Sardine

Sardine

Deputy Chief Information Security Officer

United States · Exec

Work authorization required$10k-$15kDetected 70 days ago
Cloud PlatformsCI/CDMachine LearningCybersecuritySOC OperationsIncident ResponseComplianceBudgetingZero TrustLeadershipCommunication

About the role

  • This is a senior, high-impact role for a security leader who can operate across multiple areas, including application security, GRC, security operations, cloud and SaaS security, corporate IT, customer trust, and overall security strategy.
  • We're looking for someone who is broad, pragmatic, technically fluent, and comfortable in customer-facing settings.
  • The right person can balance strong security judgment with the pace and trade-offs of a fast-moving startup.

Responsibilities

  • Partner with the CISO on Sardine's overall security strategy, roadmap, priorities, and execution
  • Support security reporting, executive updates, budgeting, vendor evaluation, and planning
  • Partner on key compliance initiatives, including PCI, SOC 2, ISO 27001, DORA, and future FedRAMP readiness
  • Support incident response and act as a deputy incident lead when needed
  • Bring strong AppSec fluency, including understanding how code moves from design through production, CI/CD, testing, SAST/DAST, dependency scanning, and secrets management
  • Partner with Product and Engineering on security considerations for AI/ML systems, bot mitigation, and abuse prevention
  • Support customer-facing security conversations, RFPs, due diligence, security reviews, and executive briefings
  • Partner cross-functionally with Legal, Sales, Engineering, Product, People, and IT

Requirements

  • 10-15+ years of cybersecurity experience, including 3+ years in a senior leadership or director-level role
  • Strong application security experience and ability to assess technical risk without needing to be hands-on coding daily
  • Experience operating in a startup, scale-up, or similarly resource-constrained environment where prioritization and pragmatism are critical
  • Ability to evaluate risk, stack-rank priorities, and focus on the highest-impact security work
  • Strong working knowledge of compliance frameworks such as SOC 2, PCI DSS, ISO 27001, GDPR, CCPA, DORA, and ideally FedRAMP
  • Experience participating in or leading security incidents
  • Familiarity with AI-assisted workflows and emerging AI/ML security risks
  • Must be based in the United States and authorized to work in the US without sponsorship
  • If you are seeking a meaningful career, you found the right place, and we would love to hear from you.

Nice to have

  • Experience in fintech, payments, security, bot mitigation, or regulated industries is a plus, but not required

Compensation

  • Generous compensation in cash and equity

Benefits

  • Generous compensation in cash and equity
  • Flexible paid time off and Year-end break
  • Health insurance, dental, and vision coverage for employees and dependents
  • One-time stipend to set up a home office - desk, chair, screen, etc.
  • Monthly meal stipend
  • Monthly social meet-up stipend
  • Annual health and wellness stipend
  • Annual Learning stipend

Company info

  • Sardine is the leading agentic risk platform for fighting financial crime. Our integrated solution unifies data across risk teams to help organizations stop fraud in real time, prevent AI-driven attacks, and automate fraud and AML operations. Sardine's platform is strengthened by one of the fastest-growing fraud consortiums in the market, spanning more than 6 billion profiled devices, 800 million consumers, and 3 million businesses worldwide. Leading companies including FIS, GoDaddy, Intuit, Edward Jones, ZoomInfo, and Checkout.com rely on Sardine to secure and grow trust in their products.
  • Our culture:
  • We have hubs in the Bay Area, NYC, Austin, Toronto, and São Paulo. However, we maintain a remote-first work culture. #WorkFromAnywhere
  • We hire talented, self-motivated individuals with extreme ownership and high growth orientation.
  • We value performance and not hours worked. We believe you shouldn't have to miss your family dinner, your kid's school play, friends get-together, or doctor's appointments for the sake of adhering to an arbitrary work schedule.
  • Sardine is the leading agentic risk platform for fighting financial crime.
  • Our integrated solution unifies data across risk teams to help organizations stop fraud in real time, prevent AI-driven attacks, and automate fraud and AML operations.
  • Sardine's platform is strengthened by one of the fastest-growing fraud consortiums in the market, spanning more than 6 billion profiled devices, 800 million consumers, and 3 million businesses worldwide.
  • Leading companies including FIS, GoDaddy, Intuit, Edward Jones, ZoomInfo, and Checkout.com rely on Sardine to secure and grow trust in their products.
  • Travel: Approximately once every 1-2 months, primarily in North America, with some potential international travel
  • Sardine is hiring a Deputy Chief Information Security Officer to partner closely with our CISO and help scale our security program as we grow.
  • You'll serve as a trusted partner to the CISO, help identify and prioritize the highest-risk areas, and represent Sardine's security program with internal teams, customers, prospects, auditors, and industry stakeholders.

Visa & Work Authorization

  • Must be based in the United States and authorized to work in the US without sponsorship

This listing is sourced directly from Sardine's careers page and normalized into a canonical job model.