Chief Information Security Officer

Securitize
Securitize
United StatesOn-siteCompetitiveAdded 1 month ago
Securitize

Chief Information Security Officer

Original Advert

Securitize, the leader in tokenizing real-world assets with $3.7B+ AUM (as of May 5, 2025), is bringing the world on-chain through tokenized funds in partnership with top-tier asset managers, such as Apollo, BlackRock, Hamilton Lane, KKR, and others. Securitize, through its subsidiaries, is a SEC-registered broker dealer, digital transfer agent, fund administrator, and operator of a SEC-regulated Alternative Trading System (ATS).

Securitize is a global, fully remote team consisting of top talent from the blockchain and financial services industries. Having raised $170M overall to date, we are backed by some of the largest names in finance and technology, including BlackRock, Morgan Stanley, Blockchain Capital, MUFG, Sumitomo Mitsui Trust Bank, Sony Finance, Banco Santander, Coinbase, among others. Securitize has also been recognized as a 2025 Forbes Top 50 Fintech company. 

Before applying, we encourage you to visit us to learn more:

Website | X/Twitter | LinkedIn

Role Overview

We are looking for a Chief Information Security Officer (CISO) to lead the company's information security, IT operations, and technical compliance functions.

This role is strategic and hands-on, combining executive-level ownership of security and compliance with operational responsibility for corporate IT. The CISO will ensure the company meets regulatory, audit, and security obligations while enabling the business to scale safely across regulated entities, funds, and tokenized products.

The CISO reports directly to the CEO, with a dotted-line relationship to the CTO / CPO organization, reflecting the strong collaboration required with Product & Engineering.

Scope of Responsibilities

1. Corporate IT Operations & Support

Own and operate the company's internal IT environment and end-user services across all business units and regulated entities, including:

  • Endpoint lifecycle management (laptops, mobile devices, accessories)
  • IT onboarding and offboarding processes
  • Identity and Access Management (IAM) and RBAC for corporate systems
  • Email, productivity, and collaboration tools
  • Helpdesk and Tier 1 / Tier 2 support operations
  • Software asset management and license compliance
  • Endpoint security tooling (EDR, MDM, antivirus, DLP)
  • Employee security awareness and phishing training
  • IT support for regulatory exams, subpoenas, and information requests

2. Information Security Governance & Risk Management

Define and own the company-wide security framework, policies, and risk posture, including:

  • Corporate security policies (acceptable use, access control, incident response, vendor risk, etc.)
  • Vendor and third-party risk management programs
  • Security incident response governance for corporate systems
  • Business continuity and disaster recovery planning (for internal systems)
  • Asset inventory, audit logging, and evidence management
  • Participation in all material security incidents and retrospectives as part of fundamental risk governance

3. Technical Compliance, Audits & Certifications

Own security-related compliance and act as the primary executive counterpart for audits and regulators, including:

  • SOC 1 / SOC 2 readiness and ongoing compliance
  • SOX IT controls and coordination with Internal Controls
  • DORA readiness and operational resilience requirements
  • ISO 27001 or similar certifications (as applicable)
  • Regulatory security reporting and remediation management
  • Ownership of audit responses, findings, and corrective action plans

4. Platform Security Oversight (Tokenization & Lifecycle Management Platform)

While Product & Engineering owns implementation and operations of platform security, the CISO is responsible for policy, assessment, and external defensibility of the platform's security posture, including:

  • Reviewing and approving security architecture principles for the platform
  • Oversight of secure software development practices (DevSecOps)
  • Coordination and oversight of platform penetration tests
  • Oversight of smart contract audits and third-party security reviews
  • Participation in platform incident response when required
  • Ability to clearly explain, present, and defend platform security controls to:
    • Auditors
    • Regulators
    • Institutional clients and partners

5. Crypto & Tokenization Security

Given the company's core business and growing use of crypto assets, the CISO must bring hands-on expertise in digital asset security, including:

  • Private key management models
  • MPC-based custody and signing infrastructures
  • Secure operational processes for crypto asset handling
  • Policy definition for wallets, signing authorities, and access controls
  • Risk assessments related to on-chain activity and smart contracts
  • Oversight of crypto-specific incident response scenarios

Experience

Must-have

  • Senior leadership experience in Information Security (CISO, VP Security, or equivalent)
  • Proven ownership of audits and certifications (SOC, SOX, ISO, regulatory exams)
  • Strong understanding of cloud security (AWS or equivalent)
  • Direct experience with:
    • Crypto assets
    • Private key management
    • MPC or HSM-based infrastructures
    • Smart contract audits and security reviews
  • Ability to operate credibly with:
    • Regulators
    • Auditors
    • Institutional partners
  • Experience operating in regulated financial environment

Nice-to-have

  • Experience in fintech, capital markets, or digital securities
  • Familiarity with SEC-regulated entities and fund structures
  • Experience scaling security orgs in fast-growing companies

Why Join Us?

