Wells Fargo is seeking a Business Information Security Officer (BISO). The BISO is the senior cybersecurity leader accountable for aligning cyber risk outcomes to the objectives, priorities, and risk appetite of an assigned Line of Business (LOB). The successful candidate will partner across business, technology, risk, compliance, audit, and cybersecurity functions to translate complex security issues into business decisions, drive remediation of priority risks, and provide clear executive visibility into the LOB’s cyber posture. Key Responsibilities: Cyber Risk Leadership: Own the cybersecurity risk posture for the assigned business unit, including risk identification, prioritization, mitigation planning, and ongoing control effectiveness. Partner with business and technology leaders to translate cyber threats, vulnerabilities, and control gaps into actionable business risk decisions. Monitor emerging threats and material risk trends to proactively inform risk acceptance, remediation, and investment priorities. Strategic Business Partnership: Serve as the trusted cybersecurity advisor to executive leadership by framing risk tradeoffs, business impacts, and recommended actions. Embed security guidance into business initiatives, digital transformation efforts, and strategic programs without slowing delivery. Align cybersecurity priorities with LOB objectives, enterprise standards, and defined risk appetite. Governance and Executive Reporting: Lead concise executive reporting for governance forums, risk committees, and senior leadership decision-making. Present risk trends, control effectiveness, remediation progress, and emerging threats through clear dashboards, scorecards, and briefings. Represent cybersecurity priorities in governance forums and drive accountability for timely risk decisions. Regulatory and Compliance Oversight: Partner with Risk, Compliance, Audit, and Regulatory Relations teams to address cybersecurity requirements. Support internal and external audits, examinations, and regulatory reviews. Ensure alignment with enterprise policies, standards, risk frameworks, and regulatory obligations. Facilitate issue management and remediation activities. Stakeholder Engagement: Build relationships across business units, CIO organizations, risk teams, and cybersecurity domains. Coordinate with security architecture, application security, vulnerability management, identity and access management, and other cyber teams. Act as an escalation point for significant cyber risks and security concerns. Drive accountability and ownership for security outcomes across business stakeholders. Artificial Intelligence: Demonstrate foundational AI literacy by effectively using approved AI tools to support everyday work. Apply AI tools for activities such as research, summarization, drafting, analysis, and decision support. Exercise sound judgment when interpreting and using AI‑generated outputs. Understand basic AI limitations and appropriate use cases within daily workflows. Adhere to data privacy, security, and data‑handling standards when using AI tools. Use AI ethically and responsibly, in alignment with company policies and guidelines. Success Measures: During the first 12 months, the BISO will be expected to: Establish trusted advisor relationships with key business and technology executives. Develop and maintain a comprehensive cyber risk profile for the assigned business. Improve visibility of cyber risk through executive reporting and governance. Drive measurable reduction of prioritized cyber risks. Enhance compliance with security policies and regulatory requirements. Strengthen collaboration across cybersecurity, technology, and business teams.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed