Chief Information Security Officer (CISO)
$237.5k - $390kHippo Insurance
Title: Chief Information Security Officer (CISO) Location: Morristown, NJ / Austin, TX(hybrid) Reports To: Chief Technology Officer About Hippo: Hippo was built on a promise: make homeownership effortless. Nearly a decade later, that mission still drives us. We use technology and data to help our customers stay ahead of problems and protect what matters most.
Today, that same tech-native approach powers our work beyond homeowners. Hippo operates as a diversified carrier platform, partnering with MGAs to deliver tailored program solutions that help them grow and deliver better customer experiences. Behind that work is a team that values ownership, curiosity, collaboration, and continuous improvement.
If you're energized by building what's next, we'd love to meet you.
About the Role:
Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and compliance across the enterprise. You will be responsible for protecting Hippo's systems, data, and customers against an evolving threat landscape while ensuring the company meets its regulatory and compliance obligations as a publicly traded, multi-state insurance carrier.
This role owns Hippo's SOC 2 program, leads security operations, and drives compliance with applicable state and federal cybersecurity regulations. You will also own identity governance, privacy and data protection strategy, and third-party risk management. This is a high-visibility leadership role that requires equal fluency in security engineering, regulatory compliance, and executive communication.
About You:
You are a seasoned cybersecurity leader who has built and run security programs at a publicly traded, regulated company. You have navigated regulatory examinations and SOX audit cycles, and you can move seamlessly between a technical incident response scenario and a board presentation. You think in terms of risk, you quantify what you can, and you communicate what you can't with intellectual honesty.
You bring a builder's mindset to security. You understand that a great security program enables the business rather than slowing it down, and you know how to embed security into engineering culture without creating friction. Whether your background is in Insurtech, fintech, healthcare, or another heavily regulated sector, you understand multi-regulator environments and lead with clarity and high standards.
What You'll Do:
The Morristown, NJ base pay range for this role is $237,500 - $390,000. Exact compensation may vary based on several job-related factors that are unique to each candidate, including but not limited to: skill set, experience, education/training, location, business needs and market demands. Hippo is an equal opportunity employer, and we are committed to building a team culture that celebrates diversity and inclusion. Hippo's applicants are considered solely based on their qualifications, without regard to an applicant's disability or need for accommodation. Any Hippo applicant who requires reasonable accommodations during the application process should contact the Hippo's People Team to make the need for an accommodation known.
Hippo CCPA
Today, that same tech-native approach powers our work beyond homeowners. Hippo operates as a diversified carrier platform, partnering with MGAs to deliver tailored program solutions that help them grow and deliver better customer experiences. Behind that work is a team that values ownership, curiosity, collaboration, and continuous improvement.
If you're energized by building what's next, we'd love to meet you.
About the Role:
Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and compliance across the enterprise. You will be responsible for protecting Hippo's systems, data, and customers against an evolving threat landscape while ensuring the company meets its regulatory and compliance obligations as a publicly traded, multi-state insurance carrier.
This role owns Hippo's SOC 2 program, leads security operations, and drives compliance with applicable state and federal cybersecurity regulations. You will also own identity governance, privacy and data protection strategy, and third-party risk management. This is a high-visibility leadership role that requires equal fluency in security engineering, regulatory compliance, and executive communication.
About You:
You are a seasoned cybersecurity leader who has built and run security programs at a publicly traded, regulated company. You have navigated regulatory examinations and SOX audit cycles, and you can move seamlessly between a technical incident response scenario and a board presentation. You think in terms of risk, you quantify what you can, and you communicate what you can't with intellectual honesty.
You bring a builder's mindset to security. You understand that a great security program enables the business rather than slowing it down, and you know how to embed security into engineering culture without creating friction. Whether your background is in Insurtech, fintech, healthcare, or another heavily regulated sector, you understand multi-regulator environments and lead with clarity and high standards.
What You'll Do:
- Further develop and execute Hippo's enterprise cybersecurity strategy, aligned with business risk appetite and regulatory requirements
- Build and lead the security operations function, including threat detection, incident response, vulnerability management, and threat intelligence
- Own Hippo's SOC 2 program end-to-end, including control design, evidence collection, readiness assessments, and auditor engagement
- Lead the governance, risk, and compliance function, maintaining the cybersecurity risk register, policy framework, standards, and control library
- Drive compliance with applicable state and federal cybersecurity and insurance regulations
- Support SEC cybersecurity disclosure obligations in coordination with Legal and Finance
- Lead identity governance, including access certification, privileged access management policy, and separation of duties enforcement
- Own privacy and data protection compliance strategy, partnering with Legal on data handling, breach notification, and policyholder data protection
- Manage the third-party and vendor cybersecurity risk management program
- Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
- Provide second-line oversight and security control design input to the SOX ITGC program
- Build and lead the security engineering function, owning secure design standards and threat modeling practices that ensure security is embedded from architecture through to deployment
- Build, mentor, and develop the cybersecurity team and drive a culture of security awareness across the organization
- Lead cybersecurity budgeting, roadmap planning, and technology rationalization
- Own disaster recovery and business continuity planning across the enterprise, working closely with the CIO and CTO to drive regular testing, validate recovery capabilities, and ensure organizational resilience is aligned to business and cybersecurity risk
- Own the enterprise Incident Response Plan, lead the Security Incident Response Team (SIRT) across the full incident lifecycle from detection and containment through recovery and post-incident review, define severity classifications and escalation paths, and ensure cross-functional stakeholders (Legal, Compliance, IT, and executive leadership) are engaged appropriately during active incidents
- Drive a continuous improvement program with outcomes tracked to remediation and reported to the Audit and Risk Committee
- Lead the enterprise response to supply chain vulnerabilities across open-source dependencies and third-party service providers, owning risk assessment, mitigation, and remediation
- 10+ years of progressive experience in cybersecurity or information security, with at least 5 years in a senior security leadership role (CISO, VP of Security, or Head of Information Security)
- Experience at a regulated, publicly traded company, including direct involvement in SOX audit cycles
- Track record of building and managing security operations capabilities
- End-to-end ownership of a SOC 2 program, including control design, audit preparation, and remediation
- Experience with cybersecurity regulations in a regulated industry (financial services, insurance, or healthcare preferred)
- Strong GRC background with experience maintaining risk registers, policy frameworks, and control libraries
- Proven ability to present cybersecurity risk and incident information to boards of directors, audit committees, and regulators
- Experience managing third-party and vendor cybersecurity risk programs
- Excellent cross-functional leadership skills with a track record of partnering effectively with Legal, Finance, Internal Audit, and Engineering
- Experience in the insurance, Insurtech, or fintech industry
- Familiarity with privacy frameworks and data protection requirements (CCPA/CPRA, state breach notification laws)
- Relevant certifications such as CISSP, CISM, CRISC, or CISA
- Background in security engineering or application security in addition to GRC and security operations
- Experience managing cybersecurity programs across multi-entity corporate structures1
- Healthy Hippos Benefits - Multiple medical plans to choose from and 100% employer covered dental & vision plans for our team members and their families. We also offer a 401(k)-retirement plan, short & long-term disability, employer-paid life insurance, Flexible Spending Accounts (FSA) for health and dependent care, and an Employee Assistance Program (EAP)
- Equity -This position is eligible for equity compensation
- Training and Career Growth - Training and internal career growth opportunities
- Flexible Time Off - You know when and how you should recharge
- Little Hippos Program - We offer 12 weeks of parental leave for primary and secondary caregivers
- Hippo Habitat - Snacks and drinks available and catered lunches for onsite employees
The Morristown, NJ base pay range for this role is $237,500 - $390,000. Exact compensation may vary based on several job-related factors that are unique to each candidate, including but not limited to: skill set, experience, education/training, location, business needs and market demands. Hippo is an equal opportunity employer, and we are committed to building a team culture that celebrates diversity and inclusion. Hippo's applicants are considered solely based on their qualifications, without regard to an applicant's disability or need for accommodation. Any Hippo applicant who requires reasonable accommodations during the application process should contact the Hippo's People Team to make the need for an accommodation known.
