CISO

Reposted One Month Ago
New York, NY, USA
In-Office
250K-325K Annually
Senior level
Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3 • Infrastructure as a Service (IaaS)
Rain is building the global payments infrastructure for the stablecoin era.
The Role
About the Company

Rain is the global stablecoin payments platform for enterprises, neobanks, platforms, developers, and AI agents. Our technology allows partners to move, store, and use stablecoins instantly and compliantly through global payment cards, rewards, on/offramps, wallets, and cross-border rails. As both a Visa and Mastercard Principal Member, Rain issues cards that work at more than 175 million merchant locations in over 220 countries and territories. Built natively for stablecoins and trusted by more than 100 organizations worldwide, Rain delivers secure, scalable infrastructure that makes money move freely and instantly around the world.

You will have the opportunity to deliver massive impact at a hypergrowth company backed by some of the top investors in fintech, crypto, and SaaS. In January 2026, we closed a $250M Series C led by ICONIQ, valuing Rain at $1.95B, with Sapphire Ventures, Dragonfly, Bessemer Venture Partners, Galaxy Ventures, FirstMark, Lightspeed, Norwest, and Endeavor Catalyst also participating. If you're curious, bold, and excited to help shape a borderless financial future, we'd love to talk.

Our Ethos

We believe in an open and flat structure. You will be able to grow into the role that most aligns with your goals. Our team members at all levels have the freedom to explore ideas and to influence our company's roadmap and vision.

What You’ll Do

As CISO, you will own Rain’s security governance, risk, and compliance strategy, with a particular focus on ISO certification and regulatory readiness, while partnering closely with engineering, infrastructure, legal, and operations teams.

  • Own and drive Rain’s information security and compliance strategy, with a primary focus on ISO 27001 (and related standards) readiness, certification, and ongoing maintenance

  • Serve as the executive owner for security compliance programs (e.g., ISO 27001, SOC 2, vendor risk, customer security reviews)

  • Design, implement, and continuously improve Rain’s security governance framework, including policies, standards, and risk management processes

  • Partner closely with Engineering, Infrastructure, Product, Legal, and Operations to embed compliance and security requirements into technical and business workflows

  • Lead and manage external audits, certifications, and assessments, acting as the primary point of contact for auditors and assessors

  • Translate regulatory, customer, and partner security requirements into practical, scalable controls that align with Rain’s architecture and operating model

  • Own the risk management lifecycle, including risk identification, assessment, prioritization, and executive reporting

  • Establish and track security and compliance metrics, reporting posture, progress, and risk to executive leadership and the board as needed

  • Oversee incident response governance, ensuring policies, playbooks, and escalation paths meet compliance and regulatory expectations

What we're looking for
  • 8–12+ years of experience in information security, GRC, or security leadership roles, with demonstrated ownership of compliance programs

  • Hands-on experience leading ISO 27001 certification efforts (initial certification and/or ongoing surveillance audits)

  • Experience operating as a security leader in a high-growth, technology-driven company, ideally in fintech, payments, or regulated environments

  • Strong understanding of security governance, risk management, and control frameworks (ISO 27001/27002, SOC 2, NIST, etc.)

  • Proven ability to partner effectively with engineering and technical teams to implement controls in cloud-native and application-driven environments

  • Experience managing third-party risk, customer security questionnaires, and enterprise security reviews

  • Ability to clearly communicate risk, tradeoffs, and priorities to executives and non-technical stakeholders

Nice to have, but not mandatory
  • Experience with additional frameworks such as SOC 2 Type II, PCI DSS, ISO 22301, or regional regulatory requirements

  • Prior experience acting as a first or early security leader at a scaling company

  • Familiarity with cloud security and modern application architectures, even if not hands-on day-to-day

  • Experience supporting global customers or international compliance requirements

  • Security or compliance certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer / Auditor)

  • Experience presenting security posture or risk assessments to boards or executive committees

Things that enable a fulfilling, healthy, and happy experience at Rain:

Unlimited time off 🌴 Unlimited vacation can be daunting, so we require Rainmakers to take 10 days minimum for themselves.

