
About Upstart
Revolutionizing lending with AI-driven insights
Key Highlights
- Raised $135.7 million in Series D funding
- Over 100 banking partners, connecting millions of consumers
- 90%+ loan automation rate, enhancing efficiency
- Offers personal, auto, and home-equity loans
Upstart is an AI lending marketplace headquartered in South San Mateo, California, connecting millions of consumers with over 100 banks and credit unions. The company has raised $135.7 million in Series D funding and facilitates billions in loan originations by using advanced AI models to assess cre...
🎁 Benefits
Upstart offers comprehensive health plans, a 401k plan, generous vacation policy, flexible time off, parental leave, and family forming benefits throu...
🌟 Culture
Upstart fosters a culture focused on leveraging technology to democratize access to credit. With a strong emphasis on AI-driven solutions, the company...
Overview
Upstart is hiring an Information Security Program Manager - GRC to lead governance, risk, and compliance initiatives. You'll work to enhance security frameworks and ensure regulatory compliance. This position requires experience in information security management.
Job Description
Who you are
You have a strong background in information security management, with a focus on governance, risk, and compliance (GRC). Your experience includes developing and implementing security policies and procedures that align with industry standards and regulatory requirements. You possess excellent analytical skills, allowing you to assess risks and develop strategies to mitigate them effectively. You are a strong communicator, capable of conveying complex security concepts to both technical and non-technical stakeholders. Your collaborative nature enables you to work effectively with cross-functional teams to enhance the organization's security posture.
Desirable
Experience with security frameworks such as NIST, ISO 27001, or CIS. Familiarity with compliance regulations such as GDPR, CCPA, or PCI-DSS is a plus. You have a proactive approach to problem-solving and a keen interest in staying updated with the latest security trends and threats.
What you'll do
In this role, you will lead the development and implementation of the information security program, focusing on governance, risk management, and compliance initiatives. You will conduct regular risk assessments and audits to identify vulnerabilities and ensure compliance with relevant regulations. Collaborating with various departments, you will provide guidance on security best practices and help foster a culture of security awareness throughout the organization. You will also be responsible for preparing reports for senior management and stakeholders, detailing the status of the security program and any identified risks. Your role will involve continuous improvement of security processes and policies to adapt to the evolving threat landscape.
What we offer
At Upstart, we provide a flexible work environment that allows you to thrive, whether you choose to work remotely or from one of our offices. We are committed to fostering an inclusive culture where every voice is heard and valued. You will have the opportunity to work on meaningful projects that have a real impact on improving access to affordable credit for all Americans. We offer competitive compensation and benefits, along with opportunities for professional growth and development.
Interested in this role?
Apply now or save it for later. Get alerts for similar jobs at Upstart.
Similar Jobs You Might Like
Based on your interests and this role

Security Engineer
Vanilla Technologies is hiring a Security GRC Program Manager to oversee customer trust and security compliance programs. You'll be responsible for building the operational backbone for reliable service delivery. This position requires experience in security governance and risk management.

Head Of Marketing
Fieldwire is seeking a Head of Information Security and GRC to lead their Construction Software security program. You'll ensure compliance with legal and regulatory requirements while managing the security team. This role requires strong leadership and in-depth knowledge of security protocols.

Program Manager
Meta is hiring a Senior Program Manager to lead the Security GRC Program. You'll drive strategic risk initiatives and collaborate with leaders across various departments. This role requires significant experience in risk management and compliance.

Head Of Marketing
Fieldwire is seeking a Head of Information Security and GRC to lead their Construction SW security program. You'll ensure compliance with legal and regulatory requirements while managing a security team. This role requires strong leadership and communication skills.

Head Of Marketing
Fieldwire is hiring a Head of Information Security and GRC to lead their Construction SW security program. You'll ensure compliance with legal and regulatory requirements and manage the security team. This role requires strong leadership and in-depth knowledge of security protocols.