Chief Information Security Officer (CISO)
Hippo Insurance
Title: Chief Information Security Officer (CISO) Location: Austin, TX / Morristown, NJ (hybrid) Reports To: Chief Technology Officer About Hippo: Hippo was built on a promise: make homeownership effortless. Nearly a decade later, that mission still drives us. We use technology and data to help our customers stay ahead of problems and protect what matters most.
Today, that same tech-native approach powers our work beyond homeowners. Hippo operates as a diversified carrier platform, partnering with MGAs to deliver tailored program solutions that help them grow and deliver better customer experiences. Behind that work is a team that values ownership, curiosity, collaboration, and continuous improvement.
If you're energized by building what's next, we'd love to meet you.
About the Role:
Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and compliance across the enterprise. You will be responsible for protecting Hippo's systems, data, and customers against an evolving threat landscape while ensuring the company meets its regulatory and compliance obligations as a publicly traded, multi-state insurance carrier.
This role owns Hippo's SOC 2 program, leads security operations, and drives compliance with applicable state and federal cybersecurity regulations. You will also own identity governance, privacy and data protection strategy, and third-party risk management. This is a high-visibility leadership role that requires equal fluency in security engineering, regulatory compliance, and executive communication.
About You:
You are a seasoned cybersecurity leader who has built and run security programs at a publicly traded, regulated company. You have navigated regulatory examinations and SOX audit cycles, and you can move seamlessly between a technical incident response scenario and a board presentation. You think in terms of risk, you quantify what you can, and you communicate what you can't with intellectual honesty.
You bring a builder's mindset to security. You understand that a great security program enables the business rather than slowing it down, and you know how to embed security into engineering culture without creating friction. Whether your background is in Insurtech, fintech, healthcare, or another heavily regulated sector, you understand multi-regulator environments and lead with clarity and high standards.
What You'll Do:
Hippo is an equal opportunity employer, and we are committed to building a team culture that celebrates diversity and inclusion. Hippo's applicants are considered solely based on their qualifications, without regard to an applicant's disability or need for accommodation. Any Hippo applicant who requires reasonable accommodations during the application process should contact the Hippo's People Team to make the need for an accommodation known.
Hippo CCPA
Today, that same tech-native approach powers our work beyond homeowners. Hippo operates as a diversified carrier platform, partnering with MGAs to deliver tailored program solutions that help them grow and deliver better customer experiences. Behind that work is a team that values ownership, curiosity, collaboration, and continuous improvement.
If you're energized by building what's next, we'd love to meet you.
About the Role:
Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and compliance across the enterprise. You will be responsible for protecting Hippo's systems, data, and customers against an evolving threat landscape while ensuring the company meets its regulatory and compliance obligations as a publicly traded, multi-state insurance carrier.
This role owns Hippo's SOC 2 program, leads security operations, and drives compliance with applicable state and federal cybersecurity regulations. You will also own identity governance, privacy and data protection strategy, and third-party risk management. This is a high-visibility leadership role that requires equal fluency in security engineering, regulatory compliance, and executive communication.
About You:
You are a seasoned cybersecurity leader who has built and run security programs at a publicly traded, regulated company. You have navigated regulatory examinations and SOX audit cycles, and you can move seamlessly between a technical incident response scenario and a board presentation. You think in terms of risk, you quantify what you can, and you communicate what you can't with intellectual honesty.
You bring a builder's mindset to security. You understand that a great security program enables the business rather than slowing it down, and you know how to embed security into engineering culture without creating friction. Whether your background is in Insurtech, fintech, healthcare, or another heavily regulated sector, you understand multi-regulator environments and lead with clarity and high standards.
