Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Head of Technical Security image - Rise Careers
Job details

Head of Technical Security

About Greenboard

At Greenboard, we’re building the future of financial compliance. Greenboard is the unified, AI-native compliance operating system for RIAs, fintechs, private funds, hedge funds, and more. It replaces the fragmented mix of legacy tools and automates more than previously possible. By centralizing data and workflows, Greenboard helps firms reduce regulatory risk, simplify their technology stack, modernize how they run compliance, and save money.

Our founding team includes engineers who have scaled products at Amazon, Google, and multiple unicorn startups. We’re backed by Y Combinator, General Catalyst, Base10, and other top-tier investors, and have raised over $20M to date. Brand-name financial institutions already rely on Greenboard — and we’re growing fast.

About the Role

We're looking for a hands-on security engineer to own and scale our security posture as we grow. You'll be the first dedicated security hire on our engineering team, which means you'll have a direct hand in shaping how we think about security — from compliance frameworks and vendor diligence to infrastructure hardening and secure development practices.

This is a high-impact, high-autonomy role. You'll work closely with engineering, product, and business teams to make sure we're building securely, meeting the compliance bar our fintech customers expect, and staying ahead of threats as we expand internationally.

What You'll Do

Technical Security

  • Detect, triage, and drive remediation of vulnerabilities across the stack — infrastructure, application, and network.

  • Manage third-party penetration tests and coordinate internal response to findings.

  • Integrate security into the development lifecycle: code review guardrails, SAST/DAST tooling, dependency scanning, and developer security guidance.

  • Own credential and secrets management, including rotation policies, vault configuration, and access controls.

  • Manage infrastructure patching and hardening, working with engineering to keep systems current without disrupting delivery.

Security Compliance & Frameworks

  • Own our SOC 2 compliance program end-to-end, including audit preparation, evidence collection, and remediation tracking.

  • Maintain and mature our GDPR compliance posture, partnering with legal and product to ensure data protection requirements are met.

  • Lead our ISO 42001 certification efforts, establishing and maintaining the required AI management system controls.

  • Research and implement additional compliance frameworks as we expand into new markets, acting as the internal authority on what's required and when.

Vendor & Customer Security Diligence

  • Manage inbound security diligence requests that arise during client sales processes — completing questionnaires, coordinating evidence, and joining calls as needed.

  • Build and maintain a vendor security review process for evaluating third-party tools and services before they're adopted.

  • Maintain a library of up-to-date security documentation (policies, SOC 2 reports, architecture diagrams) to accelerate deal cycles.

IT & Device Security

  • Manage endpoint security across the company — MDM, disk encryption, OS patching, and device compliance policies.

  • Maintain and enforce access control policies for corporate tools and systems (SSO, MFA, least-privilege access).

What We're Looking For

  • 3–7 years of experience in security engineering, application security, or infrastructure security roles.

  • Hands-on experience with SOC 2 audits and at least one other compliance framework (GDPR, ISO 27001, PCI-DSS, or similar).

  • Strong technical foundation — you're comfortable reading code, reviewing AWS infrastructure, and working in a CI/CD environment.

  • Experience with vulnerability management tooling (e.g., Snyk, Semgrep, Qualys, Burp Suite, or equivalents).

  • Familiarity with AWS Secrets Manager and IAM best practices.

  • Experience managing or coordinating third-party pentests.

  • Clear, low-ego communication style — you can explain a risk to an engineer and a compliance requirement to a salesperson with equal clarity.

  • Comfort with ambiguity and ownership. This is a build-it role, not a maintain-it role.

Nice to Have

  • Prior experience at a fintech or other regulated-industry startup.

  • Familiarity with ISO 42001 or AI governance frameworks.

  • Experience with MDM platforms

  • Background supporting international expansion from a security/compliance perspective.

Benefits

  • Salary range: $185,000–$300,000 + meaningful equity

  • 401(k) with 5% company match

  • Medical, dental, and vision coverage

  • 15 days PTO + 11 company holidays + flexible sick time

  • 2 additional PTO days for each year of service (up to 10 additional days)

  • 10 remote days per year plus additional around the holidays

  • Bi-annual off-sites and team retreats

  • Front-row seat to building the operating backbone of modern finance

Average salary estimate

$242500 / YEARLY (est.)
min
max
$185000K
$300000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Posted 59 minutes ago

Legends Global seeks an experienced Director of Technical Services to oversee IT, telecom, AV and broadcast operations at NRG Park, ensuring reliable event and tenant technical support.

Photo of the Rise User
Posted 14 hours ago

Western Digital is hiring a Director of IT Business Operations in San Jose to lead operational reviews, agile adoption, workforce planning, and IT communications for a large enterprise IT organization.

Photo of the Rise User
Awesome Motive Hybrid 900 Sylvan Avenue, Englewood Cliffs, NEW JERSEY
Posted 11 hours ago

Versant Media seeks a Senior Storage Engineer to design, operate, and optimize enterprise SAN/NAS platforms across multi-site data centers supporting high-throughput media and production environments.

Photo of the Rise User

Experienced licensing and lifecycle analyst needed to evaluate vendor licensing models, hardware/software dependencies, and develop software roadmaps to optimize capability and cost for federal clients.

Photo of the Rise User
Posted 40 minutes ago

Experienced healthcare IT practitioner needed to lead site discovery, technical readiness, and engineering coordination for Oracle EHR deployments across VA hospitals and clinics.

Photo of the Rise User

Experienced market-access applications analyst needed to support and optimize Model N and Anaplan integrations and production systems for a pharma commercial operations team.

Photo of the Rise User
Ingram Content Group Hybrid 7315 Innovation Blvd, Fort Wayne, IN 46818, USA
Posted 10 hours ago

Ingram Content Group is hiring a Technical Support Coordinator to install, configure and troubleshoot workstation, printer and RF equipment at its Fort Wayne distribution center.

Bah Hybrid San Diego, CA
Posted 13 hours ago

Lead design and Tier III support for enterprise Navy networks, delivering architecture, automation, and operational solutions to support global missions.

Photo of the Rise User
EDC Consulting Hybrid 800 Corporate Dr 3rd floor, Stafford, VA 22554, USA
Posted 23 hours ago

Experienced Microsoft 365 consultant needed to manage Exchange, SharePoint, Teams, Azure AD/Entra ID, security, and service management for a federal customer with required on-site escalation availability in Stafford, VA.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 9, 2026
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!