VP, Cyber Assurance & Defense
$200k - $250kBroadview FCU
If you are ready to join a company that truly cares about its employees, our members, and our community then you have come to the right place!
Summary of Role:
The Vice President of Cyber Assurance and Defense is responsible for designing, operating, and maturing a comprehensive, risk‑based cyber assurance and defense program for a complex, highly regulated financial institution. This role ensures Broadview Federal Credit Union (BFCU) maintains strong defensive and offensive cyber capabilities, a robust access access governance, and measurable cyber risk reduction aligned with regulatory expectations, business strategy, and member protection.
This position is responsible for the second‑line technical cyberassurance and defense function, providing independent oversight, challenge, and assurance over controls, while partnering closely with IT, Engineering, and Business leadership. The VP will mature an evolving program into a repeatable, defensible, regulator‑ready capability suitable for CFPB‑scale supervision or a best-in-class organization.
The role requires a deep technical hands on expertise across modern security tooling, cloud and SaaS platforms, offensive security, digital forensics, SIEM/SOC operations, identity governance, and incident response combined with the ability to to translate cyber risk into business and regulatory terms.
Essential Job Functions/Responsibilities:
Cyber Assurance & Defense Leadership
Provide oversight of the Cyber Assurance & Defense function (includes Cyber Defense and Identity Governance), encompassing:
Defensive security monitoring and detection
Offensive security (penetration testing, red/purple teaming)
Digital forensics and investigations
Identity and Access governance (IAG)
Act as the technical security expert, independently validating initiatives/ project situations, security control design, effectiveness, and sustainability.
Program Maturity & Continuous Improvement
Design and execute a multi‑year cybersecurity maturity roadmap addressing:
Vulnerability and exposure management
Security architecture and technical design reviews
Security tool rationalization and roadmap planning
Early warning detection capabilities using SIEM and UEBA
Deception technologies and advanced detection engineering
Mature security capabilities from ad‑hoc to defined, repeatable, and measurable, with regulator defensible documentation and evidence.
Cyber Defense, Detection & Incident Response (IR)
Enhance and oversee the Cybersecurity Incident Response Team (CIRT) program, including:
Maintain updated IR plans, playbooks, and runbooks to align with evolving threats
Define roles and escalation paths
Executive and regulator communication standards
Tabletop exercises and live simulations
Oversee forensic investigations involving:
Endpoint, network, cloud, and SaaS platforms
Insider threat activity
Credential misuse and account compromise
Ensure lessons learned are operationalized into control improvements.
Support SVP Information Risk and Security managing incident response
Identity & Access Governance (IAG)
Architect and lead a centralized enterprise IAG program, including:
Encourage Role Based Access Control (RBAC)
Least privilege enforcement
Segregation of duties (SoD)
Privileged Access Management (PAM)
Assess, select, and implement user access governance platforms appropriate for financial services scale and risk.
Centralize access risk decisions based on application criticality, data sensitivity, and regulatory impact.
Risk Identification, Assessment & Reporting
Identify emerging cyber threats and systemic risks impacting:
Core banking systems
Cloud (AWS) and SaaS platforms (Microsoft 365)
Digital channels and member facing technologies
Translate technical findings into clear risk statements with prioritized remediation recommendations.
Develop cyber risk metrics, KRIs, and dashboards to:
Inform senior leadership and board committees
Optimize investment decisions
Demonstrate risk reduction over time
Technology, Cloud & Secure Engineering Advisement
Review and challenge technology controls across are required:
Network and infrastructure
Cloud (AWS IaaS/PaaS)
SaaS (Salesforce Shield, Microsoft 365 E5)
DevSecOps pipelines and CI/CD tooling
Ensure security is embedded in (security by design):
System acquisitions
Projects and initiatives
Software development lifecycles
Change and release management
Provide guidance on secure AI usage, automation, and emerging technologies.
People Leadership & Executive Partnership
Build, lead, and mentor a team of highly technical cybersecurity practitioners capable of:
Threat modeling and attack simulation
Detection engineering
Forensic analysis
Technology and security control validation
Serve as a trusted advisor to leadership and peers.
Communicate complex security concepts clearly to both technical and non technical stakeholders.
Minimum Job Qualifications:
15+ years of progressive, hands‑on technical information security experience in financial services or similarly regulated industries.
Ability to deliver risk focused recommendations balancing cost and benefit
5+ years at a VP level or equivalent senior leadership role managing enterprise scale cybersecurity programs.
10+ years leading highly technical security teams, including direct involvement in:
Forensic investigations
Ethical hacking / penetration testing
SIEM/SOC operations and threat analysis
Incidence response
ED/EXR
Security tool implementations
Demonstrated experience operating under FFIEC, NCUA, CFPB, NYS DFS Cybersecurity, GLBA, PCI and regulatory scrutiny.
Technical Expertise (Required)
Network, endpoint, and application security
Encryption, key management, and data protection
Cloud security (AWS IaaS/PaaS)
SaaS security controls
Certifications
One or more of the following required:
CISSP
CEH
Additional certifications (AWS Security, GIAC, OSCP) are strongly preferred.
Work Location Requirement
Onsite in Albany, NY with a minimum of four (4) days per week.
Hands on leadership presence is required to support teams, regulators, and critical incident response.
SIEM/SOAR platforms and detection engineering
Identity and access governance systems
Microsoft 365 E5 security stack
DevSecOps and secure SDLC practices
Red team, purple team, and adversary simulation
AI Security Monitoring
AI usage in cybersecurity operations and detection
Starting Compensation: $200,000-$250,000, plus a competitive benefits package.
Bilingual individuals who are fluent in a second language in addition to English are highly encouraged to apply.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other status protected by applicable law.
Broadview FCU is committed to ensuring individuals with disabilities and/or those who have special needs participate in the workforce and are afforded equal opportunity to apply and compete for jobs. If you would like to contact us regarding the accessibility of our Website or need assistance completing the application process, please contact us at View email address on click.appcast.io
$76.4k - $138.6k
...Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider... .... EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector...CyberSummer holidayLocal areaFlexible hours$152.7k - $294k
...Information Security, we integrate risk strategy, digital identity, cyber defense, application security, business continuity, and technology... ...-term client value. The Opportunity The Technology Assurance, Risk & Policy (TARP) function establishes and maintains EY...CyberSummer holidayLocal areaFlexible hours$118.98k - $195.47k
...The Guardian Life Insurance Company of America is seeking a Lead for Cyber Security Assurance Testing in New York. This role emphasizes leadership and technical contributions within the Cybersecurity Assurance organization, focusing on both management and execution in...Cyber$99.15k - $162.89k
...Cybersecurity Assurance Testing Lead page is loaded## Cybersecurity Assurance Testing Leadremote... ...requisition id: R000108255**Lead, Cyber Security Assurance Testing**The Lead, Cyber... ...Testing programs, working closely with Cyber Defense, application owners, and Guardian India...CyberFull timeWork at officeImmediate startFlexible hours3 days per week$40k
...supporting mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating... .... The role works under senior guidance to execute defined cyber actions, maintain incident documentation, support POA&M and ISVM...CyberContract workRemote work$60k
...supporting mission-critical programs across national security, defense, and public service delivery. Our work focuses on sustaining, operating... ...security and compliance requirements. Execute directed cyber actions including network access restrictions, firewall and policy...CyberContract workRemote work$87.7k - $164k
...Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting...CyberSummer holidayLocal areaFlexible hours$175k - $275k
...Job Title: Regional Sales Director - Department of Defense & Intelligence Community About Trellix ? Trellix is a global company... ...and make a tangible difference in keeping the military safe from cyber threats. About the Role: ~10+ years of professional...CyberBase plus commissionContract workLive inFlexible hours- ...Our client seeks a Senior Cybersecurity Analyst to lead proactive defense, guide security architecture, and drive incident response and... ...cybersecurity strategy and drive decisions. Identify gaps in cyber operations and implement improvements. Design and deliver security...CyberHourly payPermanent employmentContract workLocal areaRemote work
$130.9k - $154k
...globally at Coinbase. This includes coverage over information and cyber security areas, infrastructure, platforms and applications, and... ...all levels. Work closely with both first and second lines of defense to maximize meetings utility, testing efficiencies and internal...CyberLocal area- ...securely, and efficiently. We support complex federal missions across defense, civilian, and intelligence domains by combining deep domain... ...government customers Security + certification or other cyber certification/experience If you are interested in supporting...CyberFull timeContract workPart timeLocal areaImmediate startFlexible hours
$94.1k - $150k
...Position Overview The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network... ...tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a...CyberContract workWork at office- ...as ColdFusion, VB, and Access; Develop and guide quality assurance processes including code reviews, performance testing, security... ...experience, data services, application development, infrastructure, cyber security, and IT staffing. Spruce Technology, Inc. is an...CyberFull timeWork at officeRemote workFlexible hours
$104.8k - $192.2k
...and develop answers for the most pressing issues of today and tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse...CyberWork experience placementSummer holidayFlexible hours$104.8k - $192.2k
