Sr Manager, IT Business Information Security Collaboration, BISO
Listed on 2026-02-18
-
IT/Tech
Cybersecurity, Information Security
Sr Manager, IT Business Information Security Collaboration, BISO
Sr Manager, IT Business Information Security Collaboration, BISO
Posting
Start Date:
2/10/26
Location
:
DFW Headquarters Building 7 (DFW-SV07)
Cities
:
Fort Worth - TX
Requisition :83698
Job Description
IntroAre you ready to explore a world of possibilities, both at work and during your time off? Join our American Airlines family, and you’ll travel the world, grow your expertise and become the best version of you. As you embark on a new journey, you’ll tackle challenges with flexibility and grace, learning new skills and advancing your career while having the time of your life.
Feel free to enrich both your personal and work life and hop on board!
The Business Information Security Officer (BISO) will be aligned to select business units across the airline, serving as the primary security partner supporting cybersecurity and the business’ strategic goals and operational needs.
What you'll doAs noted above, this list is intended to reflect the current job but there may be additional essential functions (and certainly non-essential job functions) that are not referenced. Management will modify the job or require other tasks be performed whenever it is deemed appropriate to do so, observing, of course, any legal obligations including any collective bargaining obligations.
- Develop deep understanding of business unit’s operations, priorities, and strategic objectives to ensure cyber guidance and decisions are aligned with business needs.
- Serve as a bridge between business and cybersecurity, helping support business priorities with cybersecurity aligned actions.
- Drive overall security strategy within assigned business units, ensuring security by design principles are understood and executed across business initiatives.
- Champion cybersecurity awareness, encouraging secure behaviors and shared accountability across teams.
- Evaluate effectiveness of security practices, using KPIs and metrics to guide maturity and improvement across business units
- Advise on and shape how cybersecurity controls and processes are included in new technology development efforts to minimize early-stage risk.
- Stay aware of incidents, risks, and compliance gaps, and coordinate appropriate remediation activities.
- Translate complex technical requirements into clear business narratives, enabling understanding, alignment, and buy in.
- Balance cybersecurity priorities with business needs, guiding decisions considering the organization’s risk appetite.
Minimum Qualifications
- Education & Prior Job Experience
- Bachelor’s degree in computer science, information systems, or a related field
- 8 years of experience in information systems or a related field
- 3 years of experience with cybersecurity, information security, or a related field
- Experience working in an advisory capacity to senior leadership
- Demonstrate a strong history of collaborating effectively with cross functional teams on security focused initiatives within a large, complex IT environment.
- Exhibit advanced ability to communicate security concepts clearly to non technical audiences within a fast paced, business driven environment.
- Bring at least 2 years of leadership or management experience involving regular communication of complex security topics and metrics to stakeholders at all levels, including senior executives and the C suite.
Preferred Qualifications
- Education & Prior Job Experience
- Master’s degree in computer science, information systems, cybersecurity, or a related field
- 10+ years of experience in cybersecurity, information security, or a related field
- 6+ years of experience IT alignment with relevant Business Units
- 2+ years of experience with implementing cybersecurity controls
Skills, Licenses & Certifications
- Familiarity with cybersecurity risk assessment methodologies and frameworks
- Familiarity with cybersecurity technologies, tools, and best practices
- Knowledge of relevant cybersecurity frameworks (e.g., NIST CSF, ISO 27001) and regulations (e.g., TSA Cyber Amendment, HIPAA, GDPR).
- Familiarity with industry-specific regulations (e.g., TSA, FAA, PCI DSS) and their cybersecurity…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).