Guild Mortgage Logo

Guild Mortgage

VP, Chief Information Security Officer

Posted 14 Days Ago
Remote
Hiring Remotely in United States
197K-288K Annually
Expert/Leader
Remote
Hiring Remotely in United States
197K-288K Annually
Expert/Leader
The VP and CISO will establish and lead the enterprise information security program, define security strategy and roadmap, oversee security architecture, policies, compliance, risk management, third-party partners, and security operations. The role advises executives and the Board, manages distributed security teams, engages regulators and auditors, and translates cybersecurity risks into strategic business decisions.
The summary above was generated by AI

Guild Mortgage Company, closing loans and opening doors since 1960. As a mortgage banking firm we are dedicated to serving the homeowner/buyer. Our goal is to provide affordable home financing for our customers, utilizing the best terms available while providing a level of professionalism and service unsurpassed in the lending industry.

Position Summary

The Vice President and Chief Information Security Officer's role is to provide vision and leadership for developing security strategy and multi-year roadmap for continuous improvement. This role is responsible for establishing and maintaining an enterprise-wide information security management program to ensure that information assets are adequately protected. This position is responsible for identifying, evaluating, and reporting on information security risks in a manner that meets compliance and regulatory requirements, and aligns with and supports the risk posture of the enterprise. The Chief Information Security Officer provides input and guidance on the planning and implementation of enterprise IT systems, business operations, and facility defenses to prevent and mitigate security breaches and vulnerability issues based on knowledge of both internal and external environments. This individual is also responsible for identifying issues and risks in existing systems, while directing the administration of security policies, activities, and standards. This role is an integrator of people, process, and technology. This role's key stakeholders are the SVP IT Operations and the Chief and Compliance officer. This role will present to the Board and/or other governing bodies on a Quarterly basis.

Compensation

This role is an exempt position with a targeted salary range of $197,123 to $288,292.50 annually.

Compensation at Guild is influenced by a wide array of factors including but not limited to local and federal minimum wage requirements, education, level of experience, and applicant’s geographical location.

Essential Functions

  • Define enterprise information security strategy and a multi-year roadmap.
  • Own the enterprise security architecture across cloud/on premise infrastructure, APIs, and internal applications.
  • Owns all security policies, standards, and procedures.
  • Represents InfoSec at Board of Directors and executive committee meetings.
  • Accountable to external regulators, auditors, and cyber insurers.
  • Drives risk appetite definition and enterprise risk posture.
  • Manages compliance programs (SOC 2, NIST CSF, GLBA Safeguards rule, ISO 27001).
  • Oversees third-party security partners and tooling selection.
  • Reports on security program maturity and key risk indicators.
  • Primary liaison to Legal, Risk, and Compliance.

Qualifications

  • Bachelors Degree directly related to the position or equivalent, preferred.
  • Minimum 10 years Progressive experience in cybersecurity, with demonstrated breadth experience across security architecture, risk management, compliance, and security operations.

  • Minimum five years senior leadership experience.
  • Advanced security certifications, CISSP required. CISM, CISA, and

    CRISC preferred.
  • Proven track record of building and scaling enterprise security programs in complex, high-growth environments.
  • Hands-on experience navigating regulatory frameworks (PCI DSSSOC 2, NIST CSF, GLBA Safeguards rule, ISO 27001).
  • Deep knowledge of cloud security (AWS, GCP, and/or Azure), DevSecOps practices, and modern security tooling.
  • Executive presence and communication skills, with the ability to engage a Board of Directors and translate complex technical risk into strategic business terms.
  • Experience leading high-performing, geographically distributed teams.
  • Prior CISO title or equivalent accountabilities at a technology company, financial institution, or regulated fintech.
  • Excellent verbal and written communication skills required.
  • Highly organized and detail-oriented; ability to work in a fast-paced, metrics-driven environment required.
  • Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications required.
  • Commitment to company values.
  • Customer Service - Proactive attention to each person.
  • Integrity - Do and say what's right.
  • Respect - Treat others with dignity.
  • Collaboration - Listen and work together.
  • Learning - Seek knowledge and strive for improvement.
  • Excellence – Deliver the unexpected.

