Information Security Manager

3 weeks ago


New Haven, United States BankMobile Full time

Overview:

About BM Technologies, Inc.

BM Technologies, Inc. (NYSE American: BMTX, BMTX.W) is among the largest digital banking platforms in the U.S., providing access to checking and savings accounts, personal loans, credit cards, and financial wellness. It is focused on technology, innovation, easy-to-use products, and education with the mission of being customer-obsessed and creating customers for life. The BMTX digital banking platform employs a multi-partner distribution model, known as Banking-as-a-Service (BaaS), that enables the acquisition of customers at higher volumes and substantially lower expenses than traditional banks while providing significant benefits to its customers, partners, and business. BMTX currently serves over two million account holders and provides disbursement services at approximately 725 college and university campuses (covering one out of every three students in the U.S.). BM Technologies, Inc. is a technology company and is not a bank, which means it provides banking services through its Member FDIC and Equal Housing Lender partner banks.

About the Role:

As Information Security Manager, you will be responsible for ensuring the security of our organization's information systems and data. In this role, you will work across the organization and with our security partners (auditors, security management platform providers) to manage risk, ensure compliance, and continually optimize our Information Security program in a highly regulated Financial Services domain.

Responsibilities:
  • Develop and implement enterprise-wide information security strategies, policies, and procedures that align with business objectives and regulatory requirements. Ensure that they are communicated and enforced throughout the organization.
  • Evaluate and establish technical security standards, develop workflows to ensure operational effectiveness, and develop compliance standards.
  • Lead the identification and evaluation of cyber security threats, risks, vulnerabilities, and processes to determine the risk to our product and software development initiatives, the systems we use, and the broader organization.
  • Lead incident response and manage security incidents to minimize impact and ensure continuity of operations.
  • Provide regular and consistent reporting on the status of the information security program to enterprise risk teams, audit teams, and senior business leaders.
  • Provide thought leadership in information security to internal and external industry partners.
  • Monitor information security trends and evolving technologies; liaise with external partners, agencies, and peers to ensure that the organization maintains a strong, proactive security stance.
  • Liaise with business units to provide input and help steer ongoing program improvements, strategic direction, and continuous improvement measures.
  • Vendor Management responsibilities with MSSPs and IR vendors.
Qualifications:
  • 8-10+ years experience leading global information security programs and applying information security, risk management and privacy practices
  • Experience building an IT Security department in a high growth, highly regulated, technology company.
  • Experience supporting organizations using Microsoft Office and Azure cloud services.
  • In-depth understanding of cyber security best practices including secure software development/DevSecOps in a cloud native environment
  • Experience in assessing and managing risks to information systems and data.
  • Demonstrated strong ability to communicate with senior company leadership and get buy in for any security-related projects or initiatives.
  • Experience rolling out global security training to better educate employees on current threats.
  • Has a deep understanding of the technical foundation of security best practices in the cloud; can speak comfortably with developers and engineers.
  • Ability to communicate effectively with regulators and auditors on matters related to information security and compliance.
  • Industry certifications, such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), etc.
  • Azure certifications a plus.
  • Experience with a diverse set of industry-standard Information Security Frameworks (e.g. COBIT, ISO, CIS, ISF, NIST, SOC 2, etc.)

Unsure if you meet the qualifications?
We are constantly in search of skilled individuals who can contribute to our diverse and inclusive team, enriching us with a variety of perspectives, skills, backgrounds, and approaches. If you share our passion for what we do, we invite you to submit your application



  • New York, United States Veritas Partners LLC Full time

    Our client is a growing financial services firm. They are currently seeking an experienced SOC Manager to join their team in Montgomery County, MD. Responsibilities: The SOC Manager is responsible for managing the Tier1 Outsourced MSSP, and dark web Monitoring MSSP relationships. The SOC Manager is also responsible for the overall security monitoring of all...


  • New Haven, United States USA Security Services Corporation Full time

    Responsibilities: - Protect the premises and personnel by monitoring the faciilty. Anyone who applies for the job must have a CT Giard Card. Monitoring surveillance equipment; inspecting buildings, equipment, and access points; and permitting entry. - Complete daily report by recording observations, information, occurrences, and surveillance activities and...


  • New York, New York, United States UNDSS - Department of Safety and Security Full time

    Work LocationIn-Person/RemoteExpected duration3 to 6 monthsDuties and ResponsibilitiesThe United Nations Department of Safety and Security (UNDSS) is responsible for providing leadership, operational support and oversight of the United Nations Security Management System (UNSMS) globally. As a global leader in security risk management principles, UNDSS...


  • New Orleans, Louisiana, United States GardaWorld Security Services Full time

    Job Summary JOB SNAPSHOTJob Title: Client Services ManagerLocation: New Orleans, LAEnvironment: Office + In the fieldPay Rate: $60,000 / year plus $500 monthly auto-allowanceShift & Hours: Office hours - Mon-Fri 8 am-5 pm- must be available to clientele, dispatch, and/or on-site officers and supervisors 24/7Included Benefits/Perks: Medical, Dental, Vision,...


