AVP, IT Assurance & Governance
Cross River- Location
- Fort Lee, New Jersey, United States
- Workplace
- Hybrid
- Employment
- —
- Salary
- USD 150,000–170,000/yr
Posted 17d ago
Who We Are
Cross River builds the infrastructure behind the world’s most innovative financial products. Our technology and capital solutions power payments, cards, lending, and digital asset capabilities that move money safely, instantly, and inclusively — trusted by leading fintechs, enterprises, and disruptors across the globe.
Our mission is simple
to build the financial infrastructure that expands access and opportunity for all. Guided by a culture of collaboration, curiosity, and purpose, Cross River has been named one of American Banker’s Best Places to Work in Fintech year after year. Whether you’re designing code, solving regulatory puzzles, or developing strategy, you’ll join a team where innovation and integrity drive everything we do — and where your work helps shape the future of finance.
What We're Looking For
We are seeking an experienced AVP, Information Security to collaborate across the organization and execute information security governance processes. This hands-on role serves as a subject-matter expert, guiding and monitoring compliance with industry best practices, regulatory guidance, infosec frameworks, and internal policies and standards. The ideal candidate is self-motivated, solutions-oriented, detail-focused, and an independent thinker.
Responsibilities
Support select IT assurance and infosec tasks, including
- SDLC & Change Management
- Monitor and report adherence to SDLC and change management procedures
- Coordinate penetration test vulnerability and EOL asset ticket closure with Infrastructure, Engineering, and Internal Audit
- Business Continuity Management
- Maintain and improve Crisis Management, Business Continuity (BCP), and Disaster Recovery Plans (DRP) aligned with industry standards and regulations
- Conduct Business Impact Analysis (BIA) workshops to identify critical processes, systems,and quantify resilience metrics like RPOs, RTOs, and MTDs
- Identify, propose, defend, and support implementation of resilience strategies and solutions
- Design and execute a risk-based multi-year testing calendar
- IT Risk Monitoring & Reporting
- Monitor, assess, and report on the effectiveness of selected IT risk metrics
- Design and implement new risk metrics
- Privacy Request Fulfillment
- Execute data-subject rights requests following privacy laws including CCPA and CAN-SPAM
- IT Assurance
- Collaborate with cross-functional teams to create or maintain select standards, procedures, and documentation
- Provide training and awareness across the organization on policies and procedures
- Collect evidence across IT processes to support audits and examinations
- Maintain control mappings and perform gap analyses to drive continuous program improvement
Qualifications
Must Have
- Exceptional written and verbal communication skills to present complex information clearly to diverse audiences
- Professional certifications: ISACA CISA or ISC2 CISSP
- 5+ years of experience in Information Security, IT Security, IT Audit, IT GRC, IT Compliance,IT Assurance, IT Risk, IT Business Analysis, or Business Continuity
- Strong knowledge of software development life cycle (SDLC), change management, business continuity management, and IT risk management
Preferred
- Undergraduate or graduate degree in computer science, cybersecurity, information assurance, business administration, or a closely related field
- Familiarity with regulatory guidance, standards, and frameworks such as the FFIEC ITHandbook, SOC 1/2, PCI DSS, COBIT 2019, and ITIL
- Experience working in a highly regulated environment such as financial services, military, or healthcare
#LI-AC1 #LI-Hybrid
Salary Range
$150,000.00 - $170,000.00
Cross River is an Equal Opportunity Employer. Cross River does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need.
By submitting your application, you give Cross River permission to email, call, or text you using the contact details provided. We will only contact you with job related information.
Skills
- RTOS
- CISSP
- PCI DSS
More jobs at Cross River
All 19VP, Fraud Prevention & Monitoring
Cross River · Fort Lee, New Jersey, United States · USD 200,000–250,000/yr · today
VP, Portfolio Management, QSG
Cross River · Fort Lee, New Jersey, United States · USD 200,000–250,000/yr · 2d ago
AVP, Reporting Lead, RiverX
Cross River · Fort Lee, New Jersey, United States · USD 140,000–160,000/yr · 3d ago
VP, Identity & Access Management
Cross River · Fort Lee, New Jersey, United States · USD 180,000–230,000/yr · 17d ago
VP, Enterprise Systems, Workday
Cross River · Fort Lee, New Jersey, United States · USD 180,000–220,000/yr · 17d ago
Similar roles
Network Security Engineer
Uvation · United States · today
Senior Security Engineer
Ngrok · United States · USD 218,250–266,000/yr · today
Data Security Analyst
WSFS Bank · Philadelphia, PA · Wilmington, DE · USD 53,744–88,291/yr · today
Security Analyst Future (Summer 2027 Internship)
Ntst · Overland Park, KS · today
Senior Security Engineer, Enterprise Security
CoreWeave · New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA · USD 165,000–242,000/yr · today
Information Systems Security Manager, Space
Anduril Industries · Costa Mesa, California, United States · USD 146,000–194,000/yr · today