CISO

Rain

New York (NY)

Hybrid

USD 200,000 - 250,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Unlimited vacation
Flexible working
Comprehensive health benefits
401(k) with company match
Equity option plan
Health and wellness spending
Team summits

Job summary

A fintech payment company in New York is seeking a Chief Information Security Officer (CISO) to own and drive the security governance, risk, and compliance strategy. The ideal candidate will have 8–12+ years in information security, with strong experience in ISO 27001 and compliance programs. This role offers a base salary range of $200K - $250K and a flexible, inclusive environment fostering professional growth and impact within the company.

Qualifications

  • 8–12+ years of experience in information security, GRC, or security leadership roles.
  • Experience leading ISO 27001 certification efforts.
  • Strong understanding of security governance, risk management frameworks.

Responsibilities

  • Own Rain’s information security and compliance strategy.
  • Design and improve security governance framework.
  • Oversee incident response governance.

Skills

Information security
Governance, Risk, and Compliance (GRC)
ISO 27001
Cloud security
Risk management

Job description

Get AI-powered advice on this job and more exclusive features.

This range is provided by Rain. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

$200,000.00/yr - $250,000.00/yr

About The Company

Rain makes the next generation of payments possible across the globe. We’re a lean and mighty team of passionate builders and veteran founders. Our infrastructure makes stablecoins usable in the real-world by powering card transactions, cross-border payments, B2B purchases, remittances, and more. We partner with fintechs, neobanks, and institutions to help them launch solutions that are global, inclusive, and efficient. You will have the opportunity to deliver massive impact at a hypergrowth company that is funded by some of the top investors in fintech, crypto, and SaaS, including Sapphire Ventures, Norwest, Galaxy Ventures, Lightspeed, Khosla, and several more. If you’re curious, bold, and excited to help shape a borderless financial future, we’d love to talk.

Our Ethos

We believe in an open and flat structure. You will be able to grow into the role that most aligns with your goals. Our team members at all levels have the freedom to explore ideas and to influence our company's roadmap and vision.

What You’ll Do

As CISO, you will own Rain’s security governance, risk, and compliance strategy, with a particular focus on ISO certification and regulatory readiness, while partnering closely with engineering, infrastructure, legal, and operations teams.

