Built on meritocracy, our unique company culture rewards self-starters and those who are committed to doing what is best for our customers. Brown & Brown is seeking a Business Information Security Officer (BISO) to join our growing team! The Business Information Security Officer (BISO) serves as the primary liaison between the security function and divisional profit centers and corporate teams. Reporting directly to the Chief Security Officer (CSO), the BSO works closely with divisional IT leaders, and business executives to align business operations with both information and physical security strategies. The BSO also represents the Chief Information Security Officer (CISO) and the VP of Global Physical Security in local information security and physical security matters. Serving as the single conduit into the information security/physical security organization, this role ensures security is embedded in divisional culture, focuses on key risks, and provides guidance on security policies and controls. How You Will Contribute: Support the implementation, maintenance, and continuous improvement of information and physical security programs in alignment with corporate policies, standards, and frameworks. Contribute as a key member in shaping both the Brown & Brown security roadmap and divisional technology roadmap. Serve as a subject matter expert for information and physical security, supporting strategy development and execution. Provide guidance on prioritizing divisional investments that impact security. Allocate security resources (architecture, engineering, operations, risk management) to meet divisional needs. Support merger and acquisition activities, including pre-deal due diligence and post-deal 90-day security integration. Advise divisional leaders on security-related risk and assist in meeting broader risk management and compliance objectives. Monitor emerging security trends and assess potential impacts to divisions or profit centers. Ensure risk remediation processes are followed, issues are mitigated, and exceptions are tracked according to organizational standards Manage IT certification and accreditation processes in collaboration with auditors and certification bodies. Oversee regulatory compliance for data privacy and protection across the division. Align divisional funding requirements with strategic security initiatives. Participate in relevant security and business councils or working groups. Educate stakeholders to strengthen awareness and security culture. Understand business objectives and translate risk discussions into business-focused terms. Drive security risk assessments across the division. Engage business partners constructively on security issues. Establish clear risk ownership and accountability. Ensure compliance with security policies, regulations, and tools. Perform other duties as assigned.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level