Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Head of Information Security, IT, Governance, Risk, and Compliance image - Rise Careers
Job details

Head of Information Security, IT, Governance, Risk, and Compliance

Predictive analytics and machine learning power Socure’s groundbreaking technology and fuel our mission to verify 100% of good identities in real time and completely eliminate identity fraud on the internet.

Socure is the world leader in digital identity verification and fraud prevention. Our recent awards include Forbes 2022 America’s Best Startup Employers, The Forbes Cloud 100, The Deloitte Technology Fast 500, and Inc. 5000’s fastest growing companies.

Listen to why some of the world’s top technology investors see the enormous, transformative potential in Socure’s mission and products:

https://www.youtube.com/watch?v=ifM9_jPQCv8

Overview:

Socure is the leading platform for digital identity verification and fraud detection. We harness cutting-edge AI and machine learning to deliver real-time, predictive analytics that help financial institutions, government agencies, and enterprises securely onboard customers and thwart fraud. Trusted by some of the world’s largest organizations, we are on a mission to eliminate identity fraud and build a future where all digital identities are trusted.

As a rapidly growing technology company, Socure is committed to maintaining the highest standards of data security, privacy, and compliance. We are looking for a dynamic and experienced leader to head our Information Security, IT, Governance, Risk, and Compliance (GRC) functions, ensuring that our technology, processes, and policies continue to meet the demands of a fast-evolving regulatory landscape and an ever-changing threat environment.

Position Overview

As the Head of Information Security, IT, GRC, you will be responsible for shaping Socure’s global security and compliance posture. Reporting to the CTO, you will develop and execute a strategic roadmap for information security, IT operations, regulatory compliance, and risk management. This role demands forward-thinking leadership, deep technical expertise, and exceptional stakeholder management skills, ensuring Socure remains an industry leader in safeguarding digital identities.

Key Responsibilities:

Security & Risk Strategy

  • Define, implement, and maintain Socure’s overall security strategy and roadmap in alignment with business goals.

  • Continuously evaluate emerging threats and industry trends, adapting the security strategy to anticipate and mitigate risks.

Governance & Compliance

  • Oversee Socure’s governance frameworks and compliance with relevant regulations and standards (e.g., SOC 2, ISO 27001, GDPR, PCI-DSS).

  • Ensure continuous readiness for audits and certifications, partnering closely with external auditors and internal stakeholders

  • Develop and maintain company-wide security and compliance policies, ensuring they remain current and well-communicated.

IT Infrastructure & Operations

  • Lead the IT function, overseeing day-to-day technology operations, infrastructure, and service delivery to support Socure’s global workforce.

  • Collaborate with Engineering, Product, and Data Science teams to ensure secure and efficient deployment of systems, platforms, and applications.

  • Manage vendor relationships, contract negotiations, and service-level agreements for critical technology services.

Enterprise Risk Management

  • Develop and operationalize a robust risk management program, identifying and assessing key technical, operational, and strategic risks.

  • Establish risk thresholds and reporting frameworks to inform executive leadership and guide risk mitigation strategies.

  • Ensure a consistent and repeatable process for risk assessments, documentation, and remediation tracking.

Incident Response & Business Continuity

  • Oversee security monitoring and incident response processes, including detection, containment, remediation, and post-incident reviews.

  • Continuously update and test business continuity and disaster recovery plans to minimize disruption and ensure rapid recovery.

Leadership & Team Building

  • Hire, mentor, and develop a high-performing GRC and IT team, fostering a culture of ownership, innovation, and continuous improvement.

  • Champion security and compliance best practices across the   organization through training, awareness programs, and effective stakeholder engagement.

Stakeholder Collaboration

  • Serve as a key advisor to executive leadership on all matters related to security, IT governance, risk, and compliance.

  • Partner with Product and Engineering teams to embed security from design through deployment, ensuring best-in-class security features for our customers.