Flexible working ☕ We support a flexible workplace – work from home, come into an office, or both. We want everyone to work in an environment where they're their most confident and productive selves. New Rainmakers receive a stipend to set up a comfortable home workspace.

Easy to access benefits 🧠 For US Rainmakers, we cover 95% of your health, dental, and vision plan costs and 90% for your dependents, plus a 100% company-subsidized life insurance plan.

Retirement goals💡 Plan for the future with confidence. We offer a 401(k) with a 4% company match.

Equity plan 📦 Every Rainmaker gets an equity option plan so we all benefit from our success.

Health and Wellness 📚 High performance begins from within. Rainmakers receive a monthly stipend to be used for eligible health and wellness spending like gym memberships/fitness classes, massages, acupuncture - whatever recharges you!

In-office meals 🍜 Rainmakers working from the office enjoy lunch and dinner on us, covered with a DoorDash credit.

Team summits ✨ Summits play an important role at Rain. Time together helps us build relationships and a common destiny. Expect team and company offsites, both domestic and international.

Skills Required

  • 8 -12+ years of experience in information security, GRC, or security leadership roles
  • Hands-on experience leading ISO 27001 certification efforts
  • Strong understanding of security governance and risk management frameworks
  • Proven ability to partner effectively with engineering and technical teams
  • Experience managing third-party risk and customer security reviews

Rain Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Rain and has not been reviewed or approved by Rain.

  • Healthcare Strength Health coverage is described as 95% employer‑paid for medical, dental, and vision for employees, with a 100% company‑subsidized life insurance plan also noted. Dependents receive substantial support as well, indicating a robust healthcare offering.
  • Equity Value & Accessibility Equity is offered to all team members, positioning ownership as a core component of total rewards and potential upside. This broad access to equity aligns compensation with company growth.
  • Wellbeing & Lifestyle Benefits Monthly wellness stipends and a home‑office setup stipend are provided alongside in‑office meals/credits and regular events/offsites. These offerings support day‑to‑day wellbeing and practical work setup needs.

Rain Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
100 Employees
Year Founded: 2021

What We Do

Our technology makes it easy for companies—from fast-growing startups to global fintechs—to integrate stablecoins into their products, platforms, and payment flows. Whether they’re launching a credit card program, enabling cross-border payments, or embedding wallets, Rain builds the tools to do it fast, flexibly, and compliantly. We’re built for the next generation of global finance. Our infrastructure combines the stability of trusted payment networks with the power of Web3—multi-chain support, 7-day-a-week settlement, and seamless stablecoin interoperability. We help companies unlock real-world use cases for digital assets without the regulatory headaches or crypto complexity. Rain is a Visa Principal Member and is trusted by over 130 organizations worldwide. We’ve processed hundreds of millions of dollars in transactions across 150+ countries—and we’re just getting started. If you’re excited about building the future of payments, we’re always looking for more Rainmakers to help us make money move—instantly, globally, and securely.

Why Work With Us

Rain is building frontier fintech at a moment of real regulatory clarity, which has unlocked a massive new market for stablecoins. Backed by top institutional and crypto-native investors, we’re a lean team with a big mission. All Rainmakers take on real ownership, tackle complex problems, and have fun doing it.

Gallery

Gallery

Similar Jobs

Mastercard Logo Mastercard

Vice President, Field CISO Commercial, North America

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Harrison, NY, USA
38800 Employees
235K-375K Annually
Hybrid
2 Locations
92 Employees
300K-350K Annually

CAIS Logo CAIS

Chief Information Security Officer (CISO)

Fintech • Software • Financial Services
Hybrid
New York City, NY, USA
341 Employees
270K-320K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account