Alpine Operations Group (AOG) VP, Information Security (InfoSec)
Alpine InvestorsAbout the role
OVERVIEW
Alpine Investors is seeking a VP, InfoSec to work within the Playbook function of Alpine Operations Group in close partnership with Alpine’s portfolio companies. This role, reporting to Will Chance (CEO of Playbook), is critical in creating the most secure platform to ensure Alpine’s portfolio scales to the next level smoothly and successfully. The VP, InfoSec assumes accountability for safeguarding data and operations in the face of increasingly stringent regulations and plays a pivotal role in helping shield portfolio companies from major existential threats. The success of the VP, InfoSec will depend in part on their ability to communicate security priorities and threats in a manner comprehensible to executive leaders, boards, and employees alike. Broadly, the VP, InfoSec will drive information security excellence in Alpine’s portfolio to protect and create equity value, through minimizing cyber incidents relative to benchmarks and offensively positioning Alpine companies on matters of information security in capital markets transactions. Key outcomes + responsibilities include:
Build and execute Alpine’s InfoSec Program: Develop + lead the cybersecurity strategy across Alpine’s portfolio. Recommend both process, technology, operations, and compliance enhancements to improve security of Alpine portfolio companies.
- Define and communicate a clear standard of excellence for InfoSec, considering individual business contexts while ensuring scalability. Implement measures to achieve zero cyber-caused business interruption events.
- Document processes and procedures to ensure replicability and scalability, enabling seamless execution in the absence of key personnel. Establish key performance indicators (KPIs) to assess the “InfoSec health” of Alpine companies.
- Vet, negotiate engagements, and directly manage third-party implementation vendors, ensuring alignment with the roadmap and successful project execution.
Expert Consultant: Support the portfolio through hands-on engagements and fractional leadership where necessary.
- Quarterback incident response to resolve business interruption issues efficiently
- Serve as a go-to expert across the Alpine ecosystem, delivering high-impact, business-oriented consulting tailored to bespoke company needs.
- Support diligence processes for large and/or strategically important transactions, ensuring no InfoSec surprises.
- Assess existing InfoSec talent within portfolio companies and provide recommendations for hiring or top-grading to achieve program goals, actively participating in the hiring process and ensuring newly hired individuals achieve 'A-player' ratings.
Ongoing Program Management: Maintain ongoing compliance, reporting, and data-tracking; continue learning and evolving to achieve and maintain a world-class InfoSec program.
- Establish a regular reporting cadence with Executive Leadership Team (ELT) on security status, trends, and top risks, accompanied by actionable recommendations.
- Implement an "always on" compliance and threat monitoring dashboard requiring low/no ongoing overhead from portfolio companies, ensuring real-time visibility into security posture.
- Stay abreast of cybersecurity developments through industry conferences, vendor interviews, and expert network interactions, applying insights to continuously improve Alpine’s InfoSec program.
- Create a security-forward culture within Alpine HQ and portfolio.
YOU SHOULD HAVE
- In-depth knowledge of designing + implementing scalable cybersecurity strategies, best practices, and frameworks
- Familiarity with the current security features of various platforms, operating systems, applications, firewalls, network protocols, and secure application development practices
- Relevant experience in systems security and the necessary subject-area expertise, encompassing the administration of security services like intrusion detection and network sensors, conducting assessments for application security and penetration testing, as well as managing security incidents across diverse scenarios
- Direct experience with performing risk assessments and effective incident response
- Experience with the hands-on management of enterprise grade security tools and infrastructure
- Experience in SOC, HIPAA, GDPR or PCI DSS and strong knowledge in cloud security and governance (AWS + Azure)
- Excellent written and verbal communication, presentation, and listening skills, with the ability to present complex technical information to a variety of technical and non-technical
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s