More jobs:
Chief Information Security Officer
Job in
Tampa, Hillsborough County, Florida, 33646, USA
Listed on 2025-12-23
Listing for:
The Security Executive Council
Full Time
position Listed on 2025-12-23
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
About the job Slide Insurance - Fun. Innovation Driven. Fueled by Passion, Purpose and Technology. At Slide, you will not only be part of a successful team, but you will also be a part of our Slide Vibe/award winning culture where collaboration and innovation are expected, recognized and awarded!
Duties and Responsibilities Security Strategy & Governance- Develop and maintain the enterprise security roadmap aligned with business strategy, insurance-specific risks, and regulatory obligations.
- Responsible for the cybersecurity program and establish policies, standards, and procedures for cybersecurity, data protection, access control, and technology governance.
- Prepare executive-level reporting on security posture, key risks, and program maturity for CIO, Executive Leadership, and Audit/Risk Committees.
- Lead or support compliance with NIST CSF, ISO 27001, NAIC Model Law, state DOI cyber requirements (e.g., NY DFS, FL OIR etc.), SOX, GLBA, PCI, and privacy regulations.
- Oversee the Security Operations Center (internal and/or external), including threat monitoring, incident detection, and incident response.
- Lead development of modern security architecture including zero‑trust principles, cloud security, identity governance, and endpoint security.
- Mature vulnerability management, penetration testing, and security hardening activities across the organization.
- Direct development and testing of incident response plans, tabletop exercises, and post‑incident analysis.
- Manage investigation of security alerts, vulnerabilities, and suspicious activities.
- Ensure compliance with NAIC cybersecurity model law, NIST CSF, ISO 27001, state DOI regulations, PCI, GLBA, and privacy requirements.
- Oversee preparation of cybersecurity‑related SEC disclosures, including incident reporting and governance statements.
- Partner with internal departments to maintain required documentation and audit readiness.
- Lead third‑party risk programs covering vendors, agents, service providers, and cloud platforms.
- Partner with Underwriting, Claims, Product, and Sales to ensure secure design of systems and workflows.
- Work with actuarial and underwriting teams on cybersecurity posture assessments relevant to cyber insurance offerings.
- Ensure contact center, agent portals, field adjuster tools, and policyholder self‑service platforms meet security standards.
- Balance strong controls with operational efficiency in a high‑volume insurance environment.
- Drive remediation efforts in partnership with infrastructure, networking, Dev Ops, and application teams.
- Lead business continuity and disaster recovery planning for critical systems.
- Lead cybersecurity assessments for vendors, agent platforms, cloud service providers, and third‑party partners.
- Ensure contracts meet required security and privacy standards.
- Oversee data protection strategy, including encryption, access management, retention standards, and sensitive data governance.
- Implement and enforce data protection standards including encryption, retention, and secure data handling for policyholder and agent data.
- Monitor for data‑loss risks and manage DLP tools and processes.
- Partner with engineering and Dev Ops teams to implement secure cloud (AWS/Azure) architecture practices.
- Ensure security controls are embedded in system development, integrations, and modernization efforts.
- Support secure design reviews for new applications, claims tools, underwriting systems, and customer portals.
- Provide leadership to employees and regularly conduct effective and timely structured progress and growth dialogues.
- Coach, train, and develop employees; set goals and lead to success.
- Conduct employee interviews and make staffing recommendations, as needed.
- Manage relationships with key technology and security vendors, including MDR/MSSP partners.
- Build a culture of security awareness across the enterprise, including training, phishing simulations, and workforce engagement.
- Perform…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×