Supervision

Job Scope:  Leads the development of strategic plans, goals, and policies for one or multiple functional areas

Complexity:  Problems encountered may involve the entire organization and are often complex, broad in scope and implications, and unprecedented with no clear solution; often works cross-functionally with other leadership and C-Suite to solve problems and implement changes

Impact:  Decisions and actions have a direct impact on the strategic and operational outcomes of the area/unit and the organization as a whole.

Interaction/Supervision:  Manages staffing plan for a division, including planning for needed additional hires and/or reductions in force; responsible for people management of division leaders, including staffing; sets performance standards, evaluates staff, accountable for staff development and training, etc. and strategic people management of other organizational leaders.

Direct Reports: 2+

Indirect Reports: 5+

Requirements

  • Work is primarily sedentary; mobility in an office setting.
  • Ability to operate standard office equipment and keyboards.
  • Regularly required to accurately perceive, distinguish and interpret information received visually and through audio; e.g., words, numbers and other data broadcasted aloud/viewed on a screen, as well as print and other media.
  • Ability to accurately interpret sounds and associated meanings at a volume consistent with interpersonal conversation.
  • Expressing or exchanging ideas by means of the spoken word to impart oral information to clients or the public and to convey detailed spoken instructions to other workers accurately, loudly, or quickly.
  • Office environment – moderate noise, no substantial exposure to adverse environmental conditions.
  • Travel 5% or less
  • Learn new tasks, remember processes, maintain focus, complete tasks independently, and make timely decisions in the context of a workflow.
  • Work is primarily performed during the business week, Monday - Friday.

Guild offers a pleasant work environment, competitive compensation and excellent benefits package; including medical, dental, vision, life insurance, AD&D, LTD and 401(k) with employer match.

Guild Mortgage Company is an Equal Opportunity Employer.

REQ#: VPCHI018483

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Guild Mortgage Covina, California, USA Office

Covina, United States

Similar Jobs

23 Days Ago
In-Office or Remote
240K-305K Annually
Expert/Leader
240K-305K Annually
Expert/Leader
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
Leads the company-wide cybersecurity, compliance, governance, risk, and incident response programs across SaaS products, corporate systems, and cloud environments. Oversees security architecture, identity and access management, third-party risk, vulnerability management, audits, certifications, and customer assurance. Builds and manages global security teams, translates threats and regulatory requirements into business plans, and briefs executives and the board on security posture, incidents, risks, and investments.
Top Skills: AWSCcpaDevOpsGCPGdprIdentity And Access ManagementIso 27001MicroservicesPciSoc 2Sox
15 Minutes Ago
Remote or Hybrid
140K-180K Annually
Senior level
140K-180K Annually
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Lead functional safety consulting for vehicle, autonomous systems, industrial automation, battery, and energy storage programs. Develop safety concepts, requirements, safety cases, hazard analyses, and hardware and software safety work products. Perform FMEA, FMEDA, FTA, STPA, and DFA assessments while ensuring compliance with functional safety standards. Lead workshops, training, client reviews, technical assessments, and confirmation measures. Support business development through statements of work, estimates, proposals, and industry representation. Occasional travel to client sites may be required.
Top Skills: DfaFmeaFmedaFtaHaraIec 61508Iec/En 62061Iso 13849Iso 21448Iso 26262Iso 61511StpaUl 4600
15 Minutes Ago
Remote or Hybrid
110K-150K Annually
Senior level
110K-150K Annually
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Leads automotive and embedded-systems cybersecurity consulting engagements, developing ISO/SAE 21434 and ISO 24089 processes, templates, risk analyses, cybersecurity concepts, verification documents, and assessment reports. Guides clients in secure software design, coding, testing, and compliance with UN Regulations 155 and 156. Responsibilities also include client program leadership, proposals and business development, standards participation, technical guidance, and occasional travel to client sites.
Top Skills: Aspice For CybersecurityCybersecurity Management Systems (Csms)Cybersecurity Resilience Act (Cra)Dynamic Application Security Testing (Dast)Embedded SystemsFuzz TestingIso 21448 (Sotif)Iso 24089Iso 26262Iso 27001Iso/Sae 21434Network SegmentationNist Cybersecurity FrameworkOwaspPenetration TestingSecure BootSoftware Update Management Systems (Sums)Static Application Security Testing (Sast)Un Regulations No. 155 And 156Vulnerability Scanning

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account