×
Register Here to Apply for Jobs or Post Jobs. X

US CISO

Job in Palo Alto, Santa Clara County, California, 94306, USA
Listing for: Nubank
Full Time position
Listed on 2026-09-01
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 250000 USD Yearly USD 250000.00 YEAR
Job Description & How to Apply Below

About Nu

Nu is the leading digital bank in Latin America, serving 135 million customers across Brazil, Mexico, and Colombia. The company has been leading an industry transformation by leveraging data and proprietary technology to develop innovative products and services.

Guided by its mission to fight complexity and empower people, Nu caters to customers’ complete financial journey, promoting financial access and advancement with responsible lending and transparency. The company is powered by an efficient and scalable business model that combines low cost to serve with growing returns.

Nu’s impact has been recognized in multiple awards, including Time 100 Most Influential Companies, Fast Company’s Most Innovative Companies, and Forbes World’s Best Banks.

Visit our Institutional Page

About the team

As Nubank expands its footprint into the US, we are seeking a visionary, highly specialized US Chief Information Security Officer (CISO).

This is not a traditional operational CISO role. You will serve as the executive pillar for Nubank’s US strategy, bridging the gap between traditional financial regulations and modern, hyper-scalable crypto and AI technology platforms. You will act as the point of accountability for US regulatory bodies, lead governance transformations, and oversee critical cross-functional security domain leadership.

We are looking for a security leader who balances deep traditional banking compliance expertise with a forward-looking understanding of cryptocurrency protocols and artificial intelligence security.

About the role

As the US CISO, you will architect, establish, and operationalize a unified US security and compliance posture. You will protect customer trust, satisfy strict US regulatory frameworks (e.g., OCC compliance), and secure frontier technology initiatives ensuring Nubank’s platform remains resilient, future-proof, and compliant as we scale globally.

Key responsibilities and Expectations
  • US Regulatory & Regulatory Agency Liaison:
    Serve as the primary US security authority and point of contact for regulators (e.g. OCC). Oversee all mandatory statutory disclosures, including financial and IBFR background reviews.

  • Crypto & Web3 Product Defense:
    Partner with crypto product and infrastructure teams to secure future-proof financial technologies, translating complex blockchain architectures into compliant, enterprise-grade risk frameworks.

  • Governance, Risk, and Compliance (GRC) Transformation:
    Uplevel Nubank’s GRC program to support multi-geography scaling.

  • AI Security Frameworks:
    Lead the strategic security response for AI initiatives—from developer workflows and engineering toolsets to model integrity and deployment risks.

  • Insider Threat Program Development:
    Design, build, and deploy an end-to-end enterprise Insider Threat program across first and second lines of defense in close partnership with Risk and Legal teams.

Qualifications Professional Experience & Education
  • Executive Leadership

    Experience:

    15+ years in Information Security, with significant experience operating at an executive, director, or CISO level within Fin Tech, Banking, or Digital Assets.

  • US Financial Regulatory Expertise:
    Deep hands-on experience navigating US regulatory environments, specifically working with the OCC, statutory disclosure processes, and financial institution compliance.

  • Cryptocurrency & Blockchain Security:
    Demonstrated domain expertise in cryptocurrency security, decentralized finance, or digital asset platforms. Experience at leading crypto-native institutions or hyper-growth Fin Techs is highly valued.

  • AI Security Strategy:
    Familiarity with modern AI security risks, LLM integrations, safe code generation tools, and model security.

  • GRC Up leveling:
    Proven track record of rebuilding or scaling GRC frameworks within complex, multi-national organizations.

  • Executive Communication:
    Exceptional communication skills needed to interface effectively with regulatory examiners, executive leadership, and board members.

Competencies & Attributes:
  • Fluency in English is required;
    Portuguese and/or Spanish are a plus.

  • Strong people leadership at scale, including developing managers and leading teams of differing…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary