VP, Information Security Officer
Listed on 2026-09-20
-
IT/Tech
Information Security & Data Protection, Cybersecurity
Job Title: VP, Information Security Officer
Department or Branch: Risk Management
Working at Workers Credit UnionAt Workers Credit Union, everything starts with a simple but powerful purpose:
We enable financial prosperity through values-driven solutions because everyone deserves a future they can believe in.
For more than a century, we've been a trusted partner in helping people make confident financial decisions and build stronger futures. Today, as a $2.5B organization serving over 120,000 members, we continue to evolve, thoughtfully blending personal connection with modern capabilities to better support our members in the moments that matter most.
We call this the Workers Way. It shapes how we show up every day, with personalized guidance, practical solutions, and a deep commitment to doing what's right. Just as importantly, it defines how we work together. We choose purpose over ego. We communicate directly with respect. We dare to grow. We do the right thing, always
. And we win together
, because meaningful results are built through shared success.
As we look ahead, we're building on a strong foundation and continuing to evolve how we operate and deliver impact, simplifying experiences and strengthening capabilities.
We have big plans for the future, and we hope you'll be part of what comes next.
The VP, Information Security Officer is responsible for the development, implementation, maintenance, and oversight of Workers Credit Union's enterprise Information Security Risk Management Program. This role serves as the Credit Union's Information Security Officer and is responsible for the design and implementation of the credit union's information security strategy and program. The role provides governance, risk oversight, regulatory alignment, incident response leadership, security awareness, and executive reporting to help protect member information, confidential business information, technology assets, and the overall security posture of the organization.
WhatYou'll Contribute Information Security Program Governance and Oversight
- Serve as the Credit Union's designated Information Security Officer and primary leader for the enterprise Information Security Risk Management Program.
- Develop, maintain, and continuously improve information security policies, standards, procedures, controls, and governance practices.
- Provide strategic oversight of the Credit Union's information security and physical security risk posture, including alignment with enterprise risk appetite and regulatory expectations.
- Monitor emerging cybersecurity threats, regulatory guidance, industry trends, and supervisory expectations impacting the Credit Union.
- Provide governance oversight for the secure and responsible use of emerging technologies, including artificial intelligence, by ensuring risks are identified, escalated, and reported appropriately.
- Ensure security considerations are embedded into new products, services, technology changes, vendor relationships, and enterprise initiatives.
- Partner with Risk, Compliance, Legal, Information Technology, Enterprise Data, business leaders, and external security partners to support a coordinated and risk-based security program.
- Lead or coordinate information security risk assessments, maturity assessments, control testing, and remediation tracking.
- Ensure appropriate review and reporting of security-related assessments, including NCUA, FFIEC Cybersecurity Assessment Tool, GLBA Safeguards, governance, risk and compliance assessments, new product reviews, vendor reviews, and related examinations.
- Develop meaningful metrics and reporting to assess information security risk exposure, control effectiveness, remediation progress, and program maturity.
- Provide regular updates to executive leadership, management committees, the Risk Oversight Committee, and the Board of Directors on the status of the Information Security Program.
- Serve as the primary liaison with internal audit, external auditors, regulatory examiners, and third-party assessors for information security reviews and examinations.
- Maintain documentation, evidence, and reporting needed to support audits, regulatory exams, incident reviews, and management oversight.
- Coordinate with Information Technology and business units to monitor policy compliance, remediate vulnerabilities, address control gaps, and strengthen secure operating…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).