Full-Time

Principal Director

Cyber Security Operations

Posted on 2/2/2025

Yodlee

Yodlee

501-1,000 employees

Data aggregation and analytics for finance

Data & Analytics
Fintech
Financial Services

Compensation Overview

$156k - $234kAnnually

+ Bonus

Senior, Expert

Remote in USA

Candidates must be based in the USA.

Category
Cybersecurity
IT & Security
Required Skills
AWS
Splunk

You match the following Yodlee's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • Bachelor’s degree in computer science, Information Security, or a related field; advanced degree preferred.
  • 10+ years of experience in cyber security, with at least 7 years in a leadership role.
  • Extensive experience with SOC operations, threat hunting, incident investigation, endpoint protection, standard frameworks, managing external MDR partners, Microsoft 365 security, and strategic planning.
  • Strong knowledge of infrastructure, network, cloud, and platform security, particularly in AWS environments.
  • In-depth understanding of data protection regulations and best practices.
  • Proven experience with identity and access management, including MFA and SSO.
  • Excellent leadership, communication, and interpersonal skills.
Responsibilities
  • Develop and execute a comprehensive cyber security strategy aligned with organizational goals.
  • Conduct risk assessments and develop mitigation plans to address identified risks.
  • Plan and manage the cyber security budget, ensuring efficient allocation of resources.
  • Collaborate with cross-functional teams, including IT, development, and business units, to ensure security is integrated into all aspects of the organization.
  • Communicate effectively with executive leadership, providing regular updates on security posture and initiatives.
  • Responsible for overseeing the implementation, measurement, and continuous improvement of security operations across the organization.
  • Establish key performance metrics (KPIs) to track the effectiveness of incident response, vulnerability management, threat intelligence, and compliance activities.
  • Evaluate and implement cutting-edge cybersecurity technologies and tools to enhance the organization’s security capabilities.
  • Lead the selection and deployment of advanced cybersecurity technologies, such as AI-driven security analytics, threat intelligence platforms, and automated incident response systems.
  • Ensure that the organization’s IT infrastructure is properly secured, with adequate encryption, firewalls, and access controls in place.
  • Lead the Security Operations Center (SOC) to ensure continuous, around-the-clock monitoring and analysis of security events.
  • Develop and implement SOC processes and procedures to enhance detection and response capabilities and experience with Expel and Crowdstrike Falcon.
  • Oversee the deployment and management of security information and event management (SIEM) systems, including experience with Splunk.
  • Ensure compliance with relevant security certifications and standards for our platform.
  • Manage the certification process and maintain up-to-date documentation.
  • Develop and implement proactive threat hunting strategies to identify and mitigate potential threats.
  • Collaborate with the SOC team to enhance threat detection and response capabilities.
  • Lead the incident response team in the investigation and resolution of security incidents.
  • Conduct thorough post-incident analysis and implement lessons learned to improve security posture.
  • Develop and enforce security standards and best practices for network and systems security.
  • Ensure the security of on-premises and cloud-based infrastructure, including AWS.
  • Develop and manage a comprehensive infrastructure vulnerability management program.
  • Conduct regular vulnerability assessments and penetration testing.
  • Collaborate with IT and development teams to remediate identified vulnerabilities.
  • Implement and manage threat monitoring tools and processes to detect and respond to security threats.
  • Integrate threat intelligence into security operations to enhance situational awareness, including experience with Recorded Future and Safe Breach.
  • Oversee the deployment and management of endpoint protection solutions.
  • Ensure the security of all endpoints, including desktops, laptops, and mobile devices.
  • Ensure compliance with industry-standard frameworks such as NIST, ISO 27001, CIS Controls, and others.
  • Develop and implement policies, standards and procedures based on these frameworks to enhance the overall security posture.
  • Conduct and assist with regular audits and assessments to ensure ongoing compliance with these frameworks.
  • Hands-on experience with firewalls for network security and monitoring tools such as Palo Alto Networks, Fortinet, Cisco ASA, or Check Point, including experience with F5 Web Application Firewall (WAF).
  • Implement and manage Identity and Access Management (IAM) solutions like Okta or Microsoft Azure AD.
  • Oversee vulnerability and configuration management tools such as Nessus, Qualys, or Rapid7.
  • Ensure data encryption using tools like BitLocker, VeraCrypt, or AWS Key Management Service (KMS).
  • Manage AWS cloud security using AWS Security Hub, GuardDuty, and Inspector.
  • Deploy and manage detection and response tools such as CrowdStrike, Carbon Black, or SentinelOne.
  • Oversee the relationship with external MDR partners to ensure effective threat detection and response.
  • Collaborate with MDR providers to integrate their services with internal security operations.
  • Evaluate and manage the performance of MDR services to ensure they meet organizational security requirements.
  • Implement and manage security measures for Microsoft 365 environments.
  • Ensure the protection of data and compliance with security policies within Microsoft 365 applications to include Microsoft Purview.
  • Utilize Microsoft 365 security tools such as Microsoft Defender for Office 365, Azure AD, and Microsoft Cloud App Security.
  • Lead and mentor a team of cyber security professionals, fostering a culture of continuous improvement and professional development.
  • Set performance goals, conduct regular evaluations, and provide feedback to team members.
  • Recruit and retain top talent to build a high-performing security team.
Desired Qualifications
  • Relevant certifications (e.g., CISSP, CISM, CEH) are highly desirable.

Yodlee provides data aggregation and analytics services to financial institutions, fintech companies, and retail clients. The company collects and organizes financial data from various sources, which is then used to deliver insights for wealth management, financial wellness, and personalized financial advice. Yodlee's clients include banks, credit unions, investment firms, and fintech startups that need accurate financial data to enhance their offerings. Unlike many competitors, Yodlee operates on a subscription and licensing model, allowing clients to access its platforms for a fee. The company also offers specialized products like transaction data enrichment and virtual financial assistants, which add value and customization for users. Yodlee's goal is to help clients turn raw data into actionable insights, improving financial planning and customer experiences.

Company Stage

Acquired

Total Funding

$160.8M

Headquarters

Tredyffrin Township, Pennsylvania

Founded

1999

Simplify Jobs

Simplify's Take

What believers are saying

  • Yodlee's open banking initiatives position it for growth in secure data sharing solutions.
  • Partnerships with firms like Ocrolus enhance Yodlee's service offerings and data processing efficiency.
  • Integration with HeirWealth highlights Yodlee's asset tracking capabilities for high net worth families.

What critics are saying

  • Loss of key personnel like COO Arun Anur could disrupt strategic initiatives.
  • Shift to API-driven data aggregation may require significant technology investments.
  • Increased competition from platforms like Plaid could erode Yodlee's market share.

What makes Yodlee unique

  • Yodlee offers comprehensive data aggregation and analytics for financial institutions and fintechs.
  • The company provides specialized products like transaction data enrichment and virtual financial assistants.
  • Yodlee's subscription model ensures long-term client relationships and ongoing support.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Medical (High Deductible Health Plan, Kaiser HMO and PPO), Dental, Vision

401(k) Match

On-site Flu Shots

On-site Biometrics Screening

Employee Assistance Program (EAP)

Life Insurance and AD&D

Short and Long Term Disability

On-site Gym

Fully Stocked Kitchen

Tuition Reimbursement

Employee Referral Bonus

Casual Dress Code

Mobile Reimbursement