Chief Information Security Officer

Securitize
Securitize
United StatesPresencialCompetitivoPublicado hace 3 meses
🇬🇧Inglés requeridoProduct & engineering
Securitize

Chief Information Security Officer

Anuncio original

Securitize, the leader in tokenizing real-world assets with $3.7B+ AUM (as of May 5, 2025), is bringing the world on-chain through tokenized funds in partnership with top-tier asset managers, such as Apollo, BlackRock, Hamilton Lane, KKR, and others. Securitize, through its subsidiaries, is a SEC-registered broker dealer, digital transfer agent, fund administrator, and operator of a SEC-regulated Alternative Trading System (ATS).

Securitize is a global, fully remote team consisting of top talent from the blockchain and financial services industries. Having raised $170M overall to date, we are backed by some of the largest names in finance and technology, including BlackRock, Morgan Stanley, Blockchain Capital, MUFG, Sumitomo Mitsui Trust Bank, Sony Finance, Banco Santander, Coinbase, among others. Securitize has also been recognized as a 2025 Forbes Top 50 Fintech company. 

Before applying, we encourage you to visit us to learn more:

Website | X/Twitter | LinkedIn

Role Overview

We are looking for a Chief Information Security Officer (CISO) to lead the company's information security, IT operations, and technical compliance functions.

This role is strategic and hands-on, combining executive-level ownership of security and compliance with operational responsibility for corporate IT. The CISO will ensure the company meets regulatory, audit, and security obligations while enabling the business to scale safely across regulated entities, funds, and tokenized products.

The CISO reports directly to the CEO, with a dotted-line relationship to the CTO / CPO organization, reflecting the strong collaboration required with Product & Engineering.

Scope of Responsibilities

1. Corporate IT Operations & Support

Own and operate the company's internal IT environment and end-user services across all business units and regulated entities, including:

  • Endpoint lifecycle management (laptops, mobile devices, accessories)
  • IT onboarding and offboarding processes
  • Identity and Access Management (IAM) and RBAC for corporate systems
  • Email, productivity, and collaboration tools
  • Helpdesk and Tier 1 / Tier 2 support operations
  • Software asset management and license compliance
  • Endpoint security tooling (EDR, MDM, antivirus, DLP)
  • Employee security awareness and phishing training
  • IT support for regulatory exams, subpoenas, and information requests

2. Information Security Governance & Risk Management

Define and own the company-wide security framework, policies, and risk posture, including:

  • Corporate security policies (acceptable use, access control, incident response, vendor risk, etc.)
  • Vendor and third-party risk management programs
  • Security incident response governance for corporate systems
  • Business continuity and disaster recovery planning (for internal systems)
  • Asset inventory, audit logging, and evidence management
  • Participation in all material security incidents and retrospectives as part of fundamental risk governance

3. Technical Compliance, Audits & Certifications

Own security-related compliance and act as the primary executive counterpart for audits and regulators, including:

  • SOC 1 / SOC 2 readiness and ongoing compliance
  • SOX IT controls and coordination with Internal Controls
  • DORA readiness and operational resilience requirements
  • ISO 27001 or similar certifications (as applicable)
  • Regulatory security reporting and remediation management
  • Ownership of audit responses, findings, and corrective action plans

4. Platform Security Oversight (Tokenization & Lifecycle Management Platform)

While Product & Engineering owns implementation and operations of platform security, the CISO is responsible for policy, assessment, and external defensibility of the platform's security posture, including:

  • Reviewing and approving security architecture principles for the platform
  • Oversight of secure software development practices (DevSecOps)
  • Coordination and oversight of platform penetration tests
  • Oversight of smart contract audits and third-party security reviews
  • Participation in platform incident response when required
  • Ability to clearly explain, present, and defend platform security controls to:
    • Auditors
    • Regulators
    • Institutional clients and partners

5. Crypto & Tokenization Security

Given the company's core business and growing use of crypto assets, the CISO must bring hands-on expertise in digital asset security, including:

  • Private key management models
  • MPC-based custody and signing infrastructures
  • Secure operational processes for crypto asset handling
  • Policy definition for wallets, signing authorities, and access controls
  • Risk assessments related to on-chain activity and smart contracts
  • Oversight of crypto-specific incident response scenarios

Experience

Must-have

  • Senior leadership experience in Information Security (CISO, VP Security, or equivalent)
  • Proven ownership of audits and certifications (SOC, SOX, ISO, regulatory exams)
  • Strong understanding of cloud security (AWS or equivalent)
  • Direct experience with:
    • Crypto assets
    • Private key management
    • MPC or HSM-based infrastructures
    • Smart contract audits and security reviews
  • Ability to operate credibly with:
    • Regulators
    • Auditors
    • Institutional partners
  • Experience operating in regulated financial environment

Nice-to-have

  • Experience in fintech, capital markets, or digital securities
  • Familiarity with SEC-regulated entities and fund structures
  • Experience scaling security orgs in fast-growing companies

Why Join Us?

