Who we are:Sardine is the leading agentic risk platform for fighting financial crime. Our integrated solution unifies data across risk teams to help organizations stop fraud in real time, prevent AI-driven attacks, and automate fraud and AML operations. Sardine’s platform is strengthened by one of the fastest-growing fraud consortiums in the market, spanning more than 6 billion profiled devices, 800 million consumers, and 3 million businesses worldwide. Leading companies including FIS, GoDaddy, Intuit, Edward Jones, ZoomInfo, and Checkout.com rely on Sardine to secure and grow trust in their products.Our culture:We have hubs in the Bay Area, NYC, Austin, Toronto, and São Paulo. However, we maintain a remote-first work culture. #WorkFromAnywhereWe hire talented, self-motivated individuals with extreme ownership and high growth orientation.We value performance and not hours worked. We believe you shouldn't have to miss your family dinner, your kid's school play, friends get-together, or doctor's appointments for the sake of adhering to an arbitrary work schedule.Location: Remote, United StatesTravel: Approximately once every 1–2 months, primarily in North America, with some potential international travelAbout the RoleSardine is hiring a Deputy Chief Information Security Officer to partner closely with our CISO and help scale our security program as we grow.This is a senior, high-impact role for a security leader who can operate across multiple areas, including application security, GRC, security operations, cloud and SaaS security, corporate IT, customer trust, and overall security strategy. You’ll serve as a trusted partner to the CISO, help identify and prioritize the highest-risk areas, and represent Sardine’s security program with internal teams, customers, prospects, auditors, and industry stakeholders.We’re looking for someone who is broad, pragmatic, technically fluent, and comfortable in customer-facing settings. The right person can balance strong security judgment with the pace and trade-offs of a fast-moving startup.What You’ll DoPartner with the CISO on Sardine’s overall security strategy, roadmap, priorities, and executionHelp identify, prioritize, and address the highest-risk areas across the businessSupport security reporting, executive updates, budgeting, vendor evaluation, and planningPartner on key compliance initiatives, including PCI, SOC 2, ISO 27001, DORA, and future FedRAMP readinessSupport incident response and act as a deputy incident lead when neededWork closely with Engineering on application security, secure SDLC, vulnerability management, threat modeling, and remediationAssess and improve security across cloud infrastructure, SaaS tools, IAM, endpoint management, and corporate IT systemsBring strong AppSec fluency, including understanding how code moves from design through production, CI/CD, testing, SAST/DAST, dependency scanning, and secrets managementPartner with Product and Engineering on security considerations for AI/ML systems, bot mitigation, and abuse preventionSupport customer-facing security conversations, RFPs, due diligence, security reviews, and executive briefingsHelp build trust with enterprise customers by translating technical security concepts into clear business languagePartner cross-functionally with Legal, Sales, Engineering, Product, People, and ITChampion a pragmatic security culture that enables the business while managing riskWhat We’re Looking For10–15+ years of cybersecurity experience, including 3+ years in a senior leadership roleBroad security background across multiple domains, not a single-specialty profileStrong application security experience and ability to assess technical risk without needing to be hands-on coding dailyExperience operating in a startup, scale-up, or similarly resource-constrained environment where prioritization and pragmatism are criticalAbility to evaluate risk, stack-rank priorities, and focus on the highest-impact security workStrong working knowledge of compliance frameworks such as SOC 2, PCI DSS, ISO 27001, GDPR, CCPA, DORA, and ideally FedRAMPExperience participating in or leading security incidentsStrong cloud, SaaS security, IAM, endpoint security, and zero-trust fundamentalsFamiliarity with AI-assisted workflows and emerging AI/ML security risksCustomer-facing communication skills, with the ability to support sales, security reviews, and executive-level customer conversationsA collaborative, business-enabling approach to security — someone who helps teams find safe paths forward rather than defaulting to “no”Strong leadership presence and ability to build trust with security, engineering, executive, and go-to-market teamsExperience in fintech, payments, security, bot mitigation, or regulated industries is a plus, but not requiredMust be based in the United States and authorized to work in the US without sponsorshipBenefits we offer:Generous compensation in cash and equityEarly exercise for all options, including pre-vestedWork from anywhere: Remote-first CultureFlexible paid time off and Year-end breakHealth insurance, dental, and vision coverage for employees and dependents - US and Canada specific4% matching in 401k / RRSP - US and Canada specificMacBook Pro delivered to your doorOne-time stipend to set up a home office — desk, chair, screen, etc.Monthly meal stipendMonthly social meet-up stipendAnnual health and wellness stipendAnnual Learning stipendJoin a fast-growing company with world-class professionals from around the world. If you are seeking a meaningful career, you found the right place, and we would love to hear from you.Compensation Range: $235K - $270K