  • Communicate proactively with clients, prospects, partners, and regulatory bodies regarding Socure’s security posture and risk management initiatives.

Qualifications

Education & Certifications

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field (Master’s degree preferred).

  • Relevant industry certifications (e.g., CISSP, CISM, CRISC, CISA)
    strongly preferred.

Soft Skills

  • Exceptional communication skills, capable of conveying complex technical topics to diverse audiences, including executives, clients, and regulators.

  • Strong analytical and problem-solving capabilities, with a data-driven mindset.

  • Proven ability to build and maintain relationships across technical and non-technical teams.

Experience

  • 10+ years of progressively responsible experience in information security, IT governance, risk management, and compliance roles.

  • 5+ years of leadership experience, managing cross-functional teams in a high-growth technology or fintech environment.

  • Demonstrated success in developing security programs and achieving major compliance milestones (e.g., SOC 2 Type II, ISO 27001).

Technical & Domain Expertise

  • Comprehensive knowledge of security technologies (e.g., SIEM, EDR, network security, identity and access management).

  • Strong understanding of cloud platforms (AWS, Azure, or GCP) and modern DevOps practices.

  • Familiarity with emerging identity verification standards and fintech-specific compliance requirements a plus.

Socure is all about encouraging people to push the boundaries of what’s possible through top-tier performance, innovation, ownership, and shared expertise.

We empower excellence by providing great perks and benefits to both our fully remote employees in North America and our hybrid teams in India.

To learn more, check out Socure’s Career Page: https://www.socure.com/company/careers

Socure is an equal opportunity employer and value diversity of all kinds at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

To learn more about how our work is changing the world, check out these articles and videos:

Please note that we do not accept unsolicited resumes from recruiters or employment agencies. In the absence of a signed Recruitment Services Agreement, we will not consider, or agree to, payment of any referral compensation or recruiter fee. In the event that a recruiter or agency submits a resume or candidate without a previously signed agreement, we explicitly reserve the right to pursue and hire those candidate(s) without any financial obligation to the recruiter or agency.

Socure Glassdoor Company Review
2.8 Glassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star iconGlassdoor star icon
Socure DE&I Review
2.6 Glassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star iconGlassdoor star icon
CEO of Socure
Socure CEO photo
Johnny Ayers
Approve of CEO

Average salary estimate

$175000 / YEARLY (est.)
min
max
$150000K
$200000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Head of Information Security, IT, Governance, Risk, and Compliance, Socure

Are you ready to take the lead in shaping the future of digital identity security? Socure is searching for a passionate Head of Information Security, IT, Governance, Risk, and Compliance (GRC) to join our innovative team in the United States. At Socure, we harness the power of predictive analytics and machine learning to ensure that 100% of good identities are verified in real-time, effectively eliminating identity fraud. As the pioneering platform in fraud prevention, we're committed to safeguarding digital identities, and we need a visionary leader like you to enhance our security and compliance measures. In this exciting role, you’ll develop a strategic roadmap for our information security, oversee our IT operations, and engage with key stakeholders to ensure our policies and technologies remain ahead of evolving threats. Collaborating closely with our CTO, you’ll continuously evaluate industry trends and adjust strategies to position Socure as a frontrunner in identity verification. Your responsibilities will include managing risk assessment processes, spearheading incident response initiatives, and leading a top-tier GRC team. If you are driven by the prospect of creating a secure digital future and possess a strong technical background in information security, this is an unparalleled opportunity to make an impact. At Socure, we believe in pushing the boundaries of technology while also supporting our employees with great benefits, whether they are part of our remote teams in North America or our hybrid workforce in India. Join us in our mission to build a world where every digital identity is trusted!

Frequently Asked Questions (FAQs) for Head of Information Security, IT, Governance, Risk, and Compliance Role at Socure
What are the core responsibilities of the Head of Information Security at Socure?

