Current jobs related to Senior Manager, Information Security Risk - Chicago, Illinois - OppFi


  • Chicago, Illinois, United States Chelsea Search Group Full time

    Senior Manager, Information SecurityJoin Chelsea Search Group as we seek a highly skilled Senior Manager, Information Security to lead our cybersecurity efforts. As a key member of our team, you will be responsible for developing and implementing a comprehensive information security strategy to safeguard our sensitive data, intellectual property, and client...


  • Chicago, Illinois, United States Capital One Full time

    About the RoleCapital One is seeking a highly skilled Senior Manager, Information Security Office to lead our Cybersecurity Assurance team. As a key member of our Information Security Office, you will play a critical role in ensuring the security and integrity of our systems and data.Key ResponsibilitiesLead a team of cybersecurity professionals in the...


  • Chicago, Illinois, United States Bank of America Full time

    Job DescriptionAt Bank of America, we are committed to creating a workplace that is guided by a common purpose to help make financial lives better through the power of every connection. As a Senior Information Security Officer, you will play a critical role in driving Responsible Growth by ensuring the security and integrity of our information systems and...


  • Chicago, Illinois, United States Capital One Full time

    About the RoleCapital One is seeking a highly skilled Senior Manager, Information Security Office to lead our Cybersecurity Assurance team. As a key member of our Information Security Office, you will be responsible for managing a team of associates in the execution of risk review types and ensuring the ongoing evolution of our service offering...


  • Chicago, Illinois, United States U.S. Bank Full time

    Overview:At U.S. Bank, we are committed to excellence in serving our customers and communities. We believe in empowering individuals to make informed financial choices and fostering growth and success within the communities we support.Position Summary:The selected candidate will become a vital member of our Information Security Risk Assessment Team, which...


  • Chicago, Illinois, United States Bank of America Full time

    Job Title: Senior Information Security ArchitectAt Bank of America, we are committed to creating a workplace that is inclusive and diverse, where everyone has the opportunity to succeed. As a Senior Information Security Architect, you will play a critical role in helping us achieve this goal.About the RoleThe Senior Information Security Architect will be a...


  • Chicago, Illinois, United States Vantage Risk Companies Full time

    Position Overview:The Senior Analyst in Enterprise Risk Management will be instrumental in enhancing risk reporting and advancing the ERM function within Vantage Risk Companies.Key Responsibilities:1. **Data Collection and Reporting:** - Gather and monitor essential aggregation risk metrics across various risk portfolios and products. - Present findings...


  • Chicago, Illinois, United States American Institutes for Research Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Analyst to join our team at American Institutes for Research. As a key member of our Information Security Office, you will play a critical role in ensuring the security and integrity of our information systems and data.Key ResponsibilitiesExecute internal controls assessments for AIR...


  • Chicago, Illinois, United States Atlantic Partners Corporation Full time

    Senior Information Security Engineer at Atlantic Partners CorporationAtlantic Partners Corporation is in search of a Senior Information Security Engineer. This position will emphasize the planning, design, and execution of security-focused initiatives, processes, and protocols within a Microsoft-centric framework. Key responsibilities will encompass the...


  • Chicago, Illinois, United States Atlantic Partners Corporation Full time

    Senior Information Security Engineer at Atlantic Partners CorporationAtlantic Partners Corporation is in search of a Senior Information Security Engineer. This position will concentrate on strategizing, designing, and implementing security-focused initiatives, processes, and protocols within a Microsoft-centric environment. Key responsibilities will...


  • Chicago, Illinois, United States The AZEK Company Full time

    Senior Analyst, Cyber Security Governance, Risk & ComplianceCompany OverviewThe AZEK Company is a premier manufacturer of cutting-edge, sustainable building materials, committed to transforming the utilization of recycled resources. Our pursuit of excellence propels us to design high-quality solutions for both residential and commercial sectors,...


  • Chicago, Illinois, United States The AZEK Company Full time

    Senior Analyst, Cyber Security Governance, Risk & ComplianceCompany OverviewThe AZEK Company stands at the forefront of sustainable building product manufacturing, committed to innovating with recycled materials. Our dedication to quality drives us to create superior residential and commercial solutions that are transforming the industry.We pride ourselves...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a leader in its industry with over 125 years of achievement. Our success is driven by our dedicated workforce and a vibrant corporate culture that fosters collaboration and innovation.Position Summary: The Global Head of Information Security is tasked with the...


  • Chicago, Illinois, United States Hispanic Technology Executive Council Full time

    About the RoleWe are seeking a highly skilled Senior Information Security Controls Specialist to join our Process and Metrics Excellence organization, part of Global Information Security (GIS) at the Hispanic Technology Executive Council. This role will play a critical part in promoting a strong risk management culture with a focus on information security...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a prominent leader in its industry with over 125 years of proven success. Our achievements are driven by our dedicated workforce and a vibrant corporate culture.Work Environment: At GATX, we prioritize hiring top talent and fostering a dynamic, collaborative...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, is a prominent player in its industry with over 125 years of success, driven by a dedicated workforce. Our culture emphasizes high performance, teamwork, and a vibrant office environment.Position Summary: The Global Head of Information Security is tasked with developing and...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a leader in its industry with over 125 years of successful operations, driven by a dedicated workforce. Our vibrant workplace culture, coupled with an enthusiastic management team, fosters an environment where employees can thrive.Position Summary: The Global Head of...