What You'll Do:
- Further develop and execute Hippo's enterprise cybersecurity strategy, aligned with business risk appetite and regulatory requirements
- Build and lead the security operations function, including threat detection, incident response, vulnerability management, and threat intelligence
- Own Hippo's SOC 2 program end-to-end, including control design, evidence collection, readiness assessments, and auditor engagement
- Lead the governance, risk, and compliance function, maintaining the cybersecurity risk register, policy framework, standards, and control library
- Drive compliance with applicable state and federal cybersecurity and insurance regulations
- Support SEC cybersecurity disclosure obligations in coordination with Legal and Finance
- Lead identity governance, including access certification, privileged access management policy, and separation of duties enforcement
- Own privacy and data protection compliance strategy, partnering with Legal on data handling, breach notification, and policyholder data protection
- Manage the third-party and vendor cybersecurity risk management program
- Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
- Provide second-line oversight and security control design input to the SOX ITGC program
- Build and lead the security engineering function, owning secure design standards and threat modeling practices that ensure security is embedded from architecture through to deployment
- Build, mentor, and develop the cybersecurity team and drive a culture of security awareness across the organization
- Lead cybersecurity budgeting, roadmap planning, and technology rationalization
- Own disaster recovery and business continuity planning across the enterprise, working closely with the CIO and CTO to drive regular testing, validate recovery capabilities, and ensure organizational resilience is aligned to business and cybersecurity risk
- Own the enterprise Incident Response Plan, lead the Security Incident Response Team (SIRT) across the full incident lifecycle from detection and containment through recovery and post-incident review, define severity classifications and escalation paths, and ensure cross-functional stakeholders (Legal, Compliance, IT, and executive leadership) are engaged appropriately during active incidents
- Drive a continuous improvement program with outcomes tracked to remediation and reported to the Audit and Risk Committee
- Lead the enterprise response to supply chain vulnerabilities across open-source dependencies and third-party service providers, owning risk assessment, mitigation, and remediation
- 10+ years of progressive experience in cybersecurity or information security, with at least 5 years in a senior security leadership role (CISO, VP of Security, or Head of Information Security)
- Experience at a regulated, publicly traded company, including direct involvement in SOX audit cycles
- Track record of building and managing security operations capabilities
- End-to-end ownership of a SOC 2 program, including control design, audit preparation, and remediation
- Experience with cybersecurity regulations in a regulated industry (financial services, insurance, or healthcare preferred)
- Strong GRC background with experience maintaining risk registers, policy frameworks, and control libraries
- Proven ability to present cybersecurity risk and incident information to boards of directors, audit committees, and regulators
- Experience managing third-party and vendor cybersecurity risk programs
- Excellent cross-functional leadership skills with a track record of partnering effectively with Legal, Finance, Internal Audit, and Engineering
- Experience in the insurance, Insurtech, or fintech industry
- Familiarity with privacy frameworks and data protection requirements (CCPA/CPRA, state breach notification laws)
- Relevant certifications such as CISSP, CISM, CRISC, or CISA
- Background in security engineering or application security in addition to GRC and security operations
- Experience managing cybersecurity programs across multi-entity corporate structures1
- Healthy Hippos Benefits - Multiple medical plans to choose from and 100% employer covered dental & vision plans for our team members and their families. We also offer a 401(k)-retirement plan, short & long-term disability, employer-paid life insurance, Flexible Spending Accounts (FSA) for health and dependent care, and an Employee Assistance Program (EAP)
- Equity -This position is eligible for equity compensation
- Training and Career Growth - Training and internal career growth opportunities
- Flexible Time Off - You know when and how you should recharge
- Little Hippos Program - We offer 12 weeks of parental leave for primary and secondary caregivers
- Hippo Habitat - Snacks and drinks available and catered lunches for onsite employees
Hippo is an equal opportunity employer, and we are committed to building a team culture that celebrates diversity and inclusion. Hippo's applicants are considered solely based on their qualifications, without regard to an applicant's disability or need for accommodation. Any Hippo applicant who requires reasonable accommodations during the application process should contact the Hippo's People Team to make the need for an accommodation known.
Hippo CCPA
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer (CISO) in Austin, TX vacancy
- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information...Suggested
- ...Chief Information Security Officer (CISO) About the Company Accomplished executive search firm Industry Staffing and Recruiting Type Privately Held About the Role The Company is seeking a Chief Information Security Officer (CISO) to oversee and direct...Suggested
- ...Chief Information Security Officer At Texas Children's Hospital, our mission starts with our people. Guided by our HEART values—Humility, Excellence, Accountability, Respect, and Trust—we strive to create a workplace where teammates feel valued, supported, and empowered...Suggested
- ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence services Industry Market Research Type Privately Held About the Role The Company is in need of a Virtual...SuggestedPart time
- ...seeking passionate, collaborative, energetic, and forward-thinking individuals to join our team. We are seeking an Information Systems Security Officer to assist with the development, implementation, and maintenance of our information security strategy. The...SuggestedPermanent employmentFull timeContract workWork experience placementWork at officeLocal areaRelocation package
- ...Information Systems Security Officer (ISSO) Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment...Full timeLocal areaFlexible hours
- ...CTI) Analyst to join our team. As a CTI Analyst within the Office of the IBM CISO you will conduct all-source intelligence operations, which... ...Supporting other cyber defence teams such as Incident Response, Security / Network Operations Centres, Threat Hunting, Vulnerability...Work at office
- ...Vulnerability Manager The preferred candidate will have a total of 10 years' experience in the Information Technology/Information Security industry, with minimum of 5 years of experience performing vulnerability scanning or penetration testing activities. This role...Local areaRotating shift
- ...Deputy Chief Technology Officer (CTO) About the Company Top-tier investment bank Industry Investment Banking Type Public Company... .... Hiring Manager Title CIO/CTO Travel Percent Less than 10% Functions Engineering Information Technology...
- ...Penetration Tester Location: Austin, TX Duration: Long term contract Skills: Security Testing, Web Application security, Penetration testing (At least one year experience) What We're Looking For Analytical thinking, and motivated to learn new things....Long term contract
- ...requires travel for on‑site collection efforts as well as an in‑office presence at the primary firm office, which includes the... ...additional job opportunities with CGS on our Job Board: For more information about CGS please #J-18808-Ljbffr CGS Federal (Contact Government...Full timeWork at officeRemote workFlexible hours
- EMCOR Construction Services is seeking an Information Technology Manager in Austin, TX, who will oversee IT operations and implement network security. The ideal candidate will have a Bachelor's degree in computer science or a related field, with at least 5 years of technology...
- .... Job Description: VVater is seeking a visionary Chief Technology Officer (CTO) to lead its global engineering and technology strategy... ...electrochemical reactors. Strong grounding in quantum-informed process control and physics-based system design....
- ...Chief Technology Officer (CTO) About the Company Venture-backed fintech startup. Industry... ...responsible for ensuring the reliability, security, and scalability of the products, as... ...Travel Percent Less than 10% Functions Engineering Information Technology...
- ...responsible business by design - with security, data privacy, responsible use of... ...Visit us at ? . You Are: As a Chief Technology Officer (CTO) you will be the senior executive... ...architectures, and innovation trends; provide informed input into points of view, client...Work experience placementLive inWork at officeLocal area
- ...applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.Permanent employmentContract workLocal areaImmediate start
- ...pain, improve mobility, and enhance overall function. Utilize a strong understanding of human anatomy and physiology to guide informed treatment decisions and optimize patient outcomes. Collaborate with a multidisciplinary healthcare team to deliver comprehensive...Full timeFlexible hours
- ...authorized by law. Provide leadership and oversight of Network Services operations, including WAN, LAN, wireless, SD-WAN, and network security platforms Oversee daily operational activities, including incident management, problem resolution, and service availability...Permanent employment
- ...scale, stabilize, and support the business long-term. The Chief Technology Officer (CTO) will own and lead DaBella's technology strategy. This... ...IT operations including infrastructure, networks, devices, security, and support Ensure high system uptime, performance, and...Temporary workWork at officeLocal areaRelocation
- ...Chief Technology Officer Location: Central Texas (Greater Austin region) The client is a defense-grade advanced manufacturer, automating heavy-industrial production for critical U.S. infrastructure. Our first facility will produce Large Power Transformers (≥100...
$75k - $90k
...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of... ...an innovative force, where healthcare meets retail. For more information, visit . Business Structure The Joint Corp. is a franchisor...Full timeMonday to FridayFlexible hoursWeekend work- ...Native Technology Ecosystem ~ Excellent communication and presentation skills, with the ability to translate complex technical information for non-technical audiences ~ Ability to work independently and collaboratively as part of a team ~ Ability to translate alliance...Temporary workRemote workFlexible hours
- ...prevent code quality and code security issues from reaching production... ...employees worldwide and hub offices in the USA, Switzerland, the UK... ...profile customers will directly inform and shape our product roadmap... ...conversations with CTOs, Chief Architects, and VP-level technology...Work at officeRemote workWork from homeWorldwideFlexible hours
- ...over 50,000 professionals.Distribution: Support to reach product-market-fit and build a sales/marketing machine.Funding support to secure a multi-million euro round within 12 months (average EWOR Fellows raise €2M after our Grand Pitch).TasksOwn, build, and run your startup...Remote workRelocation
- NuSpine is a chiropractic franchise that is revolutionizing the industry by providing top-notch clinical and operational excellence while at the same time providing patients with affordability, convenience, relationship, service, and education. Our company is Chiropractic...Immediate start
$138k - $297k
...developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital... ...relationships with customer and prospect leaders such as Chief Information Security Officers, Chief Security Officers, Chief Technology Officers, and...Full timeRemote workHome officeFlexible hours- ...Chief Information Officer (CIO) About the Company Renowned network of skin clinics & dermatologists Industry Hospital & Health Care... ...creation plan. The CIO will also be accountable for delivering a secure, reliable, and scalable technology environment that...
- ...Information Security Manager 3 Texas Education Agency requires the services of an Information Security Manager 3, who meets the general qualifications of Information Security Manager 3, Security and the specifications outlined in this document for the Texas Education...Contract work
- ...Job Title: IT Security Manager Department: Internal Security Location: Hybrid... ...today’s digital environment, the role of an Information Technology Security Manager is an essential... ...fingers • Daily operation of standard office equipment • Frequent use of oral...Full timeWork at officeLocal areaRemote work
$80k - $120k
...reputable providers on our mission to bring health and wellness through comprehensive care, then contact us! We have a state-of-the-art office, focused on promoting excellent patient care in a welcoming and supportive work environment with a great work life balance and no...Full timeWork at officeMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer (CISO). Be the first to apply!
Related searches
- information security compliance analyst Austin, TX
- senior director information security Austin, TX
- sr information security engineer Austin, TX
- information security lead Austin, TX
- data center security officer Austin, TX
- entry level information security analyst Austin, TX
- information security analyst Austin, TX
- director information security Austin, TX
- information technology security engineer Austin, TX
- senior information security analyst Austin, TX

