Assistant Vice President, Cyber Security

Continental Finance Company

$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • BA or BS Degree in Computer Science or related field preferred; High School Diploma or GED required.
  • 6-10 years of experience in cybersecurity, cloud infrastructure, or software engineering.
  • 2-4 years in a senior or lead security engineering role.
  • Hands-on experience securing cloud-native, SaaS, or FinTech platforms.
  • Direct experience with AWS-based, API-heavy architectures.
  • Expertise in security tooling and DevSecOps practices.
  • AWS Certified Security - Specialty certification is a plus.

Responsibilities

  • Own the technical execution of the cybersecurity program.
  • Lead a team of cybersecurity engineers; manage performance and development.
  • Design and operate security controls within AWS environments.
  • Implement IAM, encryption, secrets management, and network security solutions.
  • Define and enforce security standards for APIs and applications.
  • Integrate security tools into CI/CD pipelines for various assessments.
  • Monitor security events and manage technical incident response.

Benefits

  • Hybrid work schedule with three core in-office days and two remote days.
  • Opportunities for professional development and performance coaching.
  • Exposure to regulated environments such as FinTech or financial services.
  • Engagement in significant, impactful cybersecurity program initiatives.
Full Job Description
The Lead Cyber Security Engineer will be responsible for designing, implementing, and operating our cybersecurity program in a cloud-first, API-driven environment. This role is a senior individual contributor with technical leadership responsibility, responsible for embedding security into our AWS infrastructure, applications, and engineering workflows.

The ideal candidate is a builder and operator who can balance practical risk management with engineering velocity, working closely with development and infrastructure teams to deliver secure, scalable systems.

Essential Functions:
  • Own the technical execution of the cybersecurity program.
  • Provide leadership to a team of cybersecurity engineers, including performance coaching, workload prioritization, and professional development.
  • Design and operate security controls across AWS environments.
  • Implement and maintain IAM, encryption, secrets management, and network security.
  • Define and enforce secure API and application security standards.
  • Integrate security tooling into CI/CD pipelines (SAST, DAST, dependency scanning).
  • Perform threat modeling, vulnerability assessments, and remediation.
  • Monitor security events and lead technical incident response.
  • Support SOC 2, PCI DSS, and related audit and compliance activities.
  • Conduct security reviews of vendors, partners, and third-party integrations.
  • Act as a security subject-matter expert and advisor to engineering teams.


The ideal candidate will have the following:
  • BA or BS Degree in Computer Science or related degree is preferred. High School Diploma or GED required.
  • Minimum of 6-10 years of experience in cybersecurity, cloud infrastructure, or software engineering is required.
  • 2-4 years in a senior or lead security engineering role.
  • Hands-on experience securing cloud-native, SaaS or FinTech platforms.
  • Direct experience with AWS-based, API-heavy architectures.
  • Strong hands-on experience with:
    • AWS IAM, VPC, KMS, Security Hub, GuardDuty, CloudTrail
    • Secure API design (OAuth2, JWTs, mTLS)
    • Infrastructure-as-Code (Terraform or CloudFormation)
    • CI/CD security and DevSecOps practices
  • Solid understanding of OWASP Top 10 and API Security Top 10.
  • Strong technical judgment and ownership mindset.
  • Ability to communicate security risks clearly to engineers and leadership.
  • Pragmatic, risk-based approach to security.
  • Comfortably operating independently and remaining deeply hands-on.
  • AWS Certified Security - Specialty certification is a plus.
  • CISSP, CCSP, CISM, or GIAC certifications are preferred.
  • Experience in regulated FinTech or financial services environments preferred.


CFC offers a hybrid work schedule which includes three (3) core days in the office (Tuesday, Wednesday, and Thursday) and two (2) remote workdays (Monday and Friday)

#LI-HYBRID

Similar Jobs

More Jobs at Continental Finance Company

More Information Technology Jobs

Find similar Assistant Vice President, Cyber Security jobs: