Primary record

Director, Information Technology & Security

Affirm Indexed employerRemote US
Source-hosted applyChecked 9m agoContract
Apply at Affirm

Affirm receives this application through Greenhouse. Babu Careers does not claim delivery.

Workplace

hybrid

Employment

Contract

Published

Aug 11, 2026

Closes

No date supplied

The role

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

Remote US

The Director, Information Technology & Security will serve as a key member of the Bank's Management Team, serving as the Chief Information Security Officer, and will be responsible for establishing and leading the Bank's information security and cybersecurity programs. As the Bank prepares to launch as a de novo Industrial Loan Company (ILC), this leader will design and implement an enterprise-wide security framework that meets FDIC and state regulatory expectations, supports the Bank's risk appetite, and protects customer and institutional data.

This is a blended leadership role requiring both high-level strategic influence and deep technical execution. You will lead the development of information security governance, technical controls, and oversight of infrastructure and engineering, ensuring a strong and scalable security posture from inception. This leader must be a practitioner at heart—willing to "roll up their sleeves" to lead the technical build phase, collaborate closely with engineering on architecture, and ensure security is integrated into every aspect of the Bank's systems and operations.

What You’ll Do

• Oversee infrastructure design and IT Engineering

• Information Security Program Development

• Design, implement, and maintain a comprehensive Information Security Program consistent with FDIC guidance (e.g., FIL-66-2019, FIL-13-2021) and the Interagency Guidelines Establishing Information Security Standards.

• Develop and oversee policies, standards, and procedures governing cybersecurity, data protection, and incident response.

• Ensure alignment with the Bank’s overall risk management and governance frameworks.

• Provide re

Requirements

Department: Bank Strategy