Ant International Limited-posted 2 months ago
Senior
Sunnyvale, CA
Professional, Scientific, and Technical Services

We are seeking a Chief Information Security Officer (CISO) to lead and oversee our cyber and information security programs in the Americas. The CISO will develop and maintain cyber security strategy, security policy, security architecture, and security risk management process. This role involves ensuring detailed cyber security standards and procedures are established and implemented, monitoring compliance with cyber security regulations, policies, standards and procedures, and working with Legal, Compliance, Audit, Privacy and IT Technology functions in audit and inspection projects to assure compliance with regulations and industry security certification programs. The CISO will lead to deliver risk-based security solutions in a business context, reviewing and ensuring security requirements of all Data, Applications (SDL), Cloud and Infrastructure (network, system, database) are compliant with cyber security and compliance standards. Additionally, the CISO will lead a team to perform local day to day security operations to defend against cyber threats, proactively support other functions on cyber security, measure and report KRIs on security compliance, and present security risk postures and recommendations as a member of the Risk Management Committee.

  • Develop and maintain cyber security strategy, security policy, security architecture, and security risk management process.
  • Ensure detailed cyber security standards and procedures are established and implemented.
  • Monitor compliance with cyber security regulations, policies, standards and procedures.
  • Work with Legal, Compliance, Audit, Privacy and IT Technology functions in audit and inspection projects to assure compliance with regulations and industry security certification programs.
  • Lead to deliver risk-based security solutions in a business context.
  • Review and ensure security requirements of all Data, Applications (SDL), Cloud and Infrastructure (network, system, database) are compliant with cyber security and compliance standards.
  • Lead a team to perform local day to day security operations to defend against cyber threats.
  • Proactively support other functions on cyber security, including security requirements for important projects, security review and third-party risk management.
  • Measure and report KRIs on security compliance, security awareness program and key security improvements.
  • Present and advise security risk postures and recommendations as a member of Risk Management Committee.
  • Be a focal point for business/product/technology to understand challenges and security impacts, and help stakeholders make well-informed decisions.
  • Experience in a similar Director of Information Security or CISO position, preferably in the Financial Services sector.
  • Demonstrable experience running security compliance programmes.
  • Experience maintaining compliance with information security standards and regulations such as PCI DSS, ISO27001, and NIST Cyber Security Framework.
  • Good security foundation knowledge and practices in identity and access management, authentication, authorization, crypto, protocol security, perimeter security, OS hardening, threat intelligence, vulnerability assessment and penetration testing.
  • Strong stakeholder management skills, working across the regional and global team to leverage knowledge and resources from this network to get things done.
  • Excellent relationship building and communication skills with the ability to engage people from diverse cultures and different levels.
  • Preferably with either CISSP, CISA, CRISC certification.
  • Must be fluent in the English language both written and verbal.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service