Left arrow iconBack to search

AVP, IT Assurance & Governance

Cross River
Posted a month ago, valid for 9 days
Location

Fort Lee, NJ, US

Salary

$150,000 - $170,000 per year

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Cross River is seeking an experienced AVP, Information Security to execute information security governance processes and ensure compliance with industry standards.
  • The ideal candidate should have over 5 years of experience in Information Security or related fields and possess professional certifications such as ISACA CISA or ISC2 CISSP.
  • Key responsibilities include supporting IT assurance tasks, maintaining business continuity plans, and monitoring IT risk metrics.
  • The position offers a competitive salary range of $150,000.00 to $170,000.00, reflecting the importance of the role within the organization.
  • Cross River values collaboration and integrity, making it a recognized Best Place to Work in Fintech.

Who We Are

Cross River builds the infrastructure behind the world’s most innovative financial products. Our technology and capital solutions power payments, cards, lending, and digital asset capabilities that move money safely, instantly, and inclusively — trusted by leading fintechs, enterprises, and disruptors across the globe.

Our mission is simple: to build the financial infrastructure that expands access and opportunity for all. Guided by a culture of collaboration, curiosity, and purpose, Cross River has been named one of American Banker’s Best Places to Work in Fintech year after year. Whether you’re designing code, solving regulatory puzzles, or developing strategy, you’ll join a team where innovation and integrity drive everything we do — and where your work helps shape the future of finance.

What We're Looking For

We are seeking an experienced AVP, Information Security to collaborate across the organization and execute information security governance processes. This hands-on role serves as a subject-matter expert, guiding and monitoring compliance with industry best practices, regulatory guidance, infosec frameworks, and internal policies and standards. The ideal candidate is self-motivated, solutions-oriented, detail-focused, and an independent thinker.

Responsibilities:

Support select IT assurance and infosec tasks, including:

  • SDLC & Change Management
    • Monitor and report adherence to SDLC and change management procedures
    • Coordinate penetration test vulnerability and EOL asset ticket closure with Infrastructure, Engineering, and Internal Audit
  • Business Continuity Management
    • Maintain and improve Crisis Management, Business Continuity (BCP), and Disaster Recovery Plans (DRP) aligned with industry standards and regulations
    • Conduct Business Impact Analysis (BIA) workshops to identify critical processes, systems,and quantify resilience metrics like RPOs, RTOs, and MTDs
    • Identify, propose, defend, and support implementation of resilience strategies and solutions
    • Design and execute a risk-based multi-year testing calendar
  • IT Risk Monitoring & Reporting
    • Monitor, assess, and report on the effectiveness of selected IT risk metrics
    • Design and implement new risk metrics
  • Privacy Request Fulfillment
    • Execute data-subject rights requests following privacy laws including CCPA and CAN-SPAM
  • IT Assurance
    • Collaborate with cross-functional teams to create or maintain select standards, procedures, and documentation
    • Provide training and awareness across the organization on policies and procedures
    • Collect evidence across IT processes to support audits and examinations
    • Maintain control mappings and perform gap analyses to drive continuous program improvement

Qualifications:

Must Have:

  • Exceptional written and verbal communication skills to present complex information clearly to diverse audiences
  • Professional certifications: ISACA CISA or ISC2 CISSP
  • 5+ years of experience in Information Security, IT Security, IT Audit, IT GRC, IT Compliance,IT Assurance, IT Risk, IT Business Analysis, or Business Continuity
  • Strong knowledge of software development life cycle (SDLC), change management, business continuity management, and IT risk management

Preferred:

  • Undergraduate or graduate degree in computer science, cybersecurity, information assurance, business administration, or a closely related field
  • Familiarity with regulatory guidance, standards, and frameworks such as the FFIEC ITHandbook, SOC 1/2, PCI DSS, COBIT 2019, and ITIL
  • Experience working in a highly regulated environment such as financial services, military, or healthcare

 

#LI-AC1 #LI-Hybrid

Salary Range: $150,000.00 - $170,000.00

Cross River is an Equal Opportunity Employer. Cross River does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need.

By submitting your application, you give Cross River permission to email, call, or text you using the contact details provided. We will only contact you with job related information.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.