Vice President, Infrastructure and Security

FloatMe, Corp.

Jacksonville, Northern (TX, KY)

Hybrid

USD 200,000 - 320,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

FloatMe is seeking a Vice President, Infrastructure and Security to own our infrastructure strategy and security program. This hands-on leader will manage SOC 2, GLBA, and PCI DSS compliance while guiding cloud and on‑premises security across the organization.

You will balance tactical execution with strategic planning and report to the SVP of Engineering. You will drive security architecture, incident response, risk assessments, and vendor security reviews in a fast-moving fintech environment,

Qualifications

  • 10+ years’ of progressive information security experience, including leadership.
  • Hands-on experience leading SOC 2 audits and GLBA/PCI DSS compliance.
  • Proficiency with cloud security (AWS) and related tooling.
  • Experience building and operating incident response programs and playbooks.
  • Experience managing bank/enterprise security reviews and third‑party risk.
  • Strong written and verbal communication for technical and business audiences.

Responsibilities

  • Steer architecture of Cloud, Device, Code, App, AI, and Network infrastructure with security-first design.
  • Lead security and infrastructure teams, including IT, Data, and Security.
  • Represent security in partner questionnaires, risk assessments, and due diligence.
  • Own SOC 2 Type II program end‑to‑end: scoping, controls, evidence, auditors.

Skills

Security leadership
SOC 2 management
Cloud security
Incident response
Penetration testing
Compliance management
Communication

Tools

SIEM
EDR
Vulnerability management
Secrets management
WAF
IAM

Job description

About the Role

We're hiring a Vice President, Infrastructure and Security to own and elevate our infrastructure strategy and security program at FloatMe. This role is an exciting opportunity for a security leader looking to grow into a CISO position. The ideal candidate should be very hands-on, not just a “policy manager”. We need someone who can sit in a compliance review one hour and be configuring security tooling themselves the next. Infrastructure - This candidate will have stewardship over our infrastructure including individual computer hardware, office infrastructure, cloud infrastructure, code security and infrastructure, app architecture and security, AI security, and critical partnerships architectures. Security - This candidate’s stewardship requires expertise in securing all of the above areas, help us pursue SOC2 compliance, and maintain the highest security for our users and staff. You’ll own our security roadmap, our compliance certifications, our partner security reviews, and the day-to-day technical operations that keep our members’ data safe. Hands-On Required - We’re a small, nimble team, which means this role requires the flexibility to switch gears between tactical execution and strategic planning. This role reports to our SVP of Engineering. If you’re excited to join a fast-moving fintech where you can build something meaningful, we’d love to hear from you!

What You’ll Do
  • Steer the architecture of our Cloud, Device, Code, App, AI, and Network infrastructure with a mind for security-first designs and plans.

  • Set the direction for a small number of our staff regarding our infrastructure design, security, integrations and partnerships, and more (IT, Data, and Security).

  • Serve as the primary security point of contact for our bank and fintech partners, completing security questionnaires, third-party risk assessments, and due diligence requests.

  • Own our SOC 2 Type II program end-to-end, including scoping, control design, evidence collection, and auditor management.

  • Maintain and strengthen our compliance posture across GLBA, PCI DSS, and other applicable financial services regulatory frameworks.

  • Manage and improve our core security infrastructure: SIEM, EDR, WAF, IAM, secrets management, and vulnerability scanning tools.

  • Conduct or manage regular penetration testing and vulnerability assessments, and drive remediation to closure.

  • Lead incident response efforts — including hands-on triage, containment, forensics, post-incident review, and breach notification processes.

  • Build and run security awareness training and phishing simulations across the company.

  • Review and negotiate security requirements in partner and vendor contracts.

  • Partner cross-functionally with Product, Engineering, Finance, and Legal to embed security into everything we build.

  • Develop and maintain our multi-year security roadmap and report security posture and risk to executive leadership.

Who You Are
  • A driver and an “owner”, not a passenger - You make the plans for your area of ownership, you seek the buy-in you need, you propose the alternatives, you drive projects to completion, even if it means you do a big percentage of the work yourself. You will have support, but you will be getting “in the mud” with the rest of us.

  • A hands-on and self-driven security leader — You’re as comfortable writing a detection rule in your SIEM as you are presenting risk to the board. You don’t plan to delegate everything, hands-on as much as you can, and you don’t wait to be asked to own this space, you actually and truly must “own it” completely.

