VP Information & Data Security (CISO level)
Job Description
Job Description
A financial services organization is seeking a Vice President of Information & Data Security to join its IT team in developing and executing the organization’s information security, data privacy, and cyber risk strategy. Reporting to the Chief Operations Officer and working closely with the Chief Information Officer, the Information Security Steering Committee, and the Executive Management Team, this role ensures the protection of data, systems, applications, and infrastructure across the enterprise.
What You’ll Do / Requirements
- Perform Tier 1 tasks on Information Security technologies to maintain and manage annual updates and revisions to security and privacy policies
- Evaluate business activities, including investments, assets, and processes, to assess compliance risk against NIST CSF and organizational standards
- Participate in building or maintaining fraud detection processes, including supporting technology
- Partner with IT, Risk, and Legal teams to ensure secure development, infrastructure, and operations
- Provide or coordinate with internal and external audit partners to advise on and remediate gaps identified through reviews, audits, policies, procedures, and practices related to information security and data privacy
- Develop and implement an effective Information Security Management System and data privacy compliance program
- Support and maintain ISMS, NIST CSF framework, GDPR, CCPA and other applicable state or international privacy laws, PCI-DSS internal controls, and monitor adherence
- Proactively document and review processes, practices, and documentation to identify weaknesses and risks
- Identify and evaluate organizational data processing activities for PCI-DSS compliance
- Conduct annual Data Protection Impact Assessments
- Participate in annual Business Continuity, Disaster Recovery, and Incident Management testing against documented plans
- Manage security and privacy breaches, incidents, and potential incidents, including remediation reviews
- Arrange or conduct data privacy and security awareness training for employees, contractors, and vendors where applicable
- Build and lead executive-level communications related to security posture, emerging threats, and strategic initiatives
- Communicate effectively with external auditors
What We Are Looking For / Requests
- Bachelor’s degree in Computer Science, Computer Information Systems, or a relevant business discipline with additional technical or security-related certifications
- Five or more years of senior leadership experience in information security, compliance, or risk-related roles
- Five or more years of experience supporting Linux, Windows, and cloud technologies including Microsoft, Google, and AWS, as well as security tools such as IDS, IPS, DLP, SIEM, EDR or MDR, and firewalls
- Strong knowledge of security methodologies, processes, and technical security solutions
- Solid understanding of data privacy and data protection laws
- Familiarity with physical security systems and controls
- Ability to handle and appropriately classify confidential and restricted information
Nice to Haves / Enhancements
- Bachelor’s degree in Information Systems, Computer Science, Information Technology, Management Information Systems, or Cybersecurity
- CISA, Network Security, or other relevant Information Security certifications
- Agile experience
- Experience championing or maturing an enterprise security program
- Professional certifications such as Compliance and Ethics Professional or Leadership credentials
- Broad and advanced understanding of information security and the application of controls across diverse infrastructure and management environments
- Strong planning, organizational, written, and verbal communication skills
- Self-starter with the ability to work independently and drive results
Company DescriptionAt Crown Universal, we are dedicated to delivering exceptional service that meets the unique needs of our clients, ensuring meticulous attention to detail in every task we undertake. We are working closely with one of our partner organizations in Costa Mesa to find their next top hire.
Company Description
At Crown Universal, we are dedicated to delivering exceptional service that meets the unique needs of our clients, ensuring meticulous attention to detail in every task we undertake. We are working closely with one of our partner organizations in Costa Mesa to find their next top hire.