Become a part of our rapidly expanding organization and enjoy a supportive and rewarding work environment:

  • Flexible Paid Time Off - Promoting a healthy work-life balance.
  • Equity Grant Opportunities - Share in the success and future growth of the company.
  • Remote Work Flexibility - Work from anywhere while staying connected with a dynamic and collaborative team.

Additional Benefits for US employees

  • Comprehensive Insurance Coverage - Employer-paid Medical, Dental, and Vision benefits for you and your family.
  • 401(k) Retirement Plan - Secure your financial future with employer-sponsored savings.

Securitize is an equal opportunity employer and is committed to fostering a diverse, inclusive, and equitable workplace. We consider all qualified applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital or family status, or any other characteristic protected by applicable law.

All employment decisions at Securitize are based on job-related qualifications, merit, and business needs. We welcome candidates from all backgrounds, experiences, and perspectives to apply.

Head of Finance, Broker Dealer

United States
1w ago

Onboarding Product Manager

New York
3w ago

Strategy and Operations Manager

United States
4w ago

Director, Stock Tokenization Product Manager

New York
1mo ago

Associate Operations Specialist

United States
1mo ago

Investor Support Specialist

United States
1mo ago

Director of Trading & Risk

United States
1mo ago

Director of Sales, US

United States
3mo ago

Infrastructure and Cyber Security Senior Engine

Madrid, Spain
New

Gestor/a Cybersecurity - Expert Ia Security

Barcelona, Spain
New

SAP Security Consultant

Sevilla, Spain
1d ago

Application Security Consultants - Security by Design

Madrid, Spain
1d ago

Security Managed Services Practitioner

Mérida, Spain
1d ago

Information Security Engineer | North America (EST)

Remote, Spain
1d ago

Offensive Security Specialist (Red Team)

Remote, Spain
1d ago

Information Security Analyst, SecOps

Remote, Spain
1d ago

DevSecOps Engineer

Remote, Spain
1d ago

Information Security Engineer / Ingénieur en Sécurité de l'Information | North America (EST) /Amérique du Nord (EST)

Remote, Spain
1d ago

Senior Corporate Security Engineer

Spain
1d ago

Staff Corporate Security Engineer

Spain On Site, Spain
1d ago

Director, Technology Internal Audit

Barcelona, Spain; US - Culver City, United States
US$139K - US$226K6d ago

Technical Recruiter

Spain / Romania / Hungary / Ukraine / South Africa / Portugal / United States / United Kingdom / Poland / UAE
1w ago

Head of Creative

Germany (Remote); Ireland (Remote); Netherlands (Remote); Portugal (Remote); Spain (Remote); United Kingdom (Remote); United States (Remote)
3w ago

Senior Product Manager - Analytics

Germany (Remote); Ireland (Remote); Netherlands (Remote); Portugal (Remote); Spain (Remote); United Kingdom (Remote); United States (Remote)
3w ago

Business Development Manager (Outbound & GTM Systems)

Spain / Portugal / Germany / Hungary / Poland / Romania / United Kingdom / United States
1mo ago

French Canadian Linguist

Canada / Spain / Italy / France / Germany / Ireland / United Kingdom / Greece / Romania / United States
6mo ago

Game Testing - General Application

OPEN TO ALL LOCATIONS / Canada / Germany / Mexico / Philippines / Spain / United Kingdom / United States / Bangladesh / Romania / India / Argentina / Italy / Portugal / Brazil
7mo ago

Shape the Future of AI — Spanish Talent Hub

Remote, Worldwide / Argentina / Mexico / United States / Colombia / Peru / Santiago, Chile / Quito, Ecuador / Las Vegas, NV / San Jose, Costa Rica / Spain
10mo ago

Application managed by Securitize