Information Security & Risk Director

Addepar

Addepar

IT
United States · Remote
Posted on Friday, May 31, 2024

Who We Are

Addepar is a global technology and data company that helps investment professionals provide the most informed, precise guidance for their clients. Hundreds of thousands of users have trusted Addepar to empower smarter investment decisions and better advice over the last decade. With client presence in more than 40 countries, Addepar’s platform aggregates portfolio, market and client data for over $5 trillion in assets. Addepar’s open platform integrates with more than 100 software, data and services partners to deliver a complete solution for a wide range of firms and use cases. Addepar embraces a global flexible workforce model with offices in Silicon Valley, New York City, Salt Lake City, Chicago, London, Dublin, Edinburgh, Scotland and Pune, India.

*Marketplace and brokerage services provided by Acervus Securities, Inc., an SEC registered broker‑dealer and member FINRA / SIPC.

The Role

In the Information Security and Risk (‘ISR’) team, it's our mission to continuously elevate our security program to better protect our customers and people against threats, and support our reach into Global and Enterprise markets. This organization plays a key role in helping to balance risk-taking activities and decisions with opportunities to manage risk.

The successful ISR Director candidate will be skilled in leading high-impact information security initiatives that align closely with our business objectives.

As a leader in the ISR team, you will bring your expertise to drive key, strategic programs that mitigate risk in a scalable way. You'll work closely with Engineering leaders to bring awareness to a broad range of security topics and champion a strong security posture. As a member of a growing organization, you will have the opportunity to craft and further refine your role commensurate with the priorities of the organization and the company. This position requires a strong people leader with a track record of working independently in a fast-paced environment.

Addepar takes a market-based approach to pay. A successful candidate’s starting pay will be determined based on the role, job-related skills, experience, qualifications, work location, and market conditions. The range displayed on each job posting reflects the minimum and maximum target base salary for roles in Colorado, California, and New York.

The current range for this role is $184,000 - $288,000 (base salary) + bonus + equity + benefits.

What You’ll Do

  • Build positive partnerships with senior leaders in Engineering, to understand their business priorities, and ensure risks are well communicated and understood.
  • Drive scale and optimization in Addepar's Security Operations & IAM functions and technologies, including the identification of metrics to measure and communicate impact to leadership.
  • Lead and develop a team of dedicated Security Operations and IAM employees.
  • Communicate clearly and partner at all levels of the company, and to influence to ensure objectives are met.
  • Demonstrate strong analytical, problem-solving, and decision-making skills. Define, structure and plan work independently.

Who You Are

  • Experience in Information Security, including Identity and Access Management and Security Operations functions and tools.
  • Experience leading Security Incident Response teams and communicating with cross-functional leadership.
  • Strong connectivity to the security industry, with the ability to hire great talent, and stay current with evolving security threats and mitigations.
  • Ability to train, lead and educate cross-functional teams and team members on all aspects of the program and evolution.
  • Experience with AWS and SaaS technologies required. Experience with API technologies a plus. Familiarity with current security frameworks, standards and regulations such as SOC2, NIST, CSF, ISO270xx.
  • Preferred professional certifications: AWS Certified Solutions Architect, AWS Certified Security Specialty, Certified Information Security Auditor (CISA) or Certified Information Systems Security Professional (CISSP)

Our Values

  • Act Like an Owner - Think and operate with intention, purpose and care. Own outcomes.
  • Build Together - Collaborate to unlock the best solutions. Deliver lasting value.
  • Champion Our Clients - Exceed client expectations. Our clients’ success is our success.
  • Drive Innovation - Be bold and unconstrained in problem solving. Transform the industry.
  • Embrace Learning - Engage our community to broaden our perspective. Bring a growth mindset.

In addition to our core values, Addepar is proud to be an equal opportunity employer. We seek to bring together diverse ideas, experiences, skill sets, perspectives, backgrounds and identities to drive innovative solutions. We commit to promoting a welcoming environment where inclusion and belonging are held as a shared responsibility.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

PHISHING SCAM WARNING: Addepar is among several companies recently made aware of a phishing scam involving con artists posing as hiring managers recruiting via email, text and social media. The imposters are creating misleading email accounts, conducting remote “interviews,” and making fake job offers in order to collect personal and financial information from unsuspecting individuals. Please be aware that no job offers will be made from Addepar without a formal interview process. Additionally, Addepar will not ask you to purchase equipment or supplies as part of your onboarding process. If you have any questions, please reach out to TAinfo@addepar.com.