Business Information Security Partner
985 - Fred Meijer Office, United States
As a family company, we serve people and communities. When you work at Meijer, youāre provided with career and community opportunities centered around leadership, personal growth and development. Consider joining our family ā take care of your career and your community!
Ā
Meijer Rewards
Weekly pay
Scheduling flexibility
Paid parental leaveĀ
Paid education assistance
Team member discount
Development programs for advancement and career growth
Ā
Please review the job profile below and apply today!
āāThe Business Information Security Partner (BISP) supports the Chief Information Security Officer (CISO) in managing and overseeing the organizationās information security program. This role involves developing and implementing security enablement strategies to protect the organizationās information assets. Leads a team of architects and application security engineers to design and implement security controls for the organization. The BISP acts as a trusted advisor to the CISO and other Directors, providing guidance on security best practices and risk management implementation. This role acts as a liaison between security, IT, legal, compliance and business units to align security initiatives with organizational goals while ensuring a robust security posture.ā
Ā
What Youāll be Doing:Ā
Develops and owns the security strategic roadmap aligned with organizational goalsĀ
Leads a team responsible for designing, developing and implementing technical and process controls to support compliance objectivesĀ
Acts as a trusted partner to the CISO, ensuring smooth operations within the security programĀ
Collaborates with Security leadership to define and measure key performance indicators, providing executive-level reports and presentations on security posture and strategyĀ
Leads the implementation of governance processes for security policies, frameworks, and risk managementĀ
Facilitates key business relationships with other ITS departments, legal, compliance, and business units to ensure successful implementation; manages communications, aligns priorities across teams, and drives organizational change management as neededĀ
Consults with, mentors and coaches ITS and business team members and leadership, project and program managers and vendors on secure coding principles and guidelines, concepts, processes and toolsĀ
Drives adoption of security tools and processes with partners through highly aligned strategies and processesĀ
Provides security focused technical consulting on business projects or system issuesĀ
Ensures security is embedded in IT and software development processesĀ
Works with teams to map security controls, as defined by Governance, Risk and Compliance (GRC), into architecture design patternsĀ Ā
Leads team that develops secure design patterns and best practices for infrastructure, cloud, and applicationsĀ
Leads team that works with developers and DevOps teams to integrate security into the SDLCĀ
Utilizes knowledge of security best practices for project and portfolio management to recommend and implement necessary changesĀ
Leads and directs team to accomplish security objectives and key resultsĀ
This job profile is not meant to be all inclusive of the responsibilities of this position. May perform other duties as assigned or required.Ā
Ā
What You Bring with You (Qualifications):Ā
Ā
Bachelorās degree in Computer Science, Engineering, Security Management or related disciplineĀ
Masterās degree is preferredĀ
Advanced security certifications such as the CISSP, CISM, or CPP are requiredĀ
15+ years of information security experience, preferably in a leadership roleĀ
15+ years experience in IT with a broad range of exposure to business planning, systems analysis, security solutions, application development and infrastructure supportĀ
Experience in leading design and engineering teamsĀ
Knowledge of information security principles and practices, privacy laws and regulations, and AIĀ
Knowledge of NIST, CIS, other security and risk frameworksĀ
Demonstrated competency in strategic thinking with abilities in relationship managementĀ
Expert knowledge of business environment and systems architectureĀ
Strong analytical and problem-solving skillsĀ
Excellent oral and written communication skills; ability to present and discuss technical information in a way that establishes rapport, persuades others and gains understandingĀ
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index š°
Tags: Application security CISM CISO CISSP Cloud Compliance Computer Science DevOps Governance NIST Privacy Risk management SDLC Strategy
Perks/benefits: Career development Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.