Chief Information Security Office-Strategy, Programs
3 weeks ago
Chief Information Security Office-Strategy, Programs & GRC AVP Join to apply for the Chief Information Security Office-Strategy, Programs & GRC AVP role at Bank of China USA Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long‑term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business. Overview This incumbent will provide Strategy, Programs, Governance, Risk and Compliance functions as required to fulfill BOCNY information security program requirements. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments and Compliance functions as detailed below. Responsibilities Governance Establish and maintain Information Security policies and procedures Ensure CISO roles and responsibilities are clearly delineated and documented to ensure efficiency, create synergies and ensure TISR is being properly managed across first and second lines Periodically refresh and update TISR controls guidance in relevant policies and supporting procedures with detailed implementation guidance Develop, monitor, and track CISO policy adherence measures and metrics Strategy & Programs Coordinate Information Security strategy in alignment with the Bank's strategy Maintain strategic initiatives tracking and associated KRIs to track progress and execution of the objectives Conduct quarterly strategy reviews with the CISO team to ensure alignment and momentum continue. Adjust strategy as necessary Provide end-to-end project management function for all CISO‑led projects Manage all CISO programs, including but not limited to: Information Security Program & Training & Culture Program Risk & Compliance Establish and enhance a TISR framework that consists of the appropriate components to effectively manage TISR Conduct risk assessments of TISR for Projects, Third‑Party, New Activities and Applications Develop and execute an TISR annual work plan of risk identification, assessment, and control evaluation and testing activities Review and contribute to the development and maintenance of the taxonomy for Risk, Process and Controls for TISR domains. Catalog and oversee remediation of TISR issues including those arising from Audit and Regulatory exams, ITRM deep dives, root‑cause analyses and control testing Prepare and submit Audit Requests for evidence Anticipate audit requests and prepare comprehensive approach to CISO policy and standards and associated implementation Prepare response evidence for IT/IS related regulatory exams Recommend changes to policy, process or procedures to align with OCC and other federal guidelines and regulations Evaluate and provide evidence of compliance for BOCNY Branch Liaison with LCD/RAO/IAD to ensure collaboration and partnership so that CISO can meet regulatory IT/IS requirements Metrics & Reporting Manage all metrics and reporting for CISO Qualifications Bachelor’s degree in Business, Computer Science, Management Information Systems, Engineering, Mathematics, or related field is required Minimum 5 years of work experience in Financial services Risk Management, Audit, IT/IS Operations, or other relevant functions Minimum 3 years of experience in developing and executing IT/IS Risk programs, projects, and policies Minimum 1 year of experience working with US Banking Regulations, financial industry standards, and industry standard IT/IS Risk Frameworks Strong program, frameworks, project management development, implementation, and maintenance skills Sound and practical IT/IS risk management and program knowledge Familiarity with IT/IS Risk Management regulations, standards, and frameworks including NIST, ISO27002, FFIEC Guidelines, etc. CISSP/CRISC/ or IT related certifications preferred Pