×
Register Here to Apply for Jobs or Post Jobs. X

Chief Information Security Officer

Job in Austin, Travis County, Texas, 78716, USA
Listing for: The Security Executive Council
Full Time position
Listed on 2026-07-14
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 250000 USD Yearly USD 250000.00 YEAR
Job Description & How to Apply Below

About the Job

Hippo was built on a promise: make home ownership effortless. Nearly a decade later, that mission still drives us. We use technology and data to help our customers stay ahead of problems and protect what matters most. Today, that same tech‑native approach powers our work beyond homeowners. Hippo operates as a diversified carrier platform, partnering with MGAs to deliver tailored program solutions that help them grow and deliver better customer experiences.

Behind that work is a team that values ownership, curiosity, collaboration, and continuous improvement. If you’re energized by building what’s next, we’d love to meet you.

About the Role

Hippo is hiring a Chief Information Security Officer to lead cybersecurity strategy, security operations, and governance, risk, and compliance across the enterprise. This role owns Hippo’s SOC 2 program, leads security operations, and drives compliance with applicable state and federal cybersecurity regulations. You will be responsible for protecting Hippo’s systems, data, and customers against an evolving threat landscape while ensuring the company meets its regulatory and compliance obligations as a publicly traded, multi‑state insurance carrier.

The position requires fluency in security engineering, regulatory compliance, and executive communication.

About You

You are a seasoned cybersecurity leader who has built and run security programs at a publicly traded, regulated company. You have navigated regulatory examinations and SOX audit cycles, can move seamlessly between a technical incident response scenario and a board presentation, and think in terms of risk. You bring a builder’s mindset to security, understand that a great security program enables the business, and know how to embed security into engineering culture.

Whether your background is in Insurtech, fintech, healthcare, or another heavily regulated sector, you understand multi‑regulator environments and lead with clarity.

What You’ll Do
  • Further develop and execute Hippo’s enterprise cybersecurity strategy, aligned with business risk appetite and regulatory requirements
  • Build and lead the security operations function, including threat detection, incident response, vulnerability management, and threat intelligence
  • Own Hippo’s SOC 2 program end‑to‑end, including control design, evidence collection, readiness assessments, and auditor engagement
  • Lead the governance, risk, and compliance function, maintaining the cybersecurity risk register, policy framework, standards, and control library
  • Drive compliance with applicable state and federal cybersecurity and insurance regulations
  • Support SEC cybersecurity disclosure obligations in coordination with Legal and Finance
  • Lead identity governance, including access certification, privileged access management policy, and separation of duties enforcement
  • Own privacy and data protection compliance strategy, partnering with Legal on data handling, breach notification, and policyholder data protection
  • Manage the third‑party and vendor cybersecurity risk management program
  • Report to the Board of Directors and Audit and Risk Committee on cybersecurity posture, risk trends, and incident activity
  • Provide second‑line oversight and security control design input to the SOX ITGC program
  • Build and lead the security engineering function, owning secure design standards and threat modeling practices that ensure security is embedded from architecture through to deployment
  • Build, mentor, and develop the cybersecurity team and drive a culture of security awareness across the organization
  • Lead cybersecurity budgeting, roadmap planning, and technology rationalization
  • Own disaster recovery and business continuity planning across the enterprise, working closely with the CIO and CTO to drive regular testing, validate recovery capabilities, and ensure organizational resilience
  • Own the enterprise Incident Response Plan; lead the Security Incident Response Team (SIRT) across the full incident lifecycle, define severity classifications and escalation paths, and ensure cross‑functional stakeholders are engaged appropriately during active incidents
  • Drive a continuous improvement program with…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary