SVP, Chief Information Security Officer
Quick Summary
Overview Are you ready to make a difference in the world of consumer finance? At Attain Finance, we bring over 50 years of expertise in providing credit solutions across the U.S. and Canada.
Are you ready to make a difference in the world of consumer finance? At Attain Finance, we bring over 50 years of expertise in providing credit solutions across the U.S. and Canada. Our deep roots in the financial industry have empowered us to develop convenient, easily accessible financial services that meet our customers' growing needs.
Join a leading consumer credit lender that thrives on innovation and collaboration, where your contributions are truly valued. Our portfolio includes distinguished brands like Cash Money®, LendDirect® and Heights Finance. Each brand is constantly evolving to better serve our customers.
Be part of a dynamic team that is shaping the future of consumer finance. Apply today and take the next step in your career with Attain Finance!
The SVP, Chief Information Security Officer (CISO) will serve as Attain Finance's senior-most authority on information security, owning the strategy, execution, and governance of all security functions across the organization. Partnering closely with the Chief Technology Officer and reporting to the Chief Legal and Administrative Officer, the SVP, CISO will align security capabilities with the firm's growth objectives while managing risk in a highly regulated financial services environment.
Responsibilities
~2 min read- →Optimize, implement, and continuously mature an enterprise-wide information security strategy, framework, and roadmap aligned with Attain Finance's business objectives and risk appetite
- →Partner with the CTO to integrate security into technology architecture, infrastructure decisions, software development practices, and vendor selection
- →Lead and develop a high-performing security team spanning domains such as security operations, vulnerability management, identity and access management, and data protection
- →Own the firm's security risk management program, including risk assessments, control gap analysis, and remediation planning across all business lines and technology environments
- →Improve and maintain a robust incident response capability, including detection, containment, recovery, and post-incident review processes
- →Partner with the Chief Compliance Officer to ensure compliance with applicable regulatory requirements and industry frameworks, including the FTC Safeguards Rule
- →Serve as the security liaison to the Board of Directors, executive leadership, investors, and external auditors, providing clear and actionable reporting on the firm's security posture
- →Manage third-party and vendor risk, ensuring that security requirements are embedded in procurement, contracting, and ongoing oversight processes
- →Champion a firm-wide security awareness and training program that builds a proactive security culture across all employees and business functions
- →Evaluate and manage the security technology stack, ensuring investments are effective, scalable, and aligned with the threat landscape
- →Stand up and lead a proactive threat hunting program — build the team, tooling, and playbooks to actively search for threats across our environment rather than waiting on alerts, and mature it from ad-hoc hunts to a repeatable, intel-driven capability. Build out an internal offensive security (red team) function — establish in-house ethical hacking, penetration testing, and adversary emulation to continuously probe our own systems, applications, and controls for weaknesses before attackers do.
The base salary range represents the low and high end of the anticipated salary range for this position based on the U.S. average. The actual base salary offered for this full-time position will be determined by various factors, including but not limited to, location, skills, knowledge, competencies, and experience.All full-time salaried employees are eligible for the following benefits, starting on day one: Flexible Paid Time Off Program, Medical, Dental, Vision, Life Insurance, Disability, and other voluntary coverages. You will also be eligible to participate in our 401k program, starting on the first of the month following 30 days of employment with a company match.This employer participates in E-Verify for US-based hires.#AttainFinance
Requirements
~1 min read- 15+ years of progressive experience in information security, with at least 5 years in a senior leadership role, ideally within financial services, asset management, or private credit
- Deep knowledge of cybersecurity frameworks and standards, including NIST CSF, ISO 27001, SOC 2, and CIS Controls
- Demonstrated experience managing security in cloud-native or hybrid environments, with familiarity with AWS, Azure, or GCP security architectures
- Strong understanding of the regulatory landscape relevant to financial services, private credit and/or investment management, including SEC, FINRA, and applicable data privacy laws
- Proven ability to communicate complex security risks to non-technical stakeholders, including boards and investors
- Experience building and scaling security programs in growth-stage or mid-market financial firms is strongly preferred
- Relevant certifications such as CISSP, CISM, or CRISC are preferred.
- Bachelor's degree in Computer Science, Information Security, or a related field; advanced degree preferred
Attain Finance Supports Equal Employment Opportunity. Attain Finance (dba Cash Money®, LendDirect®, and Heights Finance) is committed to a policy of providing equal employment opportunity to all qualified employees and applicants. This commitment is reflected in all aspects of our daily operations. We do not discriminate on the basis of race, color, sex, religion, national origin, marital status, age, disability, veteran status, or genetic information in any personnel practice, including recruitment, hiring, training, compensation, promotion, and discipline. Additionally, we do not discriminate based on any other characteristic protected by applicable state/provincial or local law where a particular employee works. In addition, it is the policy of Attain Finance to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by federal law and any state/provincial law where a particular employee works.
Notice to Attain Finance job applicants: Attain Finance will never ask for your personal banking information, transfer of funds, a credit card, or for you to purchase any equipment to process a job application or for training. Authorized Attain Finance representatives' email addresses will end in @attainfinance.com, @heightsfinance.com, @lenddirect.com, and @cashmoney.ca.
Location & Eligibility
Listing Details
- Posted
- July 21, 2026
- First seen
- July 22, 2026
- Last seen
- July 22, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 49%
- Scored at
- July 22, 2026
Signal breakdown
Please let careers-attainfinance know you found this job on Jobera.
3 other jobs at careers-attainfinance
View all →Explore open roles at careers-attainfinance.
Similar Information Security Officer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.