As the Head of Information Security at Socure, you will define and implement our overall security strategy while managing IT operations, governance frameworks, and compliance with regulatory standards. You'll be evaluating emerging threats, overseeing risk management, and ensuring the company is always audit-ready. Moreover, you'll lead the IT function, develop a strong GRC team, and serve as a key advisor to executive leadership on security matters.

Join Rise to see the full answer
What qualifications are needed for the Head of Information Security position at Socure?

Candidates for the Head of Information Security role at Socure should have at least a Bachelor's degree in Computer Science, Information Systems, or Cybersecurity, with a Master's preferred. Relevant industry certifications such as CISSP, CISM, CRISC, or CISA are strongly preferred. Additionally, a minimum of 10 years of experience in information security and compliance, coupled with leadership experience in a high-growth tech environment, is crucial.

Join Rise to see the full answer
How does Socure's Head of Information Security collaborate with other teams?

In the Head of Information Security role at Socure, collaboration is key. You will work closely with the Engineering, Product, and Data Science teams to ensure secure deployment of systems and applications. Furthermore, you will communicate proactively with clients, partners, and regulatory bodies regarding our security posture and risk management initiatives, fostering a culture of security across the organization.

Join Rise to see the full answer
What skills are essential for succeeding as the Head of Information Security at Socure?

To succeed in the Head of Information Security position at Socure, strong analytical and problem-solving skills are essential. You must also possess exceptional communication abilities to convey complex technical topics to diverse audiences. Additionally, leadership experience and the ability to build strong relationships across various technical and non-technical teams will contribute significantly to your success in this role.

Join Rise to see the full answer
What impact will the Head of Information Security have on Socure's mission?

The Head of Information Security at Socure plays a vital role in our mission to verify identities and eliminate fraud. By developing and executing a robust security strategy and ensuring compliance with regulatory standards, you will directly influence how Socure safeguards digital identities. This leadership position not only protects our assets but also enhances client trust in our services, driving the overall impact of our innovative solutions.

Join Rise to see the full answer
Common Interview Questions for Head of Information Security, IT, Governance, Risk, and Compliance
Can you outline your experience in information security leadership roles?

When answering this question, highlight specific leadership roles you've held, detailing your responsibilities and achievements in each position. Discuss how you developed security programs and led teams, emphasizing successful compliance initiatives and risk management strategies.

Join Rise to see the full answer
How do you assess and mitigate security risks within an organization?

Talk about the frameworks and methodologies you use for risk assessment, such as qualitative and quantitative analyses. Give examples of specific risks you've identified and how you've developed mitigation strategies to address them effectively.

Join Rise to see the full answer
What strategies do you use to ensure compliance with security regulations?

Describe your experience with various compliance regulations like SOC 2, ISO 27001, and GDPR. Provide examples of successful audits and how you have maintained compliance by developing and updating policies, conducting training, and ensuring communication among stakeholders.

Join Rise to see the full answer
How do you keep up with emerging security threats and technologies?

Share your approach to staying informed about industry trends and updates. Discuss resources you utilize, such as security blogs, webinars, and conferences, and how you incorporate this knowledge into your strategic planning and threat mitigation efforts.

Join Rise to see the full answer
Can you give an example of a significant security incident you managed?

When responding, describe the incident in detail, focusing on your role in incident response. Explain how you coordinated the detection, containment, and recovery efforts, what lessons were learned, and how you updated processes or policies as a result.

Join Rise to see the full answer
What is your philosophy on building a security-aware culture in an organization?

Discuss your approach to promoting security awareness through training and communication. Highlight the importance of fostering ownership among employees and how you have successfully engaged both technical and non-technical teams to create a strong security posture.

Join Rise to see the full answer
How do you balance security initiatives with business objectives?

Explain how you prioritize security measures while ensuring they align with business goals. Share experiences where you worked collaboratively with business leaders to find a balance that enables growth without compromising security.

Join Rise to see the full answer
What experience do you have with cloud security and compliance?

