Chief Security Officer

539 Words2 Pages

The Chief Security Officer (CSO) position requires the capability to understand complex business issues and articulate the context of projects and processes to senior executives, the Board, customers, and industry leaders and as such will possess strong skill sets in security, technology and business management. Primarily responsible for ensuring the effective protection of the company and its customers the CSO is responsible for managing security risks to ensure compliance with regulatory requirements while affirming business trust with its customers. To accomplish this task the CSO will oversee security operations, information and assets. Qualified candidates must be a US Citizen and have the ability to obtain a US Security Clearance.
RESPONSIBILITIES …show more content…

Provide security updates and communications to C-Suite Executives and the Board of Directors.
6. Lead the Information & Product Security teams of 50 employees and 22 contractors and manage a budget of over $25M.
7. Manage security engineering, tooling and enablement for product development teams to embed security throughout the development, staging and production lifecycle
8. Oversee the overall strategy and execution for the compliance program to include ISO 27001, SOC2, SOX, GDPR and other regulatory data handling certifications.
9. In partnership with the General Counsel's Office, assure compliance with regional, national, and state data privacy regulations, including development of litigation e-Discovery capabilities.
10. Identify and implement a risk management framework that ensures appropriate application of risk-based controls.
11. Participate in enterprise risk management process advising senior management of technology risk. Develop and drive risk mitigation and remediation plans.
12. Identify security technologies and trends ensuring the computing environment keeps pace with technological change and innovation.
13. Manage vendor relationships with security services suppliers, including traditional product and service vendor, managed service supplier, and SaaS supplier

Open Document