Senior Manager - BISO Program Leader

(Remote - Occasional onsite in Malvern, PA)Full-TimeManager
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Experience
8+ years of relevant experience, with at least 3 years in security and compliance leadership roles.
Required Skills
HIPAA

Requirements

  • 8+ years of relevant experience
  • At least 3 years in security and compliance leadership roles
  • Undergraduate degree required
  • Graduate degree preferred
  • CISSP and/or CISM required within the first year of employment
  • Proven experience designing, implementing, and scaling a BISO or similar business-aligned security program
  • Deep understanding of risk management frameworks, regulatory requirements (e.g., SOX, HIPAA, GDPR), and enterprise control environments
  • Strong business acumen with the ability to translate security needs into actionable, business-relevant strategies
  • Familiarity with security frameworks (NIST CSF, ISO 27001, CIS Controls)
  • Familiarity with enterprise security tools (SIEM, DLP, IAM)
  • AI security knowledge is a plus
  • Experienced in establishing governance, performance metrics, and maturity models to track program effectiveness
  • Exceptional communication, influencing, and stakeholder engagement skills
  • Proven project and resource management experience, including budget oversight and leading cross-functional teams

Responsibilities

  • Lead a team providing consulting and advisory services to business units, ensuring alignment between security initiatives and organizational goals.
  • Embed security risk management into core business processes; identify, prioritize, and mitigate security risks collaboratively with business and security partners.
  • Advise on the organizations security risk posture; develop and communicate metrics, dashboards, and executive reports to senior leadership.
  • Define security goals and acceptable risk parameters; recommend changes to processes, systems, platforms, and technology based on risk assessments.
  • Coordinate enterprise security policies, gather input from business stakeholders, and guide policy updates or changes.
  • Monitor and share emerging security trends with peers and industry specialists to maintain a forward-looking security posture.
  • Drive the evolution of the business information security program through strategic initiatives and best practices.
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now