Information Security Officer
Listed on 2026-06-05
-
IT/Tech
Cybersecurity, Information Security
Description
Financial Freedom Happens Here – and it starts with YOU.
At FAIRWINDS Credit Union, we’re more than a workplace; we’re a team on a mission. Join the credit union nationally endorsed by The Dave Ramsey Show, where every day is a step toward financial freedom - for our members and for you. Join a mission-driven financial organization and help protect what matters most!
We’re seeking a dynamic, technically strong, forward-thinking Information Security Officer to lead our enterprise-wide Information Security Program and protect the systems, data, infrastructure, and member trust that power FAIRWINDS.
This role serves as the credit union’s board-appointed Information Security Officer and is responsible for the governance, strategy, architecture, and continuous improvement of FAIRWINDS information security program. The ideal candidate will bring more than information security risk management experience; they will also bring the technical depth and leadership required to guide a modern defense-in-depth security environment across network security, endpoint protection, cloud security, data protection, identity, monitoring, incident response, and emerging cyber threats.
This leader will oversee and help shape the architecture, operation, and evolution of security capabilities across platforms such as enterprise firewalls, endpoint detection and response, cloud security, data protection, secure access, vulnerability management, SIEM/logging, incident response, and other critical defensive technologies. They must be able to partner deeply with IT infrastructure, operations, applications, vendors, audit, and risk teams while also communicating security strategy clearly to senior leadership and the Board.
If you are energized by meaningful work, thrive in a collaborative environment, and want to make a measurable impact in the financial industry, this role is for you.
Information Security Program Leadership- Serve as the board-appointed Information Security Officer, stewarding FAIRWINDS enterprise Information Security Program.
- Update, maintain, and report on the Information Security Program annually to senior leadership and the Board.
- Ensure the Information Security Program supports regulatory expectations, operational resiliency, member trust, and FAIRWINDS strategic goals.
- Develop, maintain, and strengthen information security policies, standards, procedures, and control expectations.
- Monitor regulatory requirements, industry trends, emerging threats, and financial services security practices.
- Own and continuously improve the information security architecture for the credit union, across network, endpoint, cloud, identity, data, and application layers.
- Lead the strategy, design, evaluation, configuration oversight, and continuous improvement of FAIRWINDS’ defense-in-depth security capabilities.
- Provide technical leadership across security infrastructure and platforms, including technologies such as Palo Alto, Splunk, Crowd Strike, Cloudflare, Varonis, Microsoft 365 security tooling, vulnerability management platforms, SIEM and logging, IDS/IPS, email and web security, data protection, and related security solutions.
- Bring hands‑on technical depth, able to personally evaluate configurations, review queries and detection logic, validate vendor claims, and engage at the console level when needed, not just direct others from a distance.
- Partner with infrastructure, network, cloud, endpoint, application, and operations teams to ensure security controls are appropriately designed, integrated, monitored, and improved.
- Assess current security tools and capabilities for effectiveness, redundancy, gaps, automation opportunities, and scalability.
- Provide informed technical direction to vendors, managed service providers, and internal teams.
- Translate technical security risks into practical business decisions and executive‑ready recommendations.
- Conduct and refine information security risk assessments, evaluating inherent risk, control effectiveness, and residual risk.
- Evaluate systems, processes, vendors, locations, and technology changes to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).