  • Own and drive Rain’s information security and compliance strategy, with a primary focus on ISO 27001 (and related standards) readiness, certification, and ongoing maintenance
  • Serve as the executive owner for security compliance programs (e.g., ISO 27001, SOC 2, vendor risk, customer security reviews)
  • Design, implement, and continuously improve Rain’s security governance framework, including policies, standards, and risk management processes
  • Partner closely with Engineering, Infrastructure, Product, Legal, and Operations to embed compliance and security requirements into technical and business workflows
  • Lead and manage external audits, certifications, and assessments, acting as the primary point of contact for auditors and assessors
  • Translate regulatory, customer, and partner security requirements into practical, scalable controls that align with Rain’s architecture and operating model
  • Own the risk management lifecycle, including risk identification, assessment, prioritization, and executive reporting
  • Establish and track security and compliance metrics, reporting posture, progress, and risk to executive leadership and the board as needed
  • Oversee incident response governance, ensuring policies, playbooks, and escalation paths meet compliance and regulatory expectations
What We're Looking For
  • 8–12+ years of experience in information security, GRC, or security leadership roles, with demonstrated ownership of compliance programs
  • Hands‑on experience leading ISO 27001 certification efforts (initial certification and/or ongoing surveillance audits)
  • Experience operating as a security leader in a high‑growth, technology‑driven company, ideally in fintech, payments, or regulated environments
  • Strong understanding of security governance, risk management, and control frameworks (ISO 27001/27002, SOC 2, NIST, etc.)
  • Proven ability to partner effectively with engineering and technical teams to implement controls in cloud‑native and application‑driven environments
  • Experience managing third‑party risk, customer security questionnaires, and enterprise security reviews
  • Ability to clearly communicate risk, trade‑offs, and priorities to executives and non‑technical stakeholders
Nice to have, but not mandatory
  • Experience with additional frameworks such as SOC 2 Type II, PCI DSS, ISO 22301, or regional regulatory requirements
  • Prior experience acting as a first or early security leader at a scaling company
  • Familiarity with cloud security and modern application architectures, even if not hands‑on day‑to‑day
  • Experience supporting global customers or international compliance requirements
  • Security or compliance certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer / Auditor)
  • Experience presenting security posture or risk assessments to boards or executive committees
Things that enable a fulfilling, healthy, and happy experience at Rain:
  • Unlimited time off 🌴 Unlimited vacation can be daunting, so we require Rainmakers to take at least 10 days off.
  • Flexible working ☕ We support a flexible workplace. If you feel comfortable at home, please work from home. If you’d like to work with others in an office, feel free to come in. We want everyone to be able to work in the environment in which they are their most confident and productive selves. New Rainmakers will receive a stipend to create a comfortable home environment.
  • Easy to access benefits 🧠 For US Rainmakers, we offer comprehensive health, dental and vision plans for you and your dependents, as well as a 100% company subsidized life insurance plan.
  • Retirement goals 💡 Plan for the future with confidence. We offer a 401(k) with a 4% company match.
  • Equity plan 📦 We offer every Rainmaker an equity option plan so we can all benefit from our success.
  • Rain Cards 🌧️ We want Rainmakers to be knowledgeable about our core products and services. To support this mission, we issue a card for our team to use for testing.
  • Health and Wellness 📚 High performance begins from within. Rainmakers are welcome to use their card for eligible health and wellness spending like gym memberships/fitness classes, massages, acupuncture - whatever recharges you!
  • Team summits ✨ Summits play an important role at Rain! Time spent together helps us get to know each other, strengthen our relationships, and build a common destiny. Expect team and company off‑sites both domestically and internationally.

Compensation Range: $200K - $250K

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CISO New York, NY, Remote
CISO New York, NY, Remote

raincards.xyz • New York (NY)

Hybrid
USD 150,000 - 200,000
Unlimited vacation
Flexible workplace
Comprehensive health and wellness benefits
+4
Regulatory & Security Compliance Manager
Regulatory & Security Compliance Manager

Next Matter • New York (NY)

On-site
USD 65,000 - 110,000
Unlimited time off
Flexible working
Comprehensive health benefits
+4
Security Engineer New York, NY, Remote
Security Engineer New York, NY, Remote

raincards.xyz • New York (NY)

Hybrid
USD 110,000 - 150,000
Unlimited vacation
Flexible work environment
Comprehensive health benefits
+4
IT Systems and Automation Engineer
IT Systems and Automation Engineer

Rain • United States

On-site
USD 90,000 - 140,000
Unlimited time off
Deferred remote work flexibility
Security Engineer
Security Engineer

Rain • New York (NY)

Hybrid
USD 120,000 - 200,000
Unlimited time off
Flexible working
Comprehensive health benefits
+2
Software Engineer - Compliance
Software Engineer - Compliance

Kubelt • New York (NY)

Hybrid
USD 130,000 - 238,000
Unlimited time off
Flexible working
Comprehensive health benefits
+4
Software Engineer - Compliance
Software Engineer - Compliance

Rain • New York (NY)

On-site
USD 130,000 - 238,000
Unlimited time off
Flexible working environment
Comprehensive health benefits
+4
Forward Deployed Engineer
Forward Deployed Engineer

Next Matter • New York (NY)

On-site
USD 120,000 - 190,000
Unlimited time off
Flexible working
Comprehensive health benefits
+4
Senior Director of Sales
Senior Director of Sales

Next Matter • New York (NY)

On-site
USD 239,000 - 300,000
Unlimited vacation
Flexible working options
Comprehensive health benefits
+4
IT Systems and Automation Engineer
IT Systems and Automation Engineer

Next Matter • New York (NY)

Hybrid
USD 90,000 - 140,000
Unlimited time off
Flexible working
Health, dental and vision plans
+5