VP, Information Security
Listed on 2025-12-27
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Description
The Vice President, Information Security is a senior-level role responsible for shaping and maintaining the Bank’s cybersecurity posture. This position serves as a trusted advisor to the SVP, Information Security Officer and collaborates across business units, IT, Compliance, and Audit to ensure confidentiality, integrity, and availability of bank systems and data. With minimal supervision, the VP will lead strategic initiatives, oversee critical security platforms, and drive risk reduction efforts.
The VP, Information Security is part of Poppy Bank’s Information Security Team who proactively maintain our cybersecurity posture. This position will collaborate with business units and work closely with the Information Technology team, various departments, and a variety of vendors that supply the Bank’s layered information security architecture. The incumbent is responsible for daily, weekly, monthly, and quarterly monitoring of information security events and the platforms that generate those events.
Platforms include anti-phishing, vulnerability management, patch management, end-point protection, data-protection among others. The incumbent will work closely with a Managed Security Provider as some of the security platforms are outsourced to an MSP. The VP assists the ISO in responding to and mitigating threats across the organization.
The incumbent will work closely with the Information Security Officer in evaluating emerging threats to the environment, adjusting the security posture accordingly. Researches, evaluates, and implements new cybersecurity platforms while optimizing existing solutions to enhance security effectiveness. The Information Security Team frequently collaborates across the organization in securely deploying new technologies and processes that support the business while protecting the Bank and its customers.
The incumbent will serve as a liaison with the Bank’s Compliance and Audit teams, ensuring close tracking of various audit and exam findings. Where division of duties permit, the incumbent will assist the Information Technology Team in various projects and tasks.
Ensures compliance within all Bank policies and procedures, as well as all applicable state and federal banking regulations.
Essential Duties and Responsibilities- Partner with SVP ISO to define and execute the bank’s information security roadmap; evaluate emerging threats; serve as SME during audits and board reporting
- Develop and enforce security policies aligned with GLBA, FFIEC, NIST CSF; liaise with Compliance and Audit
- Oversee monitoring of security controls (email security, remote access, vulnerability management, endpoint protection, DLP); lead incident response; manage MSSP relationships
- Research and implement advanced security technologies (SIEM, CASB, EDR); drive vulnerability management; report metrics to leadership
- Mentor junior staff; assist in building a scalable security team
- Demonstrates a thorough understanding of junior-level responsibilities and provides hands‑on support when needed to ensure continuity and team success
- Implements policies or procedures and tracks compliance throughout the organization with SVP review. Help coordinate audits and exams and track remediation efforts to conclusion
- Diagnose and research causes of security issues (e.g., misconfigured DNS records, exposed insecure protocols, use of known‑vulnerable software, weak ciphers)
- Collaborate with IT to ensure new product deployments comply with security policies and standards
- Monitor and report on emerging cybersecurity threats and trends and provide recommendations to internal teams on how to mitigate risks
- Respond to security incidents and/or policy violations
- Track and report security metrics and efforts to the Information Security Officer and update the department at weekly team meetings
- Identify risks and make recommendations to SVP for proactive preventative measures
- Perform scheduled software/hardware system checks & upgrades (may involve occasional after‑hours work)
- Support Information Security Analyst with researching, installing, configuring, maintaining, and monitoring cyber security platforms as needed
- Maintains…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).