Business Information Security Officer (BISO)
- Full-time
- Remote: No
- Company: FIS Global
Company Description
Company Name: FIS Global
Job Description
Position Type :
Full timeType Of Hire :
Experienced (relevant combo of work and education)Education Desired :
Bachelor of Computer ScienceTravel Percentage :
10 - 15%Job Description
About FIS
Are you curious, motivated, and forward-thinking? At FIS, you will have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented people empower us, and we believe in being part of a team that is open, collaborative, entrepreneurial, passionate and above all fun.
About the Team
This team is led by an IT Security Executive supporting the Chief Information Security Officer (CISO). The focus within this team is cybersecurity governance, policy and risk management.
About the role
You will play the role of Business Information Security Officer (BISO) for the United States. In this role, you will be a key point-of-contact for the business, and serve as a bridge between technical security teams, business leaders and other relevant stakeholders.
You will work closely with the BISO leads from Latin America (LATAM) and the broader BISO and Cybersecurity teams, as well as engage with CIO, CRO, Legal and Line of Business (LoB) in effectively communicating and managing security risk.
What you will be doing
Serve as the primary cyber security expert for US business units, aligning business initiatives with security policies and requirements, and providing expert guidance to stakeholders.
Work closely with the Risk Management team to ensure that the LoB information security strategies complement cyber risk management practices.
Ensure LoB compliance with internal security policies and assist with US and global regulatory frameworks, including CCPA, GDPR, PCI-DSS, and other relevant standards.
Review and provide approval for policy exceptions or other deviation/white-listing requests in risk management systems i.e Archer or ServiceNow. Review risk remediation plans.
Conduct cyber risk assessments of business-led initiatives, products or technology development, and provide recommendations for remediating risk.
Act as the go-to expert for security awareness for the US LoBs.
Communicate security policy, standards and requirements changes and impacts to the LoBs and relevant stakeholders and facilitate effective change management.
Partner with IT, Legal, Compliance, Risk and other teams to implement comprehensive security solutions, ensuring effective protection and alignment with business priorities. Evaluate projects and contracts for alignment with security requirements.
Act as the security SME for clients, particularly in the financial sector, helping them understand FIS’ security capabilities and how FIS protects client data.
What you bring
Bachelor’s degree in information security or related field.
7-10 years in information security, with 3-5 years in a stakeholder engagement role. Experience in the financial sector is desirable.
CISSP, CISM, CISA, or equivalent preferred.
Strong knowledge of financial regulations and industry standards.
Strong business acumen, leadership, risk management and communication skills.
Strong decision-making and problem-solving skills. Demonstrated experience in handling complex situations and the delicate balance between security and business enablement.
Very comfortable handling multiple priorities, establishing goals, and implementing protocols for LoB and key stakeholder engagement in a fast-paced environment.
Excellent verbal and written communication skills to technical and non-technical audiences of various levels in the organization.
Proactive in building and fostering relationships across all levels of the organization, including executives.
Knowledge of security technologies (encryption, data protection, secure configuration, privilege access, etc.)
Experience in IT infrastructure, Cloud and emerging technologies.
Knowledge of networks technologies (protocols, design concepts, access control, engineering).
Strategic mindset to understand the cyber risk trends and plan with stakeholders to remediate the root cause.
Limited travel requirements, with the majority of work conducted remotely or from a designated office location.
Bonus if you have
ServiceNow and Archer platform experience.
What we offer you
Flexible and creative work environment.
Diverse and collaborative atmosphere.
Professional and personal development resources.
Opportunities to volunteer and support charities.
Competitive salary and benefits.
Privacy Statement
FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.
EEOC Statement
FIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available here
For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
Sourcing Model
Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.
#pridepass