AF
Salary
$300,000 - $360,000
Experience
Mid
Job Type
Full-time
Posted
2 months ago
Get more other jobs in your inbox
Verified daily — no ghost listings.
About This RoleAI processing…
Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.
Key Responsibilities
- 1Design, implement, and maintain a comprehensive Information Security Program consistent with FDIC guidance (e.g., FIL-66-2019, FIL-13-2021) and the Interagency Guidelines Establishing Information Security Standards.
- 2Develop and oversee policies, standards, and procedures governing cybersecurity, data protection, and incident response.
- 3Ensure alignment with the Bank’s overall risk management and governance frameworks.
- 4Provide regular reporting to executive management and the Board on the Bank’s security posture, emerging risks, and mitigation efforts.
- 5Establish and manage a threat monitoring and detection capability to identify, assess, and respond to cybersecurity risks.
- 6Oversee implementation of layered security controls (e.g., network segmentation, encryption, access controls, endpoint protection, vulnerability management).
- 7Lead the Bank’s Incident Response Program, ensuring timely escalation and coordination with regulators when required.
- 8Maintain relationships with information-sharing groups (e.g., FS-ISAC) and law enforcement to stay informed of emerging threats.
- 9Evaluate the information security posture of third-party and affiliate service providers in accordance with the Bank’s Vendor Management Program and FDIC third-party risk guidance.
- 10Establish due diligence, ongoing monitoring, and contractual requirements for vendors handling sensitive data or performing critical services.
- 11Coordinate with Operations, Compliance, and Internal Audit to ensure third-party risks are identified, assessed, and mitigated.
- 12Ensure compliance with applicable privacy and data protection requirements (e.g., GLBA, Regulation P, state privacy laws).
- 13Implement processes to safeguard customer information and prevent unauthorized access, disclosure, or misuse.
- 14Partner with business and technology teams to integrate privacy-by-design principles into new products and services.
- 15Lead development and testing of the Bank’s Business Continuity and Disaster Recovery (BC/DR) plans, ensuring they are integrated with information security objectives.
- 16Coordinate regular testing and simulations to validate readiness for cyber incidents and system disruptions.
- 17Support resilience planning for key systems, vendors, and communication protocols.
- 18Build and document the Bank’s information security program as part of the de novo application process.
- 19Establish security architecture, monitoring tools, and vendor relationships prior to launch.
- 20Prepare readiness materials for FDIC and state examinations related to cybersecurity and operational resilience.
- 21Ensure security risk assessments and third-party reviews are completed and incorporated into pre-opening milestones.
- 22Serve as the Bank’s senior advocate for cybersecurity and data protection, promoting a culture of security awareness and accountability.
- 23Provide training and guidance across the organization to enhance information security awareness.
- 24Collaborate with peers in Risk, Compliance, Operations, and Technology to align security priorities with business strategy.
- 25Build and lead a capable, mission-driven security team to support the Bank’s evolving needs.
Requirements
- Lead the Bank’s Incident Response Program, ensuring timely escalation and coordination with regulators when required.
- Strong familiarity with third-party risk frameworks and financial services cybersecurity expectations.
- Expert knowledge of information security principles, frameworks, and regulatory requirements.
- Core Competencies Expert knowledge of information security principles, frameworks, and regulatory requirements.
- Affirmers in proximal roles have the flexibility to work remotely, but will occasionally be required to work out of their assigned Affirm office.
- By clicking "Submit Application," you acknowledge that you have read Affirm's Global Candidate Privacy Notice and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as described therein.
Perks & Benefits
Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount
Apply to This Job in Minutes
Generate ATS-optimized resume + cover letter + interview prep with Jobease.ca AI. Complete your application faster.
75% of AI Resumes Get Rejected
Beat the ATS with Jobease.ca's AI Resume Builder. Optimized for real hiring systems.
Build My ResumeProfile Match
Loading…Checking your profile against this job…
Posted
2 months ago
Job Overview
Salary$300,000 - $360,000
Job TypeFull-time
Work ModelRemote
ExperienceMid
LocationRemote
Categoryother
Share This Job
Track All Your Applications
Never lose track again. Jobease.ca organizes every application, interview, and follow-up.
Organize My Search