Jobs and Careers
TA

Head of Information Security

Talos
New York City, United Statesfull_timeVerifiedPosted 1 May 2025
💰 $275,000/yr($235,000/yr$275,000/yr)

About the role

Institutional Fabric for the Digital Asset Market

Founded in 2018, Talos provides institutional-grade trading technology for the global digital asset market, powering many of the major players in the crypto ecosystem.  

Our mission at Talos is clear: to advance the mass adoption of digital assets by seamlessly connecting institutions to the digital asset ecosystem. We are committed to building the most innovative and trusted platform in the world, supporting the entire trading lifecycle.

At Talos, you'll find an environment that champions kindness and respect, values diverse perspectives, and upholds inclusivity at every turn. We believe that every member of our team adds invaluable insights and abilities that drive Talos forward. In our pursuit of excellence, we foster a culture of trust and integrity, collaboration, and mutual growth. Together, we are ambitiously building something extraordinary. Your unique talents and insights will play a crucial role in our shared success.

We are a tight-knit but decentralized team of highly-experienced engineers and businesspeople. We have a hybrid-friendly work environment, with physical hubs in New York, London, Singapore, Sweden and Cyprus.

About the Role

We are seeking a strategic and hands-on Head of InfoSec to lead our cybersecurity initiatives with a strong emphasis on governance, risk management, and compliance (GRC). This role is critical in shaping and enforcing security policies, driving enterprise-wide risk management, and ensuring ongoing compliance with frameworks such as SOC 2, ISO 27001, and other regulatory requirements. The ideal candidate is not only a technical expert but also a business-savvy leader who can align security strategy with organizational goals.

Key Responsibilities & Duties

Governance, Risk & Compliance:

  • Develop, implement, and maintain the company’s information security governance framework.

  • Lead the strategy and execution for security compliance initiatives including SOC 2, ISO 27001, NIST, and other relevant standards.

  • Oversee and manage the enterprise risk management program, including identification, assessment, and mitigation of information security risks.

  • Regularly report to executive leadership and the board on security risks, compliance status, and incident responses.

External Engagement:

  • Confidently represent Talos in security conversations with tier-one financial institutions, prospects, and auditors. Lead responses to DDQs, participate in client security reviews, and act as a trusted partner in navigating complex enterprise and regulatory expectations.

Security Operations:

  • Provide oversight and strategic direction for the Security Operations Center (SOC).

  • Monitor and respond to cybersecurity threats, incidents, and vulnerabilities.

  • Ensure incident response and disaster recovery plans are current, tested, and effective.

  • Implement and maintain security tools, processes, and technologies to protect data and infrastructure.

Policy & Architecture:

  • Establish and enforce company-wide information security policies and standards.

  • Collaborate with IT and engineering teams to integrate secure development practices and secure architecture reviews.

  • Evaluate and recommend security solutions that align with business needs and reduce organizational risk.

Training & Awareness:

  • Lead company-wide security awareness training programs.

  • Foster a culture of security across all departments through education and engagement.

Requirements

  • 10+ years of experience in cybersecurity, with 5+ years in a senior leadership role (CISO, VP of Security, or equivalent).

  • Deep knowledge of governance frameworks and compliance standards (e.g., SOC 2, ISO 27001, HIPAA, NIST, GDPR).

  • Proven experience managing or leading successful SOC 2 audits and other regulatory/compliance initiatives.

  • Confident engaging with auditors and enterprise clients; experience representing security to financial institutions.

  • Strong understanding of enterprise risk management methodologies.

  • Technical background with knowledge of security operations, threat intelligence, and secure architecture.

  • Experience working in or with cloud-native environments (AWS, Azure, GCP).

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Talos

View company profile →