Hippo CCPA
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer (CISO) in Morristown, NJ vacancy
- ...forensic data acquisition/collection (performed onsite, in our offices, and remotely), in support of forensic investigations and electronic... ...malfeasance, etc). Conduct a comprehensive data breach and security incident investigation, consulting with existing Data Security...SuggestedFull timeRemote work
- ...devices Design, create and maintain new penetration tools and security testing plans Develop scripts and programs for automated... ...based on risk Review and define requirements for information security solutions Communicate security issues to a wide...SuggestedWork experience placement
- ...responsible business by design - with security, data privacy, responsible use of... ...achieve. Visit us at ? . You Are: The Chief Technology Officer (CTO) for Red Hat Business Group is... ...architectures, and innovation trends; provide informed input into points of view, client...SuggestedWork experience placementLive inWork at officeLocal area
$130k - $150k
...ongoing guidance, coaching, and feedback. Qualifications: ~ Bachelors degree in Engineering, Computer Science, Management Information Systems, Accounting, or a related field. ~ Relevant professional certification (e.g., CISA, CISSP, CISM, CPA, CFE, PMP, CIA)....Suggested- ...offensive cyber capabilities in New York. Ideal candidates should have a strong background in programming, cybersecurity, and active US security clearance. This position offers a competitive salary and comprehensive benefits. Join our elite Offensive Cyber team to pioneer...SuggestedFlexible hours
- A defense contractor is seeking an experienced Air Advisor Instructor to provide instruction on security cooperation concepts and manage course curriculum. Candidates must have a Master's degree and experience in advisory roles, including MSAS Mission Commander or Team...Contract workFor contractors
- Johns Hopkins Medicine is seeking a Cybersecurity Analyst responsible for safeguarding and monitoring security across complex hybrid environments, including Azure and AWS. The ideal candidate will possess hands-on experience in incident response and vulnerability management...
$30.08 - $52.65 per hour
...Position Summary: The Cybersecurity Analyst is responsible for safeguarding, monitoring, and continuously advancing the organization’s security posture across complex hybrid environments, including Azure Government, AWS GovCloud, and on‑premises data centers. This role...$99k - $232k
...and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard... ...Engineering, Computer Programming, Computer Science, Computer and Information Science, Cybersecurity, Information Technology, Management Information...Full timeH1b$90k - $158.4k
...Fintech and payments, and we move money and information in a way that moves the world. We... ...of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay... ...essential part of this role as in-person office experiences help you with your overall onboarding...Temporary workH1bWork at officeMonday to Friday- ...Proficiency in testing OWASP TOP 10 and SANS TOP 25 guidelines for enterprise applications using Manual assessments. • Proficient in Security Assessment Activities (Secure Design Review, Source Code Review & Security Testing). • Strong domain knowledge in Application...Contract work2 days per week1 day per week
$113.9k - $200.91k
...impact in the world of cybersecurity? Join Lockheed Martin Cyber & Intelligence's Offensive Cyber community and be at the forefront of securing some of the most advanced systems and networks out there. Our team doesn’t just do penetration testing - we create the techniques,...Full timeTemporary workRelocationRelocation packageFlexible hoursShift work$40 - $45 per hour
...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of... ...an innovative force, where healthcare meets retail. For more information, visit Business Structure The Joint Corp. is a...Hourly payFull timePart timeFlexible hours$93.2k - $164.45k
...capabilities that help protect the nation and the world. Who we are Are you driven by the thrill of outsmarting even the most advanced security systems and networks? Do you find satisfaction in crafting innovative solutions to stay one step ahead of the adversary? If so,...Temporary workRelocation packageFlexible hours$16 - $18 per hour
...East, Morris Plains, NJ, 07950, United States Base Pay $16.00 - $18.00 / Hour Job Category Customer Service Employee Type Non-Exempt Required Degree High school Manage Others No Contact Information Name JJ Becker Description Job Description...$113.9k - $200.91k
