Information Security Business Partner
Listed on 2025-12-11
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you’ll work side‑by‑side with a powerful collective of thinkers and experts shaping life‑changing solutions for patients, caregivers and consumers, worldwide.
ZSers drive impact by bringing a client‑first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life‑changing impact to ZS.
The Information Security Business Partner (ISBP) will serve as the critical link between ZS’s client‑facing business teams and both ZS’s and client’s Information Security organizations, driving alignment of client, business, and regulatory security requirements. This role is ideal for a dynamic professional with deep information security experience in a multinational or consulting environment, with any client facing experience, who enjoys collaborating with diverse stakeholders to deliver secure business solutions and measurable cybersecurity outcomes.
The candidate should have client facing Information Security experience.
- Business Unit Security Risk Assessment: Conduct periodic security risk reviews for business units or projects, facilitate risk sessions, and deliver tailored reporting.
- Security Requirements Mapping: Advise business teams in translating client regulatory and contractual security requirements into actionable controls, policies, and technical processes.
- Liaison for Client CISO/Info Sec Needs: Act as primary contact to coordinate security requests, assessments, audits, and due diligence with client CISOs and Info Sec teams.
- Policy & Standard Guidance: Interpret internal/external security policies, support alignment with business practices, and provide guidance on exceptions and clarifications.
- Incident & Business Impact Coordination: Support response and escalation for security incidents, including impact analysis for affected business units.
- Security Maturity & Compliance Reporting: Prepare and communicate security KPIs and maturity dashboards; facilitate reporting on progress against security program objectives.
- Build and maintain strong working relationships across Business, IT, and Information Security functions, representing client and business priorities within security programs.
- Work with executive teams – CISOs, CDLs, CIOs – and translate security language into business language.
- Maintain strong relationships with Privacy & Legal teams; strong presentation skills and ability to deliver executive‑level presentations.
- Participate in the planning and execution of account‑level Information Security initiatives, supporting compliance, audit, and regulatory requirements.
- Drive security capability improvement, including architecture/design, awareness, and readiness activities.
- Contribute to cyber resilience and incident response planning as applicable.
- Share practical knowledge of relevant cybersecurity policies, frameworks, and regulatory environments, especially those impacting healthcare or pharma sectors.
- Provide periodic updates to leadership and stakeholders on security posture, status, and roadmap progress.
- Bachelor’s degree in computer science, Information Security, or related field.
- 10+ years of experience delivering security consulting, risk assessments, or business information security functions in large organizations.
- Proven expertise in risk management, security frameworks (NIST, ISO 27001, CIS, COBIT), and interpreting regulatory requirements.
- Strong verbal/written communication skills, with the ability to translate technical concepts for business audiences and coordinate with client stakeholders.
- Demonstrated experience building consensus among cross‑functional teams.
- Commitment to high standards of ethics, regulatory…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).