Business Information Security Liaison
Listed on 2026-07-14
-
IT/Tech
Cybersecurity, Information Security
Business Information Security Liaison
Grade: 6
Schedule: M-F
Location: Hybrid:
Primarily in office, Atlanta or Birmingham (4 days onsite)
We are seeking a Business Information Security Liaison (BISL) to serve as the strategic cybersecurity partner for our Human Resources organization within one of the nation's largest energy/utility and critical infrastructure companies. This role is responsible for building trusted relationships with business leaders, technology teams, and cybersecurity professionals to proactively identify, communicate, and reduce security risk across HR processes, technologies, and initiatives.
The BISL acts as the bridge between business and security, ensuring that sensitive employee and enterprise information is protected while enabling business objectives, transformation efforts, and innovation.
The ideal candidate brings a strong foundation in cybersecurity, risk management, and security strategy, combined with exceptional communication skills. This individual will drive meaningful risk reduction through collaboration, partnership, and business alignment. Success in this role requires the ability to translate complex security concepts into business terms, influence decision‑making at all organizational levels, and champion security practices that strengthen resilience, protect critical information assets, and support the mission of a company that powers communities and critical services across the United States.
Job ResponsibilitiesServe as a trusted advisor to our stakeholders, by designing security solutions, for better security and business enablement.
Design and implement guardrails to secure modern networks and infrastructure with a variety of vendors and device types.
Continuously seek opportunities to enhance the security posture of HR infrastructure and technologies, including but not limited to:
Identity & Access Management (IAM), Cloud Security Posture Management (CSPM), Data Loss Prevention (DLP).Align forward‑thinking strategy with business goals to integrate and raise the bar on security practices and solutions.
Assist in the ongoing development of Southern Company’s security architecture – identify areas of opportunity, research alternatives, and recommend solutions.
Develop creative solutions to meet business needs while ensuring appropriate security controls and best practices are implemented.
Partner with others to identify and resolve information security issues.
Plan, coordinate, and lead information security projects.
Help customers understand and apply information security concepts, processes, and technologies.
Maintain current knowledge of information security and cybersecurity concepts, technologies, and practices.
Mentor others to strengthen cybersecurity principles and best practices to outside operational areas.
Establish and maintain excellent working relationships and partnerships across the Technology Organization, business partners, and external vendors and suppliers.
Create an environment that fosters accountability, innovation, and engagement at all levels.
Working knowledge of information technology and cloud network design and practice.
Hands‑on experience designing, architecting, and implementing various information security tools/products such as PKI, Full Packet Capture, Next‑Generation Firewalls, HSM’s, SIEM, Multi‑Factor Authentication, IDS/IPS, Database Encryption, Privileged Identity Management, Cloud Posture Management, etc.
Competency in APIs (REST, Graph), VMware, and/or cloud environments.
Experience promoting security as a business enablement function using influence, metrics, documentation, strong verbal communication, and presentation skills.
Working knowledge of cloud and traditional security network architectures.
Ability to lead a project from concept through implementation and anticipate potential problems.
Experience prioritizing and executing with minimal direction or oversight.
Ability to perform detailed information security risk assessments and recommend mitigating controls.
Must pass NERC CIP & Insider Threat Protection background checks.
Experience with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).