| Company | Mercury |
| Location | San Francisco, CA, New York, NY, Portland, OR, or Remote within United States |
| Salary | 50-80 LPA (est.) |
| Experience | |
| Type | Full-Time |
Overview
Mercury is seeking an experienced Deputy Chief Information Security Officer to own the bank-entity scope of our 2LOD Information Security program. As the operating second to the CISO, you will be responsible for ensuring the program is examiner-ready by default, with a focus on coherent policy architecture, evidenced controls, gap-remediation, and incident response.
Responsibilities
- Own the bank-entity scope of Mercury’s 2LOD Information Security program
- Develop and maintain a coherent policy architecture
- Ensure evidenced controls and a credible gap-remediation track record
- Develop and test incident response programs with documented exercise history
- Collaborate with OCC examiners, FFIEC IT audit teams, Chief Risk Officer, and the board’s risk committee
- Maintain up-to-date knowledge of industry trends, regulatory requirements, and best practices in information security
Requirements
- 10+ years of experience in information security, with at least 5 years in a leadership role
- Strong understanding of banking regulations, including OCC and FFIEC guidelines
- Experience with 2LOD Information Security programs and examiner-ready practices
- Proven track record of building and maintaining effective information security programs
- Strong communication and interpersonal skills, with ability to collaborate with senior leadership and external stakeholders
Benefits
We offer a competitive salary range of $50-80 LPA, as well as a comprehensive benefits package and the opportunity to work with a fast-growing fintech company.
Apply
If you’re a motivated and experienced information security professional looking for a new challenge, please submit your application, including your resume and a cover letter, to our website.