Business Information Security Officer
Job Summary
- Develop a deep understanding of your business domains keeping abreast of new technologies regulatory changes and industry best practices as you design lead and oversee the information security programs for your lines of business.
- Work with stakeholders to effectively manage cyber risk including consulting on security controls mitigation strategies and incident response planning and management.
- Foster cross-functional relationships between teams to improve all aspects of our security program.
- Define and develop management information including key risk indicators program maturity indicators and key performance indicators for use in reporting.
- Establish and review information security policies and procedures in your line of business.
- Become a trusted voice to senior management report on the status of information security programs to boards and various governance forums.
- Lead in the development and delivery of scenario testing such as Tabletop Exercises and Threat Led Penetration Testing.
- Lead remediation efforts and support transformational change initiatives across the broader organization.
- 7 years of experience in information security cyber security risk management data security and cyber security regulation.
- Demonstrated ability to influence internal and external stakeholders to achieve success in a complex global setting.
- Proven delivery of complex projects involving cross-functional teams.
- Ability to proactively identify and manage cyber security risks to deliver services and meet business objectives in a secure and compliant way.
- Strong technical knowledge in key cyber security domains such as cloud security network security and architecture application security secure software development lifecycle (SSDLC) and vulnerability management.
- Proven experience in delivering Threat Led Penetration Tests such as CBEST or equivalent TLPT regimes.
- Good knowledge of key technologies such as Operating Systems Software Development Build Pipelines and Processes Security Tooling O365 Suite and Business Intelligence Tools.
- Experience with industry standards such as NIST CSF and ISO 27001.
- Knowledge and experience with Regulation pertaining to Information Security such as DORA Operational Resilience UK CTP Regime GDPR.
- Excellent written and oral communication skills.
- Demonstrated ability to perform under pressure and consistently meet program deadlines.
- An industry recognized certifications such as CISSP GIAC CISM ISO 27001 Lead Implementor/Auditor.
Required Experience:
Unclear Seniority
About Company
Bloomberg is the world's primary distributor of financial data and a top news provider of the 21st century. A global information and technology company, we use our dynamic network of data, ideas and analysis to solve difficult problems every day. Our customers around the world rely on ... View more