide technical direction.
- Assist in the management of Nymbus’ risk log with the ability to identify, manage, and make security risk recommendations.
- Develop a deep understanding of our platform, cloud architecture (AWS/GCP), integrations, and AI initiatives.
- Partner with the CTO, engineering, product, NOC, and operations leaders.
- Ensure strong embedded security controls into SDLC, DevOps, and cloud-native development practices.
- Serve as the subject matter expert in banking security and regulatory expectations.
- Lead SOC/PCI audit readiness and regulatory exam preparedness.
- Engage confidently with regulators, auditors, and bank and credit union clients and prospects.
- Establish governance frameworks for secure and responsible AI usage.
- Assess model risk, data protection, and security implications of AI-driven products.
- Stay ahead of evolving regulatory expectations in AI and fintech.
What We're Looking For
- 10+ years of progressive experience in information security leadership.
- Significant experience in banking, financial services, or regulated fintech.
- Deep knowledge of NIST CSF & NIST 800-53, FFIEC guidance, PCI DSS, and SOC audits.
- Experience leading cloud-first security programs (AWS and/or GCP).
- Demonstrated ability to independently assess risk and make defensible decisions.
- Strong executive communication and cross-functional leadership skills.
- Experience operating in high-growth or fast-changing environments.
Nice to Have
- Preferred certifications: CISSP, CISM, CRISC or equivalent.
Technical Stack
- AWS, GCP
- SIEM/XDR platforms (e.g., Wazuh)
- Vulnerability management (e.g., Tenable)
- Application security testing (e.g., Veracode)
Team & Environment
You will lead and develop a high-performing Information Security team.
Benefits & Compensation
- Annual Cash Bonus and Equity Options
- Fully Remote
- 401(k) plan
- Insurance - Health, Dental and Vision
- Time Off
Work Mode
This role operates in a global work mode.
Nymbus, Inc. is an equal opportunity employer.



