Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Head of Information Security & IT image - Rise Careers
Job details

Head of Information Security & IT

Who we are

Investing in private equity or venture capital should be as easy as buying a stock on Robinhood but it isn’t. Instead of purchasing investments in a few clicks, investors fill out 200+ page forms.

Passthrough simplifies investor onboarding, fund closing, and compliance with workflows that guide investors through only what applies to them and once they’ve invested, we save their information to create a reusable investor profile—so the next investment is even faster.

Since launching in 2020, we’ve processed tens of billions of dollars and helped 50K+ investors complete documents in as short as 2 minutes. We’re making an outdated, manual process into something modern, simple, and built for scale.

The problems you’ll solve

Passthrough’s customers and partners include large institutional fund managers, banks, and law firms who have sophisticated requirements. In order to work with them, we need to embody security, IT, and compliance excellence.

You will own all security, compliance, and IT at Passthrough, managing certifications like ISO 27001 and SOC II. You will also be doing the management and implementation of all IT work at Passthrough outside of the application itself. This includes device management, internal tech support, license management, and secure configuration of all of our third party vendors like Salesforce, Docusign, etc. You’ll collaborate with the engineering team when it comes to the Passthrough application.

We’ve already helped our customers raise billions of dollars and with your help we will increase that to trillions. Our customers are counting on us to safeguard their most sensitive information and help them raise money in a usually time sensitive process. As such, it’s crucial that we be secure and reliable.

The impact you’ll have

  • Get us an ISO27001

    • Manage and implement any needed policy changes

    • Manage and implement any IT changes

    • Work with engineering on infrastructure changes to the Passthrough application

  • Run SOC II

    • Manage our policies

    • Manage our internal compliance processes

    • Run our weekly compliance meetings

    • Manage the annual audits

  • Run IT

    • Manage our devices through JAMF, Apple business manager, and Google Workspace

    • Manage the secure configuration of third party vendors like Salesforce

    • Provide tech support for Passthrough employees

  • Represent Passthrough’s security and compliance externally

    • Help prospects get comfortable with us in sales conversations

    • Fill out DDQs / security questionnaires

Technologies we use

  • JAMF

  • Apple Business Manager

  • MacOS and Linux

  • Python

  • Google Cloud Platform

Qualifications

Required

  • Experience with SOC 2, ISO 27001, or related frameworks

  • Experience with GDPR and similar privacy frameworks

  • Experience managing and implementing IT policies

  • Experience managing and implementing InfoSec policies

  • Experience deploying and managing devices with JAMF or similar tools

  • Certifications such as CISSP, CISA, CISM, or equivalent.

  • Ability to write Bash and Python scripts

  • Ability to learn and adapt quickly

  • Clear, concise communication skills

Desired

  • Expertise in Google Cloud Platform

  • Experience with DevOps

What to expect in the hiring process

We go through the same interview steps for all candidates to ensure equity in our hiring process. All roles also require a background check.

Our process is designed to learn as much about each candidate as possible, as well as to give candidates access to our team and learn about what it's like to work at Passthrough.

  1. Initial screen: Have a quick 20-30 minute chat with our team to learn more about Passthrough and you.

  2. Technical interview: Have a 45 minute interview where we’ll ask technical questions about device management, IT, and information security.

  3. On-site Interviews: 3 separate 30-minute meetings with Tim, our CEO, Garrett, our Head of Operations, as well as Mark, our Head of Financial Crime.

  4. Get a decision: We’ll get back to you within a week on what’s next

Benefits

  • Competitive salary

  • Passthrough stock options

  • Health, dental, and vision insurance

  • Annual health & wellness stipend

  • 401k contribution program with matching

  • Life insurance

  • PTO & unlimited sick leave

  • Parental leave

Passthrough Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Passthrough DE&I Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of Passthrough
Passthrough CEO photo
Unknown name
Approve of CEO

Average salary estimate

$125000 / YEARLY (est.)
min
max
$100000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Head of Information Security & IT, Passthrough

Are you ready to take the reins as the Head of Information Security & IT at Passthrough in New York? At Passthrough, we're revolutionizing the way private equity and venture capital investments work, making it seamless for over 50,000 investors. As our Head of Information Security & IT, you’ll play a vital role in safeguarding sensitive data and ensuring compliance with stringent standards like ISO 27001 and SOC II. You’ll manage everything from IT policies to device management, ensuring that our systems run smoothly and securely. Collaboration is key, and you'll work closely with our engineering team to enhance the Passthrough application while also providing top-notch tech support for our employees. Your expertise will directly impact our mission to streamline the investing process for our clients, allowing them to raise billions in a fraction of the time! Plus, you’ll represent our commitment to security and compliance during sales conversations and manage our annual audits—no pressure, right? If you're passionate about IT security and ready to help shape the future of financial transactions, you'll find a creative and dynamic environment here at Passthrough. Beyond just the tech, you’ll have the chance to lead initiatives that help us earn trust in the marketplace and propel us toward our goals of facilitating even larger funding for our customers. Join us, and let’s bring the next level of security and efficiency to the world of investments together. We can’t wait to see what you’ll bring to the team!

Frequently Asked Questions (FAQs) for Head of Information Security & IT Role at Passthrough
What are the main responsibilities of the Head of Information Security & IT at Passthrough?

The Head of Information Security & IT at Passthrough is responsible for overseeing all security, compliance, and IT aspects of the company. Key duties include managing certifications like ISO 27001 and SOC II, ensuring compliance with GDPR, and implementing IT policies. Additionally, the position involves device management, providing tech support, secure configuration of third-party vendors such as Salesforce, and collaborating with the engineering team to enhance the application’s infrastructure.

