Director, Information Technology & Security

Affirm

Remote Actively hiring
Remote (US) Posted 34 days ago $300,000$360,000 / year

At a glance

AI generated

TL;DR

The Director of Affirm Bank Information Security is a senior leadership role within the Executive Management Team, responsible for establishing and leading comprehensive information security programs that meet FDIC and state regulatory requirements. This leader will design an enterprise-wide security framework from inception to growth, ensuring compliance with financial regulations while collaborating closely with technology, risk, and operations teams. Key responsibilities include developing governance policies, implementing technical controls, managing threat detection, overseeing third-party risks, and ensuring data privacy protection. The ideal candidate has over 10 years of experience in information security at regulated institutions, including leadership roles, and expertise in FDIC standards, cloud-based environments, and incident response. Strong communication skills are essential for interfacing with executive management and regulators.

Skills

FDIC FFIEC GLBA Regulation P FS-ISAC Incident Response Penetration Testing Cloud Security Hybrid Environments Information Security Governance Third-Party Risk Management Data Protection Privacy-by-Design Business Continuity Planning Disaster Recovery Vendor Management Security Operations Cyber Threat Intelligence Compliance Reporting Regulatory Compliance Risk Management

What you'll do

  • Design and implement an enterprise-wide security framework meeting FDIC regulatory expectations.
  • Develop and oversee policies, standards, and procedures for cybersecurity and data protection.
  • Lead the Bank’s Incident Response Program and coordinate with regulators during incidents.
  • Evaluate third-party service providers to ensure compliance with information security requirements.
  • Ensure compliance with privacy laws and integrate privacy-by-design principles into new products.

What we're looking for

  • Minimum 10 years of information security and technology risk management experience, including leadership in a regulated financial institution.
  • Proven track record designing and implementing FDIC-compliant information security programs.
  • Expertise in third-party risk frameworks and financial services cybersecurity standards.
  • Experience leading incident response and security operations in cloud-based environments.
  • Strong communication skills for complex technical topics to executive leadership and regulators.
  • Strategic thinking with operational execution, control discipline, and a risk-based approach.

Market check

Salary context

This $300,000–$360,000 range sits above 98% of similar postings on FindRole.

Peer median band

$135,605$220,200

Median floor and ceiling across peers.

Typical midpoint (25–75%)

$149,387$220,225

Middle half of comparable postings.

Based on 240 comparable postings.

* 240 is the maximum number of comparable postings sampled.

Employer

About Affirm

Affirm is a buy-now, pay-later (BNPL) financial technology company that offers point-of-sale installment loans to consumers, allowing them to split purchases into fixed monthly payments with transparent terms. Industry: Financial Technology & Consumer Lending

Affirm currently has 59 open roles on FindRole.

Listed pay typically runs $190,000–$240,000 across 58 roles with salary data.

Most-posted roles

View all roles at Affirm

More like this

Similar roles

Director, Affirm Bank Internal Audit

Affirm

Remote (US) 34 days ago $245,000$325,000
FDIC ILC Audit Committee Risk Management Internal Controls Regulatory Compliance Lending Sponsorship Banking Consumer Deposits IT Systems KPIs Board Reporting External Auditors Vendor Onboarding Readiness Assessments Strategic Thinking Control Gaps Identification Operational Improvements
Remote

Senior Manager, Affirm Bank Compliance

Affirm

Remote (US) 34 days ago $190,000$240,000
BSA AML CFT OFAC FinCEN FDIC FFIEC CAMS CTR SAR Customer Identification Program Customer Due Diligence Transaction Monitoring Regulatory Reporting Independent Testing
Remote

Senior Lead Information Security Office Consultant

Capital One Financial

Plano, TX 34 days ago $229,900$262,400
AWS Azure GCP Cloud Security Engineering CI/CD Agile Methodologies Threat Modeling Penetration Testing Vulnerability Management SaaS Integration Container Services Splunk PostgreSQL Python Kubernetes Terraform