Chief Security Officer / Head of IT Security – Financial recruitment
You will proactively work with business units to implement practices that meet defined policies and standards for information security. You will also oversee all IT risk management activities.
A key element of the role is to work with executive management to determine acceptable levels of risk for the organization. You must be highly knowledgeable about technology risk management for financial institutions and must ensure that information systems are maintained in a fully functional, secure mode.
Responsibilities Include, but Are Not Limited to:
- Develop, implement and monitor a strategic, comprehensive enterprise information security and risk management program to ensure the integrity, confidentiality and availability of information owned, controlled or processed by the organization.
- Manage the enterprise's security organization, consisting of direct reports and indirect reports (such as individuals in business continuity and IT operations), including hiring, training, staff development, performance management and annual compensation review.
- Provide subject matter expertise to executive management on a broad range of information security standards and best practices, such as ISO 27001/2, CobiT and ITIL.
- Provide strategic and tactical security guidance for all IT projects, including the evaluation and recommendation of technical controls.
- Liaise between the information security team and corporate compliance, audit, legal and HR management teams as required.
- Develop effective disaster recovery policies and standards; coordinate the development of implementation plans and procedures to ensure that business-critical services are recovered in the event of a declared disaster, and provide direction and in-house consulting in these areas.
Requirements and Qualifications
- Degree in business administration or a technology-related field, or equivalent work- or education-related experience.
- Minimum of 10 years experience in a combination of risk management, information security and IT jobs.
- Experience in governing the IT operations performed by outsourced vendors, including contract and vendor negotiations
- Knowledge of technological trends and developments in the area of information security and risk management.
- Project management skills; financial/budget management, scheduling and resource management.
- Professional certification, such as a CISSP, CISM, CISA or other information security credentials, is preferred.
- Proficient with personal computers; experience with productivity software, such as Windows, Microsoft Office software and so forth.
- Knowledge of security and control frameworks, such as ISO 27001/2, CobiT, COSO and ITIL.
Interested candidates, please forward your resume to Jamie Townsend jtownsend@confero.asia