Uploaded by sniffingtiger

BLC CISO

advertisement
Dynamic and fast paced 200+ person ERC firm is seeking a senior IT professional to drive innovation and
strategy with a focus on creating a structured, process-oriented environment with responsibility for
information technology and cyber security. This role reports directly to senior management.
Qualifications
● Hard‐working, results‐oriented with a high sense of urgency, capable of thriving in a fast-paced
environment; Ability to multi‐task.
● Organized and thorough with attention to detail.
● Highly collaborative with excellent interpersonal skills and the ability to work well in a team
structure.
● Ability to clearly communicate merits of selected strategy or process to senior leadership and
users.
● Ability to lead and manage existing relationships and effectively interact with end users to
resolve day to day issues.
● Formal background and training including a bachelor’s degree and appropriate certifications
(CISSP preferred)
This role will partner with senior management to identify and prioritize strategic initiatives and develop
data governance controls and a cohesive IT and Cyber strategy. This position is responsible for
developing disaster recovery and business continuity plans and procedures and will manage internal IT
staff and take ownership of an existing MSP relationship and make changes as deemed necessary.
Core IT Responsibilities
● Help to review and set strategy for technical infrastructure, architecture, application systems
and/or related business processes to ensure the reliable implementation and operation of
technology.
● Identify and implement leading industry best practices.
● Work with MSP and end users to assess business needs and recommend enhancements to
technology with the goal of creating a secure, efficient environment.
● Managing MS O365 tenant configuration, security and licensing.
● Direct and manage internal IT staff.
● Establish ongoing communication with senior leadership on the status of IT related issues,
evolving risks and related recommendations.
● Support leadership in the development and maintenance of Disaster Recovery and Business
Continuity programs.
● Create and manage budgets.
This role will partner with other executives across different departments to align security initiatives with
broader business objectives and mitigate the risks various security threats pose to the organization's
mission and goals. Specific cyber relates duties include developing and implementing an information
security program, which includes developing procedures and policies designed to protect enterprise
communications, systems, data and assets from both internal and external threats.
Cyber Responsibilities
● Owning the cyber and data security role.
● Identifying security objectives and metrics.
● Creating cyber policies and procedures.
● Selecting security vendors and tools.
●
●
●
●
●
●
Developing crisis management and Incident Response Plans and Procedures.
Conducting employee security awareness training and phishing tests.
Responding to data breaches and other security incidents.
Anticipating, assessing and actively managing new and emerging threats
Ensuring that the company is in regulatory compliance with the rules of relevant bodies.
Enforcing adherence to leading security practices and published standards.
Candidate Profile
The Candidate should have approximately 5‐15 years in information technology with experience in both
general IT management and cyber security.
Download