yoinka

AVP, Information Security

Cross River

Fort Lee, New Jersey, United StatesSenior$150k – $170k/yr
Sign in to applyVerified 2h ago
Location
Fort Lee, New Jersey, United States
Work model
On-Site
Level
Senior
Salary
$150k – $170k/yr
Posted
4h ago

Skills

Cybersecurity

About this role

Who We Are

Cross River builds the infrastructure behind the world’s most innovative financial products. Our technology and capital solutions power payments, cards, lending, and digital asset capabilities that move money safely, instantly, and inclusively — trusted by leading fintechs, enterprises, and disruptors across the globe.

Our mission is simple: to build the financial infrastructure that expands access and opportunity for all. Guided by a culture of collaboration, curiosity, and purpose, Cross River has been named one of American Banker’s Best Places to Work in Fintech year after year. Whether you’re designing code, solving regulatory puzzles, or developing strategy, you’ll join a team where innovation and integrity drive everything we do — and where your work helps shape the future of finance.

What We're Looking For

We are seeking an experienced AVP, Information Security to collaborate across the organization and execute information security governance processes. This hands-on role serves as a subject-matter expert, guiding and monitoring compliance with industry best practices, regulatory guidance, infosec frameworks, and internal policies and standards. The ideal candidate is self-motivated, solutions-oriented, detail-focused, and an independent thinker.

Support select IT assurance and infosec tasks, including

• SDLC & Change Management

• Monitor and report adherence to SDLC and change management procedures

• Coordinate penetration test vulnerability and EOL asset ticket closure with Infrastructure, Engineering, and Internal Audit

• Business Continuity Management

• Maintain and improve Crisis Management, Business Continuity (BCP), and Disaster Recovery Plans (DRP) aligned with industry standards and regulations

• Conduct Business Impact Analysis (BIA) workshops to identify critical processes, systems,and quantify resilience metrics like RPOs, RTOs, and MTDs

• Identify, propose, defend, and support implementation of resilience strategies and solutions

• Design and execute a risk-based multi-year testing calendar

• IT Risk Monitoring & Reporting

• Monitor, assess, and report on the effectiveness of selected IT risk metrics

• Design and implement new risk metrics

• Privacy Request Fulfillment

• Execute data-subject rights requests following privacy laws including CCPA and CAN-SPAM

• IT Assurance

• Collaborate with cross-functional teams to create or maintain select standards, procedures, and documentation

• Provide training and awareness across the organization on policies and procedures

• Collect evidence across IT processes to support audits and examinations

• Maintain control mappings and perform gap analyses to drive continuous program improvement

Must Have

• Exceptional written and verbal communication skills to present complex information clearly to diverse audiences

• Professional certifications: ISACA CISA or ISC2 CISSP

• 5+ years of experience in Information Security, IT Security, IT Audit, IT GRC, IT Compliance,IT Assurance, IT Risk, IT Business Analysis, or Business Continuity

• Strong knowledge of software development life cycle (SDLC), change management, business continuity management, and IT risk management

Preferred

• Undergraduate or graduate degree in computer science, cybersecurity, information assurance, business administration, or a closely related field

• Familiarity with regulatory guidance, standards, and frameworks such as the FFIEC ITHandbook, SOC 1/2, PCI DSS, COBIT 2019, and ITIL

• Experience working in a highly

Listing verified 2h ago. Applications go through the company's official careers site.

← Back to Yoinka

AVP, Information Security at Cross River, Fort Lee, New Jersey, United States | Yoinka