The Vice President, Information Security will build the company’s enterprise security program from the ground up. This role combines strategic leadership with hands-on execution. This role will need someone who can develop security strategy, stand up a security function, and stay close enough to operations to drive results directly.
This position will own the company’s security posture, mature our risk management capabilities, and build a security-aware culture as we grow toward 10,000 closings by 2030. This role partners with Division Presidents, Region Presidents, and functional leaders across the organization to ensure security is understood and prioritized at every level.
Primary Responsibilities:
- Develop and execute information security strategy aligned with business objectives.
- Build the security function from the ground up, defining roles, hiring talent, and developing the team over time.
- Partner with Division Presidents and functional leaders to ensure security requirements are understood and implemented across the organization.
- Directly manage security operations including SIEM, EDR, identity management, and vulnerability programs.
- Lead incident response efforts from detection through remediation; serve as escalation point for security events.
- Establish security policies, standards, and procedures that balance risk with operational efficiency.
- Conduct and oversee security assessments, penetration testing, and vendor risk evaluations.
- Present security posture and risk recommendations to executive leadership.
- Ensure compliance with privacy regulations, cyber insurance requirements, and data sharing boundaries with mortgage and financial services partners.
- Manage security budget and vendor relationships.
Qualifications:
- 8+ years in information security with 4+ years in leadership roles.
- Track record building or maturing a security program.
- Experience with Microsoft and Azure security environments.
- Technical depth in SIEM, EDR, vulnerability management, and incident response.
- Knowledge of NIST CSF and CIS Controls.
- CISSP, CISM, or equivalent certification preferred.
- Strong executive communication skills.
- Budget and vendor management experience.