Back to jobs

Head of Security

At January, we're transforming the lives of borrowers by bringing humanity to consumer finance. Our data-driven products empower financial institutions to streamline their collections, providing borrowers with straightforward and compassionate solutions to regain financial stability and control over their lives. We're not just expanding access to credit. We're restoring dignity and paving the way for millions to achieve financial freedom.

As our Head of Security, you'll help us maintain and radically improve a proactive security posture that ensures compliance with industry standards, mitigates real risks, and enhances client confidence in how we handle sensitive data. This role will report directly to the Director of Engineering; expect to drive strategic security initiatives, implement effective monitoring and response systems, and foster a culture of security awareness and excellence within the organization.

Your Impact

Security Leadership

  • Define and execute January's comprehensive security strategy aligned with our mission.
  • Lead and build a security team as we grow, fostering a culture of security and excellence.
  • Act as the principal security advisor to senior management, providing insights and recommendations on security matters.

Strategic Security Planning

  • Develop and maintain a robust security framework to protect client data, ensure system integrity, and safeguard our technology infrastructure.
  • Create a security roadmap that aligns with our long-term business objectives and technological advancements.

Risk Management & Compliance

  • Conduct regular risk assessments to identify vulnerabilities and develop strategies to mitigate them.
  • Ensure compliance with financial regulations such as SOC2, GDPR, and PCI_DSS, and manage audit processes to maintain regulatory standards.
  • Stay updated on changes in regulatory requirements and adjust security practices accordingly.

Operational Security Oversight

  • Oversee daily security operations, including monitoring, incident response, and forensic investigations.
  • Develop and enforce security policies, standards, and guidelines to ensure a secure operational environment.
  • Lead the response to security incidents, conducting thorough investigations and implementing corrective actions.

Integration of Security into DevOps & Development

  • Collaborate with our development and DevOps teams to integrate security into the software development lifecycle (SDLC), ensuring secure coding practices and rapid, secure delivery of solutions.
  • Automate security processes and incorporate security testing into CI/CD pipelines.

Training & Security Culture

  • Develop and implement security awareness programs to educate employees about security best practices and foster a culture of security across the organization.
  • Mentor and support future security hires, developing their skills and promoting a collaborative approach to security.

Technology & Vendor Management

  • Evaluate and recommend security tools and technologies to enhance our security capabilities.
  • Manage relationships with security vendors and service providers, ensuring they meet our security requirements.

Qualifications

 Experience:

  • 7-10 years of experience in security roles, with at least 3 years in a leadership or senior technical position.
  • Proven experience in leading and managing security teams, preferably within the financial sector or a startup environment.
  • Demonstrated success in developing and implementing security strategies and managing complex security projects.

 Technical Expertise:

  • Deep knowledge of security principles, protocols, and technologies.
  • Extensive hands-on experience with security tools such as firewalls, IDS/IPS, SIEM, encryption, and vulnerability management.
  • Proficiency in cloud security (AWS, Azure, or Google Cloud) and securing cloud-native applications.
  • Strong coding or scripting skills (e.g., Python, Shell scripting) for automating security tasks.
  • Expertise in network security, endpoint protection, and application security.

 Regulatory Knowledge:

  • In-depth understanding of financial regulations, including SOC2, GDPR, and PCI-DSS.
  • Experience conducting compliance audits and managing regulatory documentation and reporting.

Leadership & Soft Skills:

  • Exceptional leadership skills with a track record of building and mentoring security teams.
  • Strong problem-solving and analytical abilities, capable of navigating complex security challenges.
  • Excellent communication skills, with the ability to effectively convey security concepts to both technical and non-technical stakeholders.
  • Ability to thrive in a fast-paced, dynamic startup environment.
  • Passion for continuous learning and staying up-to-date with the latest in cybersecurity trends and technologies.

We are currently hiring for this position in our New York office.

January believes in doing its part to help close the wage gap that continues to plague much of the US workforce. We offer transparent and equitable compensation packages to all existing and future January team members.

The target salary range for the Head of Security role is $170,000 to $225,000, commensurate with experience. We determine the final package by considering experience, applicable education and training, and relevant skills derived throughout our interview process. This role also includes a competitive equity package, giving you a chance to feel true ownership of your work.

January prioritizes the safety and well-being of our team members and, as such, requires all employees who work from or visit a January office to have proof of COVID-19 vaccination or provide a valid medical or religious exemption.

What we can offer you:

  • Pet-friendly office (only in NYC, for now!)
  • Competitive equity packages, giving you a chance to feel true ownership of your work
  • Flexible PTO so you can take the time you need to rest and recharge
  • Hybrid work model, where our team comes in 3x a week
  • Flexible work hours for better work/life balance
  • 12 weeks fully paid new parent leave program for all employees to enjoy bonding time
  • Free lunches for team socializing activities
  • Annual learning and development budget to invest in your professional growth
  • 401k so you can invest in your future
  • Gym membership reimbursement
  • Medical, dental, and vision insurance
  • Free access to One Medical 
  • Free access to the mental well-being platform Spring Health plus 3 free virtual sessions with a Spring Health licensed therapist
  • Commuter benefits for your travel to/from the office
  • Endless growth opportunity and the ability to take on new and exciting challenges

Recognitions:

  • Built In's Best Startups to Work For in New York (2023)
  • Built In's Best Startups to Work For in New York (2024)
  • Built In's Best Startups to Work For in San Francisco (2023)
  • Built In's Best Startups to Work For in San Francisco (2024)
  • Crain's Best Places to Work in NYC (2022) 
  • Crain's Best Places to Work in NYC (2023)
 
To learn more about what it’s like to work with us, check out our Glassdoor reviews. We think our track record speaks best.
 
January is an equal opportunity employer and does not discriminate on the basis of race, color, creed, ethnicity, sex, gender identity, sexual orientation, religion, disability, age, veteran status, or any other category protected by law.
 
At January, we believe that diversity of outlooks, demographics, identities, and life experiences enable companies to build the best products. More diversity means more empathy with different types of people. This matters a lot for us, since so many borrowers in financial distress with whom we engage come from underrepresented backgrounds. We practice what we preach and look forward to continuing to grow and build on our already diverse team.

Apply for this job

*

indicates a required field

Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf

Enter your desired/expected salary. Please note: this field is only visible to our Recruiting team and will not affect future salary negotiations.

Select...

We're currently hiring for this position in our New York City and San Francisco offices. Candidates can choose to be either hybrid or full-time in one of these offices.

We are not currently accepting remote candidates at this time.

Please let us know which office you would work out of based on your current location.

Select...
Select...

Are you authorized to work in the US?

Select...
Select...
Select...

You can find our FAQs here. Max 50 words (or 300 characters) per question. Please do not spend more than 10 minutes writing total.


U.S. Standard Demographic Questions

We invite applicants to share their demographic background. If you choose to complete this survey, your responses may be used to identify areas of improvement in our hiring process.
Select...
Select...
Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in January’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.