Become a part of our rapidly expanding organization and enjoy a supportive and rewarding work environment:

  • Flexible Paid Time Off - Promoting a healthy work-life balance.
  • Equity Grant Opportunities - Share in the success and future growth of the company.
  • Remote Work Flexibility - Work from anywhere while staying connected with a dynamic and collaborative team.

Additional Benefits for US employees

  • Comprehensive Insurance Coverage - Employer-paid Medical, Dental, and Vision benefits for you and your family.
  • 401(k) Retirement Plan - Secure your financial future with employer-sponsored savings.

Securitize is an equal opportunity employer and is committed to fostering a diverse, inclusive, and equitable workplace. We consider all qualified applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital or family status, or any other characteristic protected by applicable law.

All employment decisions at Securitize are based on job-related qualifications, merit, and business needs. We welcome candidates from all backgrounds, experiences, and perspectives to apply.

Manager, Fund Accounting – Private Equity

United States, Halifax
1sem

Strategy and Operations Manager

United States
1m

Director, Stock Tokenization Product Manager

New York
1m

Associate Operations Specialist

United States
1m

Investor Support Specialist

United States
1m

Associate, Private Equity/Venture Capital

Halifax
1m

Head of Finance, Broker Dealer

United States
2m
Híbrido

Senior Security Engineer - Platform

Barcelona (Hybrid)
Nuevo
Híbrido

Senior Security Engineer - Application

Barcelona (Hybrid)
Nuevo

Security Specialist

ES - BARCELONA (ESBCA)
Nuevo

Security Manager

The Palace a Luxury Collection Hotel Madrid, Plaza de las Cortes 7, Madrid, 28014
Nuevo

Enterprise Security Architect - IAM

Barcelona Gran Vía
Nuevo
Remoto

Senior Security Engineer

Spain (Remote)
Nuevo
Remoto

Senior Security Engineer, Privacy (Eastern Time Zone Preferred)

Spain (Remote)
Nuevo
Remoto

Corporate Security Engineer

Spain (Remote)
Nuevo

SAP Security Senior Consultant

Santiago
Nuevo
Remoto

Security Engineer

Argentina / Bogota / Chile / Mexico / Colombia / Puerto Rico / Buenos Aires / Europe / Lima / Israel / Paraguay / Spain / Ecuador
3d

Security Trainee (May) - W Barcelona

W Barcelona, Placa de la Rosa dels Vents 1, Barcelona, Barcelona, 8039
4d

Lead Community Strategist- Monopoly GO!

ES - Barcelona; GB - London, United Kingdom; US - Culver City, United States
118 mil US$ - 146 mil US$2d
Híbrido

Senior Machine Learning Engineer

United Kingdom - Hybrid / Portugal - Remote / Spain - Remote / United States (East Coast Time Zone) - Remote
192 mil US$ - 235 mil US$1sem
Remoto

Technical Recruiter

Spain / Romania / Hungary / Ukraine / South Africa / Portugal / United States / United Kingdom / Poland / UAE
3sem
Remoto

Head of Creative

Germany (Remote) ; Ireland (Remote); Netherlands (Remote) ; Portugal (Remote) ; Spain (Remote) ; United Kingdom (Remote) ; United States (Remote)
1m
Remoto

Business Development Manager (Outbound & GTM Systems)

Spain / Portugal / Germany / Hungary / Poland / Romania / United Kingdom / United States
1m
Remoto

Project Lynx - Quality Reviewer (Spoken Content) - Spanish (Dominican Republic)

United States / United Kingdom / Germany / France / Canada / Indonesia / Mexico / Spain / Lisbon, Portugal / Porto, Portugal / Colombia / Santo Domingo, Dominican R.
1m
Remoto

Project Lynx - Quality Reviewer (Spoken Content) - English (New Zealand)

United States / United Kingdom / Germany / France / Canada / Indonesia / Mexico / Spain / Lisbon, Portugal / Porto, Portugal / Colombia / Santo Domingo, Dominican R. / New Zealand
1m
Híbrido

Director, Technology Internal Audit

ES - Barcelona; US - Culver City, United States
139 mil US$ - 226 mil US$6m
Remoto

French Canadian Linguist

Canada / Spain / Italy / France / Germany / Ireland / United Kingdom / Greece / Romania / United States
7m
Remoto

Game Testing - General Application

OPEN TO ALL LOCATIONS / Canada / Germany / Mexico / Philippines / Spain / United Kingdom / United States / Bangladesh / Romania / India / Argentina / Italy / Portugal / Brazil
8m
Remoto

Senior Product Manager - Analytics

Germany (Remote) ; Ireland (Remote); Netherlands (Remote) ; Portugal (Remote) ; Spain (Remote) ; United Kingdom (Remote) ; United States (Remote)
8m
Remoto

Shape the Future of AI — Spanish Talent Hub

Remote, Worldwide / Argentina / Mexico / United States / Colombia / Peru / Santiago, Chile / Quito, Ecuador / Las Vegas, NV / San Jose, Costa Rica / Spain
10m

Candidatura gestionada por Securitize