Detail your experience with cloud platforms and specific security measures you've implemented in those environments. Discuss any relevant certifications or projects that showcase your expertise in cloud security compliance.

Join Rise to see the full answer
How do you manage vendor relationships concerning security and compliance?

Talk about your experience negotiating contracts and service-level agreements with vendors. Highlight your focus on ensuring that third-party partners comply with your organization's security standards and how you monitor and evaluate vendor performance.

Join Rise to see the full answer
What tools and technologies do you consider essential for modern information security management?

Share your knowledge of essential security technologies like SIEM, EDR, and identity management platforms. Discuss your experience implementing these tools and how they contribute to effective security monitoring and risk management in an organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 4 days ago
Dental Insurance
Flexible Spending Account (FSA)
Disability Insurance
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Family Medical Leave
Paid Holidays

Join Socure as a Product Design Intern and gain valuable UX/UI experience while working to eliminate identity fraud.

Photo of the Rise User
Posted 13 days ago
Dental Insurance
Flexible Spending Account (FSA)
Disability Insurance
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Family Medical Leave
Paid Holidays
Photo of the Rise User

Join the University of Chicago as a Software Engineering Manager to lead impactful software projects in the field of data science.

Photo of the Rise User

As an Associate Director at AbbVie, you will lead transformative Salesforce solutions impacting global healthcare.

Photo of the Rise User
Posted 9 days ago

Join Peraton as an AWS DevOps Engineer to support mission-critical cloud solutions.

Join IBA InfoTech as an Engagement Manager to oversee z/OS performance monitoring and migration initiatives.

Posted 9 days ago

Join Lightwave as an IT Field Technician to deliver on-site support across multiple dental practices.

Photo of the Rise User
Anduril Industries Hybrid Costa Mesa, California, United States
Posted 9 days ago

Join Anduril Industries as an IT Technician and support vital defense technology systems.

Photo of the Rise User
Upwork Remote Manila, Metro Manila, Philippines
Posted 16 hours ago

An American multinational technology company seeks a skilled M365 Technical Advisor to enhance customer utilization and support of Microsoft 365.

Socure is solving what was once considered unsolvable. Our mission is to verify 100% of good identities in real time and completely eliminate identity fraud on the internet.

10 jobs
MATCH
Calculating your matching score...
BENEFITS & PERKS
Dental Insurance
Flexible Spending Account (FSA)
Disability Insurance
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Family Medical Leave
Paid Holidays
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 4, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
37 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Dayton just viewed Inventory Control Analyst II at Aretum
Photo of the Rise User
Someone from OH, Dayton just viewed Business Analyst (Supply Chain project) at Nagarro
Photo of the Rise User
Someone from OH, Dayton just viewed Sr. Logistics Analyst at Innio
Photo of the Rise User
47 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
36 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Cincinnati just viewed Forensic Nurse Examiner-Prn Shift Varies at TriHealth
Photo of the Rise User
Someone from OH, New Albany just viewed Junior Buyer at CSC Generation
Photo of the Rise User
Someone from OH, Columbus just viewed Financial Administrator Intern at Finalsite
F
Someone from OH, Columbus just viewed Part Time Support Lead at Five Below
Photo of the Rise User
Someone from OH, North Olmsted just viewed Art Director - Creative- KY at Photon
Photo of the Rise User
Someone from OH, Cleveland just viewed Account Executive, Army SOF/COCOMs at Pure Storage
Photo of the Rise User
Someone from OH, Kent just viewed IT Compliance Analyst I at Fidelity National Financial
Photo of the Rise User
Someone from OH, Dayton just viewed Music Production / Creative Intern at Landor
Photo of the Rise User
Someone from OH, Cleveland just viewed Double Remote Assistant (Central US) at Zirtual
S
Someone from OH, Cincinnati just viewed Product Manager - Remote at Substance
Photo of the Rise User
Someone from OH, Mason just viewed IT General Controls Tester at ING