VP, Chief Information Security Officer

Only the passionate need apply.
We're looking for much more than qualified applicants.
We want individuals who believe that anything worthy of their effort is worthy of their best effort. That anything we produce should not merely compete but truly dominate its category.
Kasasa employees are dedicated to helping community banks and credit unions compete and win. Like the Spartans in the Battle of Thermopylae, we stand together and inspire others to join us to join us in our mission.
Stronger as a whole and united by core values, we are more than a team. We are a phalanx. Are you ready to join an amazing group of people who genuinely love their jobs, in an environment that inspires greatness?
 
Our Benefits Include:
Work/Life Balance
·        Working for one of the Best Places to Work in Austin!
·        Open Paid Time Off
·        Gym Membership Reimbursement
·        Tuition Reimbursement
·        Spartan Development Plan
·        Love Fund - established as a way for Spartans to give back to their co-workers in need
·        11 paid Holidays
·        Stocked breakroom with excellent choices for snacks, breakfast and lunch options
 
Company Culture
·        Bar Camps - Internal groups for like-minded employees to support any cause or common goals
·        End of the month breakfast and catered lunch
·        Beer:30 Fridays - Sudsy social hour each Friday where we mingle and hang out
·        Chat & Chew - Thursday afternoon breaks with co-workers at extended snack bar
·        YouEarnedIt - Recognize and Reward your coworkers in meaningful ways
·        Philanthropic and Community Support
·        Sponsored Volunteer Days
 
Health & Welfare
·        PPO/HSA options for Medical, Dental, Vision with a substantial contribution from Kasasa
·        Life Insurance, Long Term Disability, Short Term Disability and Employee Assistance Program all provided in full by Kasasa
·        401K plan with matching contributions
·        Flex Accounts - Medical and Dependent

The Kasasa Chief Information Security Officer  (CISO) is business savvy, has experience with financial services (banking and/or payments) and understands and enforces the following pillars of cyber security.
 
      PILLAR #1: Has Kasasa meet the expectations of regulations and gone beyond? 
      PILLAR #2:  Does Kasasa have vigilance in our cyber security execution?
      PILLAR #3:  Does Kasasa excel in detection and recovery?
      PILLAR # 4: Does Kasasa manage third party ecosystem risk effectively?
 
 
As the CISO you are the leader of the security function for Kasasa and are responsible for overall corporate security strategy, security architecture development, and global function oversight. You will ensure that the organization's security posture and policy line up with its business vision, and provide protection and mitigation necessary for its successful implementation.
 
You will leverage and share your security expertise and real-world experience with our product development staff by providing insight and education into the security technology landscape and industry best practices.
 
You are an inspirational people leader who grows and nurtures a data-driven, high-performance team that is viewed as best-in-class, entrepreneurial, and results oriented.

As the company’s senior security employee, this role has enterprise-level responsibility for all data/information security policies, standards, evaluations, roles, and corporate awareness.
 
The scope of this role covers all utilized security technologies and services, including protection services, perimeter defenses, physical and logical access control, and profile management of all employees, contractors, and visitors. 
 
 

Scope & Duties:

  • Utilize existing current controls and policies and industry standards such as NIST and FFIEC  to manage a formal information security program.
  • Drive reduction of information security and cyber security risk within the organization and facilitating the alignment of the business areas with regulatory expectations and best practices.
  • Facilitate the continued improvement in information security and cyber security risk management and culture across Kasasa, through the continual refinement and implementation of the Information Security and Cyber security Framework.
  • Build and maintain relationships with various functions within Kasasa, including Sales, Marketing, Operations, Product Development,  IT Group. Provide training and guidance to business areas on Information Security/Cyber security and ensure risk events are identified, reported, and managed. Develop and maintain close working relationships with team members and collaborate on projects.
  • Focus on data security by developing and strengthening internal controls to prevent unauthorized and improper access to data, thereby ensuring the appropriate protection of information assets. Appropriately protect the confidentiality, integrity and availability of information assets.
  • Develop a best practice disaster recovery program to ensure technology availability and safety for employees.
  • Provide oversight for developing, implementing and managing the enterprise technology Disaster Recovery program to ensure timely technology operations recovery following an interruption in service caused by a technology system outage or declared disaster.
  • Develop communication strategies for training & educating employees of cyber security initiatives.
  • Provide management oversight to all activities related to technology compliance with regulatory as well as audit requirements, ensuring that technology best practices are being followed for Information Security and Disaster Recovery.
  • Develop and manage budgets associated with compliance , information security
  • Manage a small team of audit and security resources, including performance management, salary administration, succession planning and workload balancing.

Education & Professional certifications

  • 10+ years of progressive leadership experience in computing and information security.
  • Bachelor degree in either STEM related fields or management.
  • Advanced degree in technology or management preferred.
  • One or more of the following certifications:
  •       Certified Information Security Manager (CISM).
          Certified Information Security Professional (CISSP).
          Offensive Security Certified Professional (OSCP).
          Certified in the Governance of Enterprise IT (CGEIT).

Desired Experience & Traits

  • Strong technical skills along with strong communication skills at all levels.
  • A track record in the successful management of programs and people, both internal and external, as well as demonstrated complex program/project/vendor management skills.
  • Agile, versatile, flexible and the ability to work with constantly changing/evolving  priorities.
  • Significant experience with technology in one if the following roles : software developer, architect,  technology infrastructure management or Information Technology management. 
  • 5+ years of strong hands-on experiences and technical depth in one, or more technology areas, including Data security, Infrastructure security, Endpoint/Platform security, Distributed Technologies, Replication technology, Cloud or Application Security.
  • Experience building controls and policies against Banking and/or payments industry security standards such as FFIEC, PCI.
  • Prior experience working with external auditors and regulators as firm representative for cyber security standards.
  • Experience developing and enforcing an enterprise information security program. 

Preferred

  • Experience with information security controls for cloud based infrastructure such as Amazon Web Services (AWS). 
  • Strong understanding of cryptographic technologies.
  • Knowledge of applicable practices and laws relating to data privacy and protection.


Meet Some of Kasasa's Employees

Cristina H.

Marketing Operations Program Manager

Mission-bound to scale Kasasa's financial technology exponentially, Cristina promotes the company's innovative banking services to local financial institutions.

Katherine R.

Manager, Marketing Program Delivery

On the Marketing Program Delivery team, Katherine devises first-class financial marketing solutions so Kasasa’s clients can achieve their strategic goals.


Back to top