Business Information Securirty Officer (BISO)
Phaxis · New York, NY · 3 days ago
On-siteInformation TechnologyFull-time
Salary is 230k to 260k + 25% bonusServe as the senior security advisor for the assigned business unit, partnering with technology, product, finance, legal, audit, compliance, and other leadership teams.Develop a comprehensive understanding of business operations, critical assets, applications, infrastructure, data, customers, partners, and technology environments to identify and manage security risks.Lead security compliance and governance activities, including PCI, SOX, ISO 27001, technology audits, and privacy initiatives such as GDPR and CCPA.Manage client security assurance activities, including customer security questionnaires, client audits and meetings, and collaboration with Legal on security-related contract requirements.Align cybersecurity strategy with business objectives, technology roadmaps, and product initiatives while ensuring security controls are incorporated throughout the development and implementation process.Lead cybersecurity risk governance by facilitating monthly risk steering committees and quarterly executive briefings covering threats, risks, program maturity, and key security initiatives.Drive adoption of enterprise security policies and standards, identify compliance gaps, and partner with stakeholders to implement effective remediation and standardized security solutions.Provide cybersecurity reporting and act as an escalation point for security incidents and issues, working closely with Incident Response, Cyber Defense, Product Security Engineering, and Enterprise Security teams.Bring 10+ years of security experience with strong knowledge of security frameworks, NIST, regulatory requirements, security architecture, cloud environments, and the ability to communicate effectively across global and matrixed organizations; CISSP or CRISC preferred.