  • New Orleans, United States GardaWorld Security Services Full time

    Job Summary JOB SNAPSHOTJob Title: Client Services ManagerLocation: New Orleans, LAEnvironment: Office + In the fieldPay Rate: $60,000 / year plus $500 monthly auto-allowanceShift & Hours: Office hours - Mon-Fri 8 am-5 pm- must be available to clientele, dispatch, and/or on-site officers and supervisors 24/7Included Benefits/Perks: Medical, Dental, Vision,...


  • New Bremen, United States Insight Global Full time

    - Information Security & Privacy Project Management - Oversee, coordinate, and support functional process audit and assessments to ensure process compliance. Develop instructional and procedural documentation and presentations to support and communicate Information Security and Privacy Program strategic objectives. Prepare and maintain policy, standards,...


  • New York, United States ISMG - Information Security Media Group Full time

    Job DescriptionJob DescriptionAbout UsCollaboration, Intelligence, and LeadershipCyberEdBoard is the premier member’s-only community of executives & thought leaders in the fields of information security, cybersecurity, and information technology. Members have access to a robust platform of resources that promote peer-to-peer networking &...


  • New York, United States ISMG - Information Security Media Group Full time

    About Us Collaboration, Intelligence, and Leadership CyberEdBoard is the premier member's-only community of executives & thought leaders in the fields of information security, cybersecurity, and information technology. Members have access to a robust platform of resources that promote peer-to-peer networking & knowledge-sharing, executive-level education, &...


  • New York, United States FirstPRO Full time

    Essential Accountabilities: In-depth demonstrable knowledge of Active Directory, Group Policy and RBAC. In-depth demonstrable knowledge of networking protocols, concepts (VLANs, ACLs, NAC, etc.) network architecture, firewalls, proxies, SIEM, antivirus, and IDPS concepts. Knowledge of cloud technologies (ex. AWS, Azure, etc.). Knowledge of security standards...


  • New York, United States Memorable Full time

    Job DescriptionJob DescriptionAbout the Position:This is a full-time position focused on leading the information security initiatives at Memorable. You will play a key role in developing and implementing security measures to safeguard our systems, data, and infrastructure while ensuring compliance with industry standards and regulations.Responsibilities:Lead...


  • New York, United States Aptonet Full time

    Job Title: Cyber Security Information Security Professional (W2 Only) Location: Groton, CT * Must be able to be on-site daily, at either New London and Groton CT Duration: 12 month extendable Contract Job Description Required: CISSP, CISM, DOD background and knowledge with vendors, and suppliers. Interfacing with CISO and CxO levels Key...


  • New York, United States Gotham Technology Group Full time

    Title: Information Security EngineerDuration: 12+ month (possibility to extend)Location: 2 days a week onsite in NYC Job Responsibilities:Will be part of the team responsible for engineering and implementing various security projects and administration and monitoring of various security systems.Collaborate with business units and corporate partners to ensure...


  • New York, United States Gotham Technology Group Full time

    Title: Information Security EngineerDuration: 12+ month (possibility to extend)Location: 2 days a week onsite in NYC Job Responsibilities:Will be part of the team responsible for engineering and implementing various security projects and administration and monitoring of various security systems.Collaborate with business units and corporate partners to ensure...

  • Security Architect

    1 week ago


    New Haven, United States NR Consulting Full time

    Overview As the Information Security Architect, you will play a vital role in ensuring the confidentiality, integrity, and availability of our organization's information assets. You will be responsible for designing and implementing secure solutions that align with our business objectives, regulatory requirements, and industry best practices. Collaborating...


  • New York, United States CultureFit Full time

    Job Summary: Under the general supervision of the Information Security Chief, the Information Security Engineer implements and maintains information security solutions for the organization. The individual is expected to provide leadership and support for all security and related technical operations. Requires a diverse set of skills including advanced...


  • New York, United States ISMG - Information Security Media Group Full time

    Job DescriptionJob DescriptionAbout UsCollaboration, Intelligence, and LeadershipCyberEdBoard is the premier member’s-only community of executives & thought leaders in the fields of information security, cybersecurity, and information technology. Members have access to a robust platform of resources that promote peer-to-peer networking &...


  • Newark, New Jersey, United States Fawkes IDM Full time

    Responsibilities: Maintain and update security policies, controls, and procedures to reflect the firm’s security environment and technological changes. Respond to client security assessments, complete questionnaires, and support adjustments based on assessment outcomes. Track remediation actions, controls, and configuration changes to comply with...


  • New Hyde Park, United States Newtek One Full time

    Job DescriptionJob DescriptionNewtekOne®, Your Business Solutions Company®, is a financial holding company, which along with its bank and non-bank consolidated subsidiaries, provides a wide range of business and financial solutions under the Newtek® brand to the small- and medium-sized business ("SMB") market. Since 1999, Newtek has provided...


  • New York, United States Strategic Security Full time

    Description Strategic Security (SSC) is a nationwide leading provider of security guard services, executive protection, bomb dog, intelligence, consulting, investigative services. As an Unarmed Security Officer, you will be responsible for conducting unarmed foot patrol within a Government, corporate, retail or fast food environment, while providing...


  • New Hyde Park, United States Newtek One Full time

    Job DescriptionJob DescriptionNewtekOne®, Your Business Solutions Company®, is a financial holding company, which along with its bank and non-bank consolidated subsidiaries, provides a wide range of business and financial solutions under the Newtek® brand to the small- and medium-sized business ("SMB") market. Since 1999, Newtek has provided...