Join Rise to see the full answer
What qualifications do I need to become the Head of Information Security & IT at Passthrough?

To qualify for the Head of Information Security & IT role at Passthrough, candidates should have experience with SOC 2 and ISO 27001 frameworks, management of IT and InfoSec policies, and expertise in deploying devices with JAMF or similar tools. Additionally, certifications like CISSP, CISA, or CISM are preferred, along with the ability to write scripts in Bash and Python. Strong communication skills and adaptability are essential.

Join Rise to see the full answer
What technologies will I be working with as the Head of Information Security & IT at Passthrough?

As the Head of Information Security & IT at Passthrough, you'll work with technologies including JAMF, Apple Business Manager, MacOS, Linux, Python, and Google Cloud Platform. Familiarity with these tools is critical in managing device security and supporting internal tech functionalities effectively.

Join Rise to see the full answer
How will the Head of Information Security & IT contribute to the company's growth?

The Head of Information Security & IT at Passthrough will significantly contribute to the company's growth by ensuring that our tech infrastructure is robust and secure. By implementing effective security policies, managing compliance, and optimizing IT systems, you'll help build trust with our clients and partners, ultimately enabling us to facilitate larger investments and streamline the investor onboarding process.

Join Rise to see the full answer
What is the hiring process for the Head of Information Security & IT at Passthrough?

The hiring process for the Head of Information Security & IT at Passthrough consists of an initial screening to understand your background, a technical interview covering device management and IT security, followed by on-site interviews with key team members. The process is designed to provide the best match for both candidates and the company, ensuring transparency and equity.

Join Rise to see the full answer
Common Interview Questions for Head of Information Security & IT
What strategies would you use to implement IT policies at Passthrough?

When implementing IT policies at Passthrough, I would start by assessing the current setup and understanding the unique needs of the organization. Collaborating with different departments to gather input will be essential. Furthermore, I would prioritize compliance requirements, establish clear communication channels, and ensure that training resources are available to facilitate smooth adoption.

Join Rise to see the full answer
Can you describe your experience with ISO 27001 and how it applies to the Head of Information Security & IT role?

Throughout my career, I have gained extensive experience in implementing ISO 27001 standards by developing frameworks to safeguard data. This experience equips me to oversee our compliance initiatives at Passthrough, ensuring that all security controls are in place to protect sensitive investor information while adhering to industry best practices.

Join Rise to see the full answer
How do you handle device management in a tech environment like Passthrough?

Device management in a tech-driven environment like Passthrough requires a structured approach. Utilizing tools such as JAMF and Apple Business Manager, I would ensure secure onboarding and continuous monitoring of devices. I would establish protocols for regular updates, compliance checks, and offer support to employees for any challenges related to device security.

Join Rise to see the full answer
What steps would you take to ensure compliance with GDPR at Passthrough?

To ensure compliance with GDPR at Passthrough, I would first conduct a thorough review of our data handling practices and ensure that consent mechanisms are in place for data collection. Training employees about GDPR policies and monitoring compliance would follow, coupled with regular audits to maintain data integrity and address any potential issues promptly.

Join Rise to see the full answer
How would you collaborate with the engineering team to enhance Passthrough's application security?

Collaboration with the engineering team would involve regular meetings to discuss potential security vulnerabilities and develop solutions proactively. I would ensure we implement security measures during the software development lifecycle and conduct regular penetration testing to identify areas for improvement while maintaining clear communication throughout.

Join Rise to see the full answer
What is your experience with SOC II compliance, and how can you manage it at Passthrough?

My experience with SOC II compliance involves managing the entire process, from setting control objectives to executing audit preparations. At Passthrough, I would conduct risk assessments to establish necessary controls, oversee compliance training for staff, and coordinate with auditors to ensure a seamless audit process while continuously refining practices based on feedback.

Join Rise to see the full answer
How would you respond to a security incident within Passthrough?

In the event of a security incident at Passthrough, I would activate our incident response plan, ensuring immediate containment of the breach. Following that, I would conduct a thorough investigation, identifying the cause and impact before communicating transparently with stakeholders. Finally, I'd implement measures to prevent future incidents and adjust our policies accordingly.

Join Rise to see the full answer
What role do clear communication skills play in the Head of Information Security & IT position?

Clear communication skills are vital for the Head of Information Security & IT position as they facilitate effective collaboration with cross-functional teams, ensure that everyone understands security protocols, and convey complex information in simple terms. This clarity fosters a security-minded culture at Passthrough and builds trust among stakeholders.

Join Rise to see the full answer
How do you prioritize tasks when managing multiple IT projects simultaneously?

When handling multiple IT projects, I prioritize tasks based on the company's strategic goals and compliance requirements. I would utilize project management tools to track progress and deadlines while factoring in resource availability, ensuring critical projects that affect security and compliance receive attention first.

Join Rise to see the full answer
How would you approach tech support for employees at Passthrough?

My approach to tech support would include creating a clear support process for employees, utilizing ticketing systems for tracking issues, and ensuring timely responses. Additionally, I would offer regular training sessions to empower employees on basic troubleshooting and best security practices, fostering a culture of security awareness while minimizing helpdesk overload.

Join Rise to see the full answer

At Passthrough, we help alternative investors own their identity and bring it wherever they want. Starting with products like fund closing and know-your-customer/anti-money-laundering software, we make it simple for investment firms, administrato...

8 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 21, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!