...Intelligence division. The role requires a minimum of 8 years of experience and a Bachelor’s degree in a relevant field. Candidates with US security clearance and expertise in programming languages such as C, C++, or Python are highly sought after. This position offers a...Relocation package- ...editing) skills and capability to adapt editorial style based on the educational format and/or the target audience. Expert at Microsoft Office, specifically PowerPoint, Excel, and Word. Familiarity with AMA Style Guide. Ability to travel. Other role details Seniority level:...Full timeWork at officeRemote work
$330k
...Number of Members: 15,600 Branch Information: The Family Center The F.M.... ...including annual campaigns and the securing of grants. A proven record of... ...Wyckoff Family YMCA Inc President & Chief Executive Officer Itasca County Family YMCA CEO...Work experience placementSummer workLocal area- About Us At WealthBridge Financial Group, we help individuals, families, and business owners create, protect, and grow wealth through personalized, forward-thinking financial strategies. Our approach combines innovation, collaboration, and education to deliver long...Flexible hours
- ...Chief Executive Officer (CEO) About the Company Mission-driven organization providing employment services to individuals with disabilities Industry Non-Profit Organization Management Type Non Profit Founded 1957 Employees 51-200 Specialties...Shift work
- ...Job Description Atlantic Health is Seeking a Section Chief, Pediatric Surgery at Atlantic Health Goryeb Children's Hospital... ...comprehensive Total Rewards package that supports the health, financial security, and well-being of all team members. Offerings vary based on...Hourly payFull timeTemporary workPart timeFor contractorsFor subcontractorFlexible hours
$300k - $400k
...industry - including talent, technology, and client dynamics - to inform strategic decision-making. Implement workflows and... ...and support to the growth and development of the firm's various offices, including coordinating office initiatives. Preferred Qualifications...Work at office$85k - $105k
...environment, then we would love to meet you. Please contact us if you are interested in hearing further about this opportunity. Please send your resume to ****@*****.*** Brian Torchin | CEO HCRC Staffing Office (***) ***-**** ****@*****.***...Full timeWork at office2 days per week- ...Job Description Atlantic Health is Seeking a Section Chief of Neuroradiology in Summit, New Jersey Atlantic Health, one of... ...comprehensive Total Rewards package that supports the health, financial security, and well-being of all team members. Offerings vary based on...Hourly payFull timeTemporary workPart timeFor contractorsFor subcontractorInternshipRelocationFlexible hours
- ...medical, dental, and vision plans for you and your dependents ~401(k) retirement plan with company match to help you build long-term security ~ Life and disability insurance for added peace of mind ~ Employee wellness programs and mental health resources ~ Career...Visa sponsorship
$150k - $175k
...Chief Executive Officer Employment Horizons, Inc. Cedar Knolls, New Jersey The Moran... ...veteran or disabled status, or genetic information. Application Process The Moran... ...Graff at the Moran Company, via the secure online portal. Resume should include...RelocationShift work$302.01k - $390.83k
...situations. Ability to identify the most important aspects of an issue. Ability to make effective evidence-based decisions even when information is limited, or solutions may produce challenging short-term consequences. Ability to provide overall leadership for one or more...Temporary workFor contractorsLocal areaWorldwide$164k - $266k
...Procurement teams with periodic updates to the Third-Party Minimum-Security Baseline contract addendum and provide ZTD review and... ...reply, click links, open attachments, share personal or financial information, or send money in response to unexpected or questionable recruitment...Full timeContract workTemporary workLocal area$100k
...looking to grow with a dynamic practice, with our staff having over 20 years of experience successfully running multimillion dollar offices. We need a chiropractor to run, operate, and potentially own a percentage of a state-of-the-art, multi-specialty facility featuring...Full timeWork at officeMonday to Friday- ...Management**: Monitor and analyze transaction patterns using fraud detection tools; support fraud prevention measures like tokenization, 3D Secure, and risk scoring systems. System Maintenance**: Perform updates, patches, and configurations for payment applications, ensuring...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Chief Information Security Officer (CISO). Be the first to apply!
Related searches
- information security Morristown, NJ
- information technology security engineer Morristown, NJ
- information security lead Morristown, NJ
- chief information security officer ciso
- business information security officer biso
- business information security officer
- information systems security officer
- remote ciso
- information systems security officer sso
- chief information security officer

