Deputy Chief Information Security Officer - Bank
$269.7k - $353.95kJobleads-US
You will be the operating second to the CISO and own the bank-entity scope of Mercury's 2LOD Information Security program. You'll be the person who keeps the program examiner‑ready by default: coherent policy architecture, evidenced controls, a credible gap‑remediation track record, and a tested incident response program with documented exercise history.
This is not a research or strategy role. It is a build‑and‑defend role. You will sit across the table from OCC examiners, FFIEC IT audit teams, our Chief Risk Officer, and the board's risk committee, and you will be expected to answer for every line in our policies and every status in our control inventory.
Mercury is a fintech company, not an FDIC‑insured bank. Banking services are provided through Choice Financial Group and Column N.A., Members FDIC.
What you’ll own
Bank‑entity 2LOD InfoSec program. Governance, policy, risk, and oversight scoped to the chartered bank.
Examiner posture. OCC, FFIEC, FDIC and FRB examiner inquiries; ownership of the examiner‑ready narrative; coordination of the evidence.
FFIEC control remediation. Lead remediation of identified FFIEC IT control deficiencies to charter readiness ahead of the OCC pre‑opening examination.
Policy architecture. Carry the bank‑scoped policy stack (Policy / Standard / Procedure), including ratification cycles, MRCC memos, and board approvals.
BC/DR. Partner with the Chief Risk Officer on bank continuity, resilience, and recovery, including tabletop exercises and full‑scale drills.
Audit and assurance. Manage relationships with internal audit (3LOD) and external assessors (SOC 2, FFIEC CAT, regulator‑led IT examinations).
Third‑party risk. Ensure TPRM evidence holds up to bank‑grade scrutiny for critical service providers and material outsourcing arrangements.
Team development. Coach and grow the GRC sub‑team; run a recurring training cadence; build the bench depth a national bank requires.
What we need
8+ years in Information Security, with 3+ years inside a regulated bank, trust bank, or de novo bank charter effort. Mercury is a startup chartering a national bank — this experience is non‑negotiable.
Deep FFIEC and OCC fluency. You have deep working knowledge of the FFIEC CAT, the FFIEC IT Examination Handbook, BSA/AML IT supervisory expectations, and the OCC Heightened Standards.
Direct examiner‑facing experience. You have defended a control to an OCC, FDIC, or Federal Reserve examiner. You know what good evidence looks like before it gets challenged.
Policy and standards craft. You can draft a board‑ratifiable policy and the supporting standards stack that operationalizes intent, not just satisfies a checklist.
Operating discipline. You run cadences, write status that survives executive review, and maintain currency of controls, evidence, and risk registers.
2LOD instinct. You understand the three‑lines‑of‑defense model and have served in the oversight role.
What we’d love
Prior Deputy CISO or equivalent senior 2LOD role at a national bank, trust bank, or large credit union.
Charter or de novo bank experience — if you've stood one up before, that is a meaningful advantage here.
Strong technical baseline, you don't need to be an engineer, but you should be able to challenge an architecture review and read an incident timeline credibly.
CISSP, CISM, or CRISC.
What success looks like
At 30 days – You have developed working knowledge of Mercury’s FFIEC IT control inventory and roadmap, every in‑flight policy draft, and met one‑on‑one with the GRC team. You can speak to the top ten risks in the bank‑entity program by name.
At 90 days – You are running the weekly bank charter status cadence, leading examiner‑readiness reviews, and personally accountable for at least three priority program tracks. The CISO is briefing the board and the MRCC with material you authored.
At one year – The charter timeline is on track. The bank‑entity Information Security program sustains supervisory‑grade standards as a standing posture. You are the executive other functions consult to determine whether a security risk is material.
Why this role
We are building a security program designed to protect Mercury and enable the business. Chartering a national bank does not change that philosophy. It does mean we need a Deputy who can hold the bar to OCC standards without losing the operating tempo that has defined Mercury since inception.
If you’ve been waiting for a chance to build the bank‑side security program you wish you’d inherited, this is it.
Compensation
The total rewards package at Mercury includes base salary, equity (stock options), and benefits.
Our salary and equity ranges are highly competitive within the SaaS and fintech industry and are updated regularly using the most reliable compensation survey data for our industry. New hire offers are made based on a candidate’s experience, expertise, geographic location, and internal pay equity relative to peers.
