VP, Chief Information Security Officer

Guild Mortgage,
$197,123 - $288,293Onsite

About The Position

The Vice President and Chief Information Security Officer's role is to provide vision and leadership for developing security strategy and multi-year roadmap for continuous improvement. This role is responsible for establishing and maintaining an enterprise-wide information security management program to ensure that information assets are adequately protected. This position is responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. The Chief Information Security Officer provides input and guidance on the planning and implementation of enterprise IT systems, business operations, and facility defenses to prevent and mitigate security breaches and vulnerability issues based on knowledge of both internal and external environments. This individual is also responsible for identifying issues and risks in existing systems, while directing the administration of security policies, activities, and standards. This role is an integrator of people, process, and technology. This role's key stakeholders are the SVP IT Operations and the Chief and Compliance officer. This role will present to the Board and/or other governing bodies on a Quarterly basis.

Requirements

  • Bachelors Degree directly related to the position or equivalent, preferred.
  • Minimum 10 years Progressive experience in cybersecurity, with demonstrated breadth experience across security architecture, risk management, compliance, and security operations.
  • Minimum five years senior leadership experience.
  • Advanced security certifications, CISSP required. CISM, CISA, and CRISC preferred.
  • Proven track record of building and scaling enterprise security programs in complex, high-growth environments.
  • Hands-on experience navigating regulatory frameworks (PCI DSSSOC 2, NIST CSF, GLBA Safeguards rule, ISO 27001).
  • Deep knowledge of cloud security (AWS, GCP, and/or Azure), DevSecOps practices, and modern security tooling.
  • Executive presence and communication skills, with the ability to engage a Board of Directors and translate complex technical risk into strategic business terms.
  • Experience leading high-performing, geographically distributed teams.
  • Prior CISO title or equivalent accountabilities at a technology company, financial institution, or regulated fintech.
  • Excellent verbal and written communication skills required.
  • Highly organized and detail-oriented; ability to work in a fast-paced, metrics-driven environment required.
  • Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications required.
  • Commitment to company values.
  • Customer Service - Proactive attention to each person.
  • Integrity - Do and say what's right.
  • Respect - Treat others with dignity.
  • Collaboration - Listen and work together.
  • Learning - Seek knowledge and strive for improvement.
  • Excellence – Deliver the unexpected.
  • Work is primarily sedentary; mobility in an office setting.
  • Ability to operate standard office equipment and keyboards.
  • Regularly required to accurately perceive, distinguish and interpret information received visually and through audio; e.g., words, numbers and other data broadcasted aloud/viewed on a screen, as well as print and other media.
  • Ability to accurately interpret sounds and associated meanings at a volume consistent with interpersonal conversation.
  • Expressing or exchanging ideas by means of the spoken word to impart oral information to clients or the public and to convey detailed spoken instructions to other workers accurately, loudly, or quickly.
  • Office environment – moderate noise, no substantial exposure to adverse environmental conditions.
  • Learn new tasks, remember processes, maintain focus, complete tasks independently, and make timely decisions in the context of a workflow.
  • Work is primarily performed during the business week, Monday - Friday.

Nice To Haves

  • CISM, CISA, and CRISC preferred.

Responsibilities

  • Define enterprise information security strategy and a multi-year roadmap.
  • Own the enterprise security architecture across cloud/on premise infrastructure, APIs, and internal applications.
  • Owns all security policies, standards, and procedures.
  • Represents InfoSec at Board of Directors and executive committee meetings.
  • Accountable to external regulators, auditors, and cyber insurers.
  • Drives risk appetite definition and enterprise risk posture.
  • Manages compliance programs (SOC 2, NIST CSF, GLBA Safeguards rule, ISO 27001).
  • Oversees third-party security partners and tooling selection.
  • Reports on security program maturity and key risk indicators.
  • Primary liaison to Legal, Risk, and Compliance.

Benefits

  • medical
  • dental
  • vision
  • life insurance
  • AD&D
  • LTD
  • 401(k) with employer match
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service