...confidence and develop answers for the most pressing issues of today and tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and...CyberWork experience placementSummer holidayFlexible hours$20 per hour
...of IT systems and networks, strong attention to detail, a willingness to learn the evolving threat landscape through exposure to cyber defense tools, and the ability to work diligently in a fast-paced environment. DUTIES: Assist in monitoring security alerts and...CyberHourly payContract workInternshipWork at officeLocal areaImmediate start$144.9k - $265.8k
...and develop answers for the most pressing issues of today and tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse...CyberWork experience placementSummer holidayFlexible hours$100.2k - $164.1k
...Blending cutting-edge technologies, unique skill sets, and proven cyber counterintelligence strategies, SpearTip partners with our... ...consultants and analysts, providing technical guidance and quality assurance on client deliverables. Maintain detailed case documentation...CyberFull timeTemporary workApprenticeshipLocal areaRemote workVisa sponsorshipFlexible hours$106.8k - $194.8k
...Application Firewall (WAF) solutions to protect client applications from cyber threats. You will work within a team of cybersecurity... ...tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector...CyberSummer holidayFlexible hours$109.2k - $223.4k
...Job Description The Director for Global Defense - Japan is responsible for leading and growing strategic defense and national security... ...compliant solutions (e.g., cloud, data platforms, AI/analytics, cyber). Ensure proposals and delivery plans align to customer...CyberContract workTemporary workFor contractorsLocal areaFlexible hours- ...Lead Business Analyst / Quality Assurance Anywhere Type: Contract Category: Business Analysis Industry: Technology Workplace Type: Remote Reference ID: JN -052026-107113 Date Posted: 05/25/2026 Shortcut: Description Recommended Jobs...Hourly payContract workLocal areaRemote work
$77.5k - $140.9k
...growingly intricate risks and vulnerabilities. As part of our Cyber Threat and Vulnerability Management (TVM) team you will play a... ...tomorrow. EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector...CyberWork experience placementSummer holidayFlexible hours- ...motivated IT Senior Auditor to join our global Enterprise Risk and Assurance Services (ERAS) team. Internal Audit provides independent,... ...degree in Computer Science, Information Technology, Information/Cyber Security, or a related business discipline from an accredited institution...CyberPermanent employmentRemote workFlexible hours
$145k - $205k
...Edwards Lifesciences Belgium is seeking a leader for offensive cyber operations in Albany, NY. This role is pivotal in delivering unique threat insights essential for protecting the company’s innovative medical solutions. You'll oversee activities like penetration tests...Cyber- ...The Hispanic Alliance for Career Enhancement is seeking a Cyber Resiliency Manager to define and execute strategic directions within CVS Health's Cybersecurity team. This role focuses on managing procedures and improving internal controls, ensuring compliance with NIST...Cyber
$86.68k
The New York State Department of Financial Services is seeking a Cybersecurity Examiner. This role involves conducting examinations of financial institutions' cybersecurity practices, assessing compliance with regulations such as 23 NYCRR Part 500, and preparing detailed...Cyber$127.51k - $160.91k
...Response Program. The position will assist with oversight of the NYS Cyber Risk Remediation Program (CRRP) and the development of products... ...years of information technology, cybersecurity, or information assurance experience*, including three years at the supervisory level or...CyberPermanent employmentFull timeTemporary workWork at officeLocal areaRemote workWork visaShift work$93k - $165.43k
Job Description Job Description TITLE: Vice President – Treasury Management LOCATION : Headquarters REPORTS TO: Executive Vice President – Chief Financial Officer CLASSIFICATION: Full Time, Exempt PAY GRADE : EX 72 ($93,000 - $165,430 annually) AVAILABILITY...Full timeTemporary workMonday to Friday$99.15k - $162.89k
...A leading insurance company is seeking a Cybersecurity Assurance Testing Lead responsible for both leadership and hands-on technical contributions. The role involves leading application security testing programs, managing teams, and ensuring high-quality outcomes. Candidates...$120k - $230k
...CISSP, Relevant GIAC Cert, SSCP, CISM, CCSP, CEH, CPT, CWSP, CCNP Security, CCIE Security or Relevant Professional certifications in Cyber Security OEMs Other Requirements ~ Completed Bachelor's Degree or relevant work experience required ~3-5 years of experience...CyberWork experience placementRemote workWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to VP, Cyber Assurance & Defense. Be the first to apply!
- vice president internal communications Albany, NY
- vp biotech Albany, NY
- vice president nursing Albany, NY
- vice president strategic partnerships Albany, NY
- vice president global communications Albany, NY
- vice president development Albany, NY
- vice president research and development Albany, NY
- vice president for university advancement Albany, NY
- vice president quality assurance Albany, NY
- vice president real estate development Albany, NY