  • Chicago, Illinois, United States Bank of America Full time

    About the Role:Bank of America is seeking a highly skilled Senior Information Security Controls Specialist to join our Process and Metrics Excellence organization within Global Information Security (GIS). As a key member of our team, you will play a critical role in promoting a strong risk management culture with a focus on information security risk.Key...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, stands as a prominent leader in its industry with over 125 years of achievement, driven by a dedicated workforce. Our culture emphasizes high performance, collaboration, and a vibrant workplace environment.Position Summary: The Global Head of Information Security is tasked with...


  • Chicago, Illinois, United States GATX Corporation Full time

    Company Overview: GATX Corporation, established in 1898 and based in Chicago, IL, is a leading organization with over 125 years of proven success, driven by our dedicated workforce. We take pride in our high-performance culture, committed management team, and a modern office environment.Work Environment: At GATX, we prioritize hiring top talent and fostering...

Senior Manager, Information Security Risk

3 months ago


Chicago, Illinois, United States OppFi Full time

OppFi is a tech-enabled, mission-driven specialty finance platform that broadens the reach of community banks to extend credit access to everyday Americans. Through best-in-class customer service, transparency, responsible lending, and financial inclusion, we support consumers, who are turned away by mainstream options, to build better financial health.

We are a team of caring, innovative, and inclusive individuals who thrive in being immersed in diverse talents, expertise, perspectives, and backgrounds. Our employees approach every new challenge with an unparalleled ability to see what could be rather than settle for what is. Our business principles guide us and create an open and collaborative culture where we improve 1% every day, and the best ideas always win We welcome individuals who want to make an impact in the financial system by facilitating credit access, expanding financial inclusion, promoting financial health, and delivering exceptional customer service.

A few other fun facts about us. OppFi is one of the top consumer-rated financial platforms online, maintaining a 4.5/5.0-star rating on Trustpilot. We are a 2023 Crain's Fast 50TM company and were named on Built In's 2024 Best Places to Work

What you get to do:

We are looking for a passionate, mission-driven Information Security governance manager to join our expanding Information Security team. You will lead and manage the process and tools for Information Security & Risk Management, and process IT due diligence requests and ensure compliance to policies, procedures and regulations. You will also work with important partners in Technology, Compliance, Internal Audit, and Legal to review and provide security guidance on current and new processes, maintain evidence and artifacts for all audits.

  • Work with CISO to develop information security program and security control assessment strategy
  • Run the information security risk management process. Be the primary point of security risk management activities, including analyzing, quantifying, and tracking identified information security risks and reviewing and documenting risk exception requests
  • Identify and analyze new requirements for policy impacts; develop policies, procedures, standards and guidelines.
  • Ensure compliance with established IT policies and procedures by examining IT records, reports, operating practices, and documentation
  • Manage and track cybersecurity audit engagements, due diligence activities, and vendor security reviews; Use working knowledge of information security best practices to ensure IT controls are in place to meet our external audit and client requirements
  • Create dynamic dashboards and scorecard for visibility of Information Security Governance activities
  • Develop mandatory enterprise cybersecurity awareness training program
  • Coach a team of 3-4 information Security analysts
What you bring to the team:
  • A degree in Information Technology/Computer Information Systems or related field.
  • Background in Information Security, IT Risk Management, or IT Audit
  • Experience with security and control frameworks, such as FFIEC, NIST, COBIT, ITIL, ISO control framework
  • Minimum ten (10) years of experience in Information Technology compliance programs to meet regulatory or compliance requirements with at least two years of management experience
  • Experience identifying potential IT controls risks, issues and opportunities through and offering sustainable recommendations that address cause rather than symptoms
  • Experience with information security standards, best practices for securing computer systems within applicable laws and regulations
Reports to: Chief Information Security Officer

Total Rewards and Benefits:

The starting base salary for this position is $125,000 per year. The actual offer, reflecting the total compensation package and benefits, will be at the company's sole discretion and determined by a myriad of factors including, but not limited to, years of experience, depth of experience, and other relevant business considerations. The total compensation package includes eligibility and potential for performance-based bonuses as well as equity grants dependent upon the role and job level.

OppFi offers a flexible, remote environment, 401(k) matching program, and generous paid time off. Other benefits include medical, dental, and vision coverage, and tuition reimbursement. There are also additional benefits including DoorDash DashPass, Figo pet insurance, Rocket Lawyer, and access to LinkedIn Learning. OppFi also offers Fringe, which is a lifestyle benefits platform that allows employees decide how to spend rewards from dozens of vendors like Uber, DoorDash, and UrbanSitter. #LI-Remote

EEO Statement:

OppFi is an equal opportunity employer and does not discriminate based on any actual or perceived legally recognized protected bases under local, state, federal law, or regulations. Our goal as a company is to build an equitable workplace that actively works to dismantle systems of oppression in our processes, procedures, and interactions. We aim to help our employees thrive where they work and beyond. Check out our Culture page here.

As part of OppFi's commitment to providing equal opportunity to qualified individuals, OppFi will ensure that persons with disabilities are provided reasonable accommodation as defined by applicable laws and organizational policies. If reasonable accommodation is needed to participate in the job application or interview processes or job requirements, please contact our People Team at

Pursuant to the requirements of the California Consumer Privacy Act, OppFi is providing the "OppFi California Employee Privacy Policy", which details the categories of personal information collected and your rights under the policy. If you are a California resident, please review the policy here:

The information in this document is for general informational purposes only. It is not intended to be an all-inclusive list or description of the organization and its requirements for positions and employees. OppFi reserves the right to modify or change the information on this document at its discretion.