Senior Manager - BISO Program Leader
(Remote - Occasional onsite in Malvern, PA)Full-TimeManager
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 8+ years of relevant experience, with at least 3 years in security and compliance leadership roles.
- Required Skills
- HIPAA
Requirements
- 8+ years of relevant experience
- At least 3 years in security and compliance leadership roles
- Undergraduate degree required
- Graduate degree preferred
- CISSP and/or CISM required within the first year of employment
- Proven experience designing, implementing, and scaling a BISO or similar business-aligned security program
- Deep understanding of risk management frameworks, regulatory requirements (e.g., SOX, HIPAA, GDPR), and enterprise control environments
- Strong business acumen with the ability to translate security needs into actionable, business-relevant strategies
- Familiarity with security frameworks (NIST CSF, ISO 27001, CIS Controls)
- Familiarity with enterprise security tools (SIEM, DLP, IAM)
- AI security knowledge is a plus
- Experienced in establishing governance, performance metrics, and maturity models to track program effectiveness
- Exceptional communication, influencing, and stakeholder engagement skills
- Proven project and resource management experience, including budget oversight and leading cross-functional teams
Responsibilities
- Lead a team providing consulting and advisory services to business units, ensuring alignment between security initiatives and organizational goals.
- Embed security risk management into core business processes; identify, prioritize, and mitigate security risks collaboratively with business and security partners.
- Advise on the organizations security risk posture; develop and communicate metrics, dashboards, and executive reports to senior leadership.
- Define security goals and acceptable risk parameters; recommend changes to processes, systems, platforms, and technology based on risk assessments.
- Coordinate enterprise security policies, gather input from business stakeholders, and guide policy updates or changes.
- Monitor and share emerging security trends with peers and industry specialists to maintain a forward-looking security posture.
- Drive the evolution of the business information security program through strategic initiatives and best practices.
View Full Description & ApplyYou'll be redirected to the employer's site