Manager of Information Security

Clasp
$170,000 - $190,000Remote

About The Position

We're an AI-first company with a genuinely strong technical team and solid foundations already in place including a running SOC 2 program, a modern GCP infrastructure, a well-managed macOS/Windows fleet, and an engineering culture that ships. Your mission is to take ownership of the information security program, lead our Information Technology team, and pair with engineering leadership and AI Labs on the deep technical work. This is the rare security role reporting to the CTO where you get real ownership on day one without inheriting a mess. If you're the kind of security leader who'd rather stand up a SIEM, harden a Terraform pipeline, and build your own tooling than manage a stack of vendors, this role was built for you.

Requirements

  • CISSP certification.
  • 5+ years on a security team.
  • Startup experience — you've worked somewhere scrappy, not only at large/mega companies.
  • Compliance in the room — you've been at a company that achieved SOC 2 or ISO 27001.
  • A technical foundation — a semi-technical degree (Information Systems or similar) or a few years of hands-on technical work (scripting, web development, automation, data analysis, etc.).
  • AI builder's instinct — comfortable scripting, prototyping, and using AI and modern tooling to solve problems efficiently.
  • Strong communicator — credible and clear with customers, partner banks, auditors, and internal teams.
  • You'll be customer and regulator facing. If you're earlier in your leadership journey, that's fine as we'll back you with coaching and support on the tough calls.

Nice To Haves

  • Fintech, lending, or other regulated / high-trust experience.
  • Hands-on GCP security depth (AWS experience also welcome).
  • Stood up or owned a SOC 2 program from scratch.
  • Experience fielding diligence from partner banks or enterprise customers.

Responsibilities

  • Run our SOC 2 program end to end, own evolution of our Information Security policies, own our Vanta instance, run events such as business continuity drills, and represent information security in our Risk + Compliance committee.
  • Lead and collaborate with our IT/TechOps team across corporate IT and security: laptop procurement, MDM, onboarding/offboarding, SaaS vendor management and hardening, incident response, data loss protection, and more. Together you'll set direction and grow the function and the team as we scale.
  • Own third-party security reviews, and be the front line for inbound customer and partner-bank security questionnaires.
  • Configure our SIEM, build the alerting that gives us real signal without noise, and manage vendor relationships for real proactive visibility and risk reductions.
  • Pair with technical leaders to advance our cloud posture, IAM (JIT privilege escalation, group-based access), and platform hardening.
  • Partner with engineering to advance secure SDLC in a rapidly changing agentic world. Ensure dependency and vulnerability scanning is effective, CI/CD and pipelines are hardened, and new features have robust threat modeling.
  • Work with the CTO and AI Labs to run build vs buy analysis for all categories of agentic security work: detection/triage, evidence collection, questionnaire drafting, access reviews and more. Additionally, ensure all other deployed agents operate securely.

Benefits

  • Competitive cash and equity compensation
  • Health benefits (health, dental, & vision)
  • Student loan repayment benefits
  • 401k matching
  • Commuter benefits
  • Flexible PTO policy
  • Opportunities to grow and perform in a fast-paced environment alongside a stellar team
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service