Chief Information Security Officer; CISO
Listed on 2026-09-20
-
IT/Tech
Information Security & Data Protection, Cybersecurity, IT Consultant, IT Project Manager
Apply locations San Jose time type Full time posted on Posted 2 Days Ago job requisition R00594
Job Details:Job Description:
Role Overview :
We are seeking a dynamic and experienced Chief Information Security Officer to lead the process of all assurance activities related to the availability, integrity, and confidentiality of customer, business partner, employee, and business information in compliance with the organization's information security policies. A key element of the CISO's role is working with executive management to determine acceptable levels of risk for the organization.
This position is responsible for establishing and maintaining a corporate-wide information security management program to ensure that information assets are adequately protected.
About the Role:
Develop, implement and monitor a strategic, comprehensive enterprise information security and IT risk management program
Work directly with the business units to facilitate risk assessment and risk management processes
Assist with the overall business technology planning, providing a current knowledge and future vision of technology and systems
Provide leadership to the enterprise's information security organization
Partner with business stakeholders across the company to raise awareness of risk management concerns
Interact with Global Markets engineering stakeholders to understand and communicate risks to critical infrastructure and systems, defining potential business impact, and tracking commitments to apply effective mitigating controls
Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems, and services
Develop and enhance an information security management framework
Drive adoption of application security, technology privacy, privilege management, and vulnerability management controls as part of the Software Development Life Cycle (SDLC) and production management (Dev Ops) processes.
• Minimum of eight to 12 years of experience in a combination of risk management, information security, and IT jobs
• Knowledge of common information security management frameworks, such as ISO/IEC 27001, and NIST
• Excellent written and verbal communication skills and high level of personal integrity
• Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams
• Experience with contract and vendor negotiations and management including managed services
• Experience interfacing with and communicating complex technical security concepts to non-technical audiences
• Information security policy, standards, guidelines or procedures development and implementation
• Infrastructure, database and/or application security experience
• Privilege management (i.e. access and identity management, access re-certification) experience
• Control self-assessment, SOX
404 technical control assessment, SOC 1/SOC 2 control assessment experience
• Strong knowledge of control frameworks and the ability to design and evaluate effectiveness of controls embedded within business processes
• Ability to work with large data sets, reporting dashboards and excel worksheets
• Industry accepted security certifications including CISSP or CISM or CRISC or equivalent SANS certification
• Specific experience in Agile (scaled) software development or other best in class development practices
• Experience with Cloud computing/Elastic computing across virtualized environments.
Contract Employee (Fixed Term)
Shift:Shift 1 (United States of America)
PrimaryLocation:
San Jose
Additional Locations:Pos…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).