  • A compliance expert — You have deep, practical experience leading SOC 2 audits and navigating financial services frameworks like GLBA and PCI DSS. You know what auditors actually look for.

  • A skilled communicator — You can translate complex technical risk into plain language for bank partners, executives, and non-technical teammates. You’re a trusted voice in the room.

  • A builder and operator — You’re energized by building and improving things, not just inheriting them. You’re comfortable owning both strategy and execution simultaneously.

  • A collaborative team player — You work closely with engineering, product, and compliance without becoming a blocker. You protect the business without slowing it down.

  • Passionate about fintech — You understand the unique security and compliance landscape of consumer financial products and are excited about what we’re building.

Who You Are Not
  • An auditor or “paper pusher” — We need you to not only help us decide what security posture we need, but you will need to help implement that posture yourself. We’re a smaller but very effective team and really need this player to be very hands-on.

  • A recreational player - We are looking for someone hungry, competitive, and an impact player who can truly “cover” this area of our company, making us all sleep easier at night knowing that you have our security and infrastructure posture well-covered.

Requirements
  • 10+ years’ of progressive experience in information security, with at least 2 years in a senior IC or leadership role. Prior leadership experience in a role adjacent to “VP of Infrastructure and Security” preferred. The key here is that you can both be the thinker and leader we need, but also still feel very comfortable being hands-on.

  • Demonstrated hands‑on experience leading SOC 2 Type I/II audits from scoping through certification.

  • Practical knowledge of GLBA, PCI DSS, and other financial services compliance requirements.

  • Direct experience managing bank partner or enterprise security reviews (e.g., SIG, CAIQ, VSA questionnaires).

  • Proficiency with cloud security (AWS and Cloudflare preferred), including IAM, VPCs, CloudTrail, GuardDuty, or equivalents.

  • Hands‑on experience with penetration testing methodologies or managing third‑party pen test engagements.

  • Strong working knowledge of SIEM, EDR, vulnerability management, and secrets management tooling.

  • Experience building and running an incident response program, including playbooks and tabletop exercises.

  • Excellent written and verbal communication skills — you can explain technical risk to non-technical stakeholders.

  • Experience in fintech, neobank, lending, or another consumer financial services environment strongly preferred.

  • CISSP, CISM, CISA, or equivalent certification are a plus.

Bonus points for willingness and capability to
  • Read and review, or automate the review of server-side code for security (Golang)

  • Read and review, or automate the review of apps-side code for security (Flutter)

FloatMe is proud to be an equal opportunity employer. FloatMe provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws, and prohibits discrimination and harassment of any type.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hands-On Fintech Infrastructure & Security Leader
Hands-On Fintech Infrastructure & Security Leader

FloatMe, Corp. • Jacksonville (TX), Northern (KY)

Hybrid
USD 200,000 - 320,000
Senior Software Engineer, Security
Senior Software Engineer, Security

Flex • Northern (KY)

Hybrid
USD 170,000 - 230,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Greenboard • New York (NY)

Hybrid
USD 165,000 - 240,000
Salary + equity
401(k) match
Medical/Dental/Vision
+3
Offensive Security Lead
Offensive Security Lead

SoFi • San Francisco (CA)

On-site
USD 180,000 - 240,000
Benefits at SoFi
Cloud Security Engineer
Cloud Security Engineer

YGO GmbH • United States

Remote
USD 140,000 - 190,000
Senior Security Program Manager
Senior Security Program Manager

Flexhire • United States

On-site
USD 140,000 - 190,000
Staff Security Engineer, Application Security
Staff Security Engineer, Application Security

fomo Labs • New York (NY)

On-site
USD 180,000 - 240,000
Competitive cash compensation and.equ
Equity
Comprehensive health insurance
+4
Security Engineer
Security Engineer

Coinflow • Chicago (IL)

On-site
USD 145,000 - 195,000
Health and wellness benefits
401(k) savings plan
Flexible time off
+1
Offensive Security Lead
Offensive Security Lead

SoFi • Frisco (TX)

On-site
USD 150,000 - 240,000
Offensive Security Lead
Offensive Security Lead

SoFi • New York (NY)

On-site
USD 180,000 - 240,000