Our target new hire base salary ranges for this role are the following:
US employees in New York City, Los Angeles, Seattle, or the San Francisco Bay Area: $269,700 - 353,950
US employees outside of the New York City, Los Angeles, Seattle or the San Francisco Bay Area: $242,700 - 318,550
Mercury values diversity & belonging and is proud to be an Equal Employment Opportunity employer. All individuals seeking employment at Mercury are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation, or any other legally protected characteristic. We are committed to providing reasonable accommodations throughout the recruitment process for applicants with disabilities or special needs. If you need assistance, or an accommodation, please let your recruiter know once you are contacted about a role.
#J-18808-Ljbffr Jobleads-US- ...smarter, faster, and more secure financial future by revolutionizing... ...a global leader in Open Banking Payments, we are... ...the team The Security & Information Technology organization is... ...directly to the Global CTO, the Chief Information Security Officer (CISO) & Head of...SuggestedFull timeContract workTemporary workWork at officeWorldwideHome officeFlexible hours
- ...2 months, primarily in North America, with some potential international travel About the Role Sardine is hiring a Deputy Chief Information Security Officer to partner closely with our CISO and help scale our security program as we grow. This is a senior, high‑impact role...SuggestedRemote workHome officeFlexible hours
- ...Chief Information Officer (CIO) and Chief Technology Officer (CTO) About the Company Expanding company in the payments & neo banking sectors Industry Banking Type Privately Held About the Role The... ...development and maintenance of secure, scalable, and efficient payment...SuggestedRemote work
- ...Somi AI is seeking a Deputy CISO to lead the bank-entity 2LOD Information Security program in San Francisco. This role anchors the governance, oversight, and risk management necessary for compliance with OCC, FFIEC, and FDIC. The ideal candidate will have over 8 years...Suggested
- ...to build the future of inclusive finance through cutting‑edge technology and customer‑centric solutions. Overview As Chief Information Security Officer (CISO), you will be the primary leader responsible for developing and implementing our information security strategy....SuggestedImmediate startFlexible hours
$180k - $220k
...headquartered in Cambridge, MA, and has an office in San Francisco, CA. About the role: As CISO, you will own Lumafield's security function end-to-end—from cloud... ...Define and execute Lumafield's multi-year information security strategy, aligning it with business...Work at officeFlexible hours- ...time Location Type Hybrid Department Platform, Security Who are we? Our mission is to scale intelligence to... ...shape the future! The Opportunity Cohere seeks a Chief Information Security Officer who can help shape Cohere’s security strategy & the...Full timeWork at officeRemote workFlexible hours
$103.96k - $129.95k
...Executive Assistant To The Chief Technology Officer (CTO) Brex is the intelligent finance platform... ...combining global corporate cards and banking with intuitive spend management, bill... ...when taking care of confidential information ~ Demonstrated experience using AI...Work at officeRemote workWork from home- ...leading IT consulting firm is seeking a Director of Account Management located in San Francisco to drive sales operations for large banking clients. The ideal candidate will have extensive experience in IT sales, knowledge in banking and financial services, and a strong...
$250k
Citi is seeking a Global Head of Technology Corporate Banking in San Francisco. This role requires developing and maintaining relationships with Technology clients while ensuring their financial needs are met. You'll drive business strategies and lead a team focusing on...Full time$250k
Global Head of Technology Corporate Banking Based in San Francisco. Responsible for developing and maintaining... ...and cross‑functional teams. Senior Credit Officer (or equivalent). Skills Analytical - assimilating new information quickly and relating it to the needs of the...Full time- ...parent company of LendingClub Bank, National Association, Member... ...our nearly 5 million members secure over $90 billion in loans to... ...degree in computer science, Information Technology, Business Administration... ...above locations are eligible offices for this role. The locations...Work experience placementWork at officeLocal areaRemote workRelocationFlexible hours
- Location: San Francisco We’re making security suck less for developers. Security tools haven... ...‑time founders, Aikido has $85M in the bank, a long runway ahead, and unicorn status.... ..., hackathons, demo days, conferences, informal events) Build and maintain relationships...
