A complete application in a minute — tailored resume and cover letter, ready to send.
Lendistry is seeking an Incident Manager to lead the security and operational incident response function while supporting the GRC program that keeps the company audit-ready. This role owns incident command from detection through resolution and coordinates cross-functional response across Security, IT, Legal, Compliance, and Leadership.
The position requires 3-5 years in incident response or risk management, familiarity with SOC 2 and GLBA Safeguards Rule, and knowledge of ISO/IEC 27001.
Lendistry is an Equal Opportunity/Affirmative Action Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, or membership in any other group protected by federal, state, or local law. If you need assistance or accommodation due to a disability, you may contact us at hr@lendistry.com Lendistry does not accept unsolicited resumes from recruiters, employment agencies, or staffing firms. To conduct business with Lendistry, a Master Services Agreement (MSA) must be executed and confirmed prior to submitting any information relating to a potential candidate. Without a signed MSA, Lendistry shall not be responsible to any individual or entity for any payment relating to any form of fee or compensation. And, in the event that a resume or candidate is submitted by a recruiter, an employment agency, or a staffing firm without a fully executed MSA, Lendistry has the unrestricted right to pursue and hire any of those candidate(s) without any legal or financial responsibility to the recruiter, agency, and/or firm.
This position is based onsite at our Los Angeles, CA location. Candidates must be able to work in-office as part of the role's regular schedule.
The Incident Manager leads the organization's security and operational incident response function while supporting the GRC program that keeps the company audit-ready. This role owns incident command from detection through resolution, directs cross-functional response across Security, Engineering, IT, Legal, Compliance, Communications, Facilities, HR, and Executive Leadership, and translates each incident into measurable improvement through KPIs, after-action documentation, and updated controls. The role also supports ongoing compliance obligations (SOC 2, GLBA Safeguards Rule, ISO/IEC 27001) so that incident response and compliance posture reinforce each other rather than operating as separate functions.
3-5 years of experience in incident response, GRC, or risk management, preferably in a regulated environment such as fintech or financial services. Direct experience serving as Incident Commander or in a comparable incident leadership role, including running IAPs and post-incident reviews. Familiarity with SOC 2 and GLBA Safeguards Rule compliance programs; working knowledge of ISO/IEC 27001. Experience building and tracking KPIs/metrics for incident response and compliance programs. Strong written documentation skills; comfortable producing audit-ready records under time pressure. Professional certifications such as IC 100/200 preferred. Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience/certifications.
The US base salary range for this full-time position is $118,300-$136,300 annually. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum base salary for new hires for the position across all US locations. Within the range, individual pay is determined by multiple factors like job-related skills, experience, and state of residence. Your recruiter can share more about the specific salary range during the interview process. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include any variable compensation elements.
This is a stationary position that requires frequent sitting (approximately 95%), repetitive wrist motions, grasping, speaking, listening, close vision, and the ability to adjust focus. It also may require occasional standing, lifting, carrying of 20lbs or less, walking, kneeling, bending/stooping, twisting, pulling/pushing, and reaching above the shoulder. Employees in this position must be physically able to efficiently perform the essential functions of the position.
B.S.D. Capital, Inc. dba Lendistry is an equal employment opportunity employer committed to providing its employees, applicants and other covered persons with equal opportunities without regard to race, color, age (40 or older), religious creed (including religious belief, practice or dress and grooming practices), national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender (including pregnancy, childbirth or medical condition related to pregnancy or childbirth), gender expression, gender identity, sexual orientation, military or veteran status (including past, current or prospective service), or any other characteristic protected under applicable federal, state or local law. B.S.D. Capital, Inc. dba Lendistry is a minority-led fintech lender and community development financial institution (CDFI). At Lendistry, we're more than just a fintech company - we're a mission-driven team changing the game for small business owners and the communities they serve. As a national employer and proud recipient of 2025's Best Places to Work in Fintech, we believe in creating opportunity, driving equity, and delivering impact where it matters most. We're looking for strategic thinkers and passionate doers—people who show up every day ready to make a real difference. If you're driven by purpose and thrive in a culture of innovation and service, Lendistry might just be the place for you.