This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
iCapital is looking to hire a Vice President Information Security Governance Specialist. This individual will be a key person in iCapital’s second line of defense team. The ideal candidate will support the organization’s security governance program by ensuring compliance with regulatory requirements, security frameworks, and contractual obligations. This role involves reviewing the information security program against industry standards, assessing security clauses in client and vendor contracts, designing and maintaining security controls, and responding to regulatory audits.
Job Responsibility:
Assist in authoring, maintaining, and updating security governance policies and standards to align with industry frameworks and management direction
Evaluate the organization’s information security program against common frameworks (e.g., ISO 27001, CIS, NIST 800-53, SOC 2) and applicable regulations (e.g., NYDFS, DORA, FFIEC, GDPR)
Identify gaps and recommend control enhancements to align with compliance requirements
Review and negotiate information security sections of client and vendor contracts in partnership with the Legal team
Collaborate with Technology, Information Security, and Risk teams to design, document, and enhance security controls for infrastructure, applications, and data
Coordinate responses for internal and regulatory audits for information security team
Requirements:
7-10 years of experience in information security governance, compliance, or risk management in a financial service, fintech, or technology-driven environment
Bachelor’s degree in information security, risk management, or a related field
Strong written and verbal communication skills
Excellent analytical and problem-solving skills
Able to manage multiple priorities and deadlines in a fast-paced environment
Comfortable engaging with senior leaders
Knowledge of cybersecurity frameworks (ISO, CIS, NIST, SOC 2) and audit processes
CISM, CRISC, or CISSP certifications are preferred
What we offer:
Equity for all full-time employees
Annual performance bonus
Employer matched retirement plan
Generously subsidized healthcare with 100% employer paid dental, vision, telemedicine, and virtual mental health counseling