$145k - $335k
...Deputy Chief of Integrative Health, San Francisco VA Health Care System / UCSF San Francisco VA and UCSF are recruiting a Deputy Chief of Integrative Health (physician). The Deputy Chief will co-lead a dynamic, interdisciplinary Integrative Health service that provides...Full time$104.5k - $213.8k
...high‑quality findings and recommendations that enhance clients’ security posture and compliance efforts. What You’ll Do You will play a... ...or advisory firm delivering internal audit services to banking, insurance, or fintech clients Salary Range The disclosed range...Local area- ...responsible for onsite and remote collection of electronically stored information (ESI) from computers, mobile devices, collaboration apps and... ...and Physical Demands Duties are performed in a typical office environment while sitting at a desk or computer table. Duties...Temporary workWork at officeRemote workFlexible hoursWeekend workAfternoon shift2 days per week3 days per week
$95.86k - $208.27k
...Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE),... ..., state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment...Full timeH1bLocal area- ...A leading financial technology company is seeking a Chief Information Security Officer (CISO) to establish and lead its information security and cybersecurity programs. This role involves developing an enterprise-wide security framework and managing all aspects of cybersecurity...Remote workFlexible hours
- ...Lighthouse, based in San Francisco, is seeking a Forensics Associate to collect and analyze electronically stored information for investigations. Candidates should ideally have a Bachelor's degree and at least two years of experience in digital forensics. The role demands...Flexible hours
- ...Cohere is looking for a Chief Information Security Officer to lead security strategy and governance. You will build trust across teams, ensuring security and innovation coexist. The ideal candidate will have extensive experience in high-growth tech, cloud security,...Remote jobFlexible hours
- ...requires travel for on‑site collection efforts as well as an in‑office presence at the primary firm office, which includes the... ...veteran. Contact Explore additional job opportunities with CGS on our Job Board: For more information about CGS please #J-18808-Ljbffr...Full timeWork at officeRemote workFlexible hours
$160k - $185k
...technology teams to design and implement secure software and practices. You’ll also collaborate... ...projects, while keeping stakeholders informed. Leader and Mentor: You are a recognized... ...ask applicants for their financial or banking information as part of our application process...Local areaImmediate startWork from home- A fast-growing fintech firm in San Francisco is seeking a Chief Information Security Officer to develop and implement its information security strategy. The ideal candidate will have significant experience in cybersecurity, particularly in fintech. This role involves overseeing...Flexible hours
$160k - $235k
...generation. Candidates should possess a Bachelor’s degree and 8-12 years of relevant experience, with a proven track record in commercial banking. This position offers competitive compensation ranging from $160,000 to $235,000 annually and requires strong market networking...$157.04k - $235.56k
Citi is seeking a Relationship Manager based in San Francisco, California. This role is pivotal in originating and managing relationships with growth-stage technology companies. The ideal candidate will be responsible for providing innovative solutions while ensuring compliance...- Flagright AI-native AML compliance platform for fintechs & banks Technical Content Lead - San Francisco Bay Area Job type : Full-time... ...available) This is a fully in-person role, based in our Santa Clara office Preferred Experience Background in paralegal work, compliance...Full timeWork at office
- ...-Enterprise Software Brand: HSBC Area of Interest: Commercial Banking Location: San Francisco, CA, US, 94111 Work style: Hybrid Worker... ...origin, ethnicity, disability or medical condition, genetic information, military or veteran service, religion, creed, sex, gender,...Flexible hours
- Location: San Francisco We’re making security suck less for developers. Security tools haven... ...-time founders, Aikido has $85M in the bank, a long runway ahead, and unicorn status.... ...that sticks to its values in an open and informal atmosphere (see our culture page on the...
- Megaport is looking for a Senior Cyber Security Analyst to join their Brisbane team, focusing on governance, risk, and compliance. This role involves leading security compliance certification activities like ISO27001:2022 and SOC 2 Type 2, mentoring analysts, and preparing...Flexible hours
- A prestigious medical institution in San Francisco seeks a Deputy Chief of Integrative Health to lead their Integrative Health Service. This full-time position involves overseeing a team of interdisciplinary clinicians, providing clinical care, and collaborating on Whole...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Deputy Chief Information Security Officer - Bank. Be the first to apply!
- chief information security officer ciso San Francisco, CA
- ciso San Francisco, CA
- information security officer San Francisco, CA
- business information security officer San Francisco, CA
- chief information security officer San Francisco, CA
- senior information security analyst San Francisco, CA
- information security compliance analyst San Francisco, CA
- senior director information security San Francisco, CA
- entry level information security analyst San Francisco, CA
- sr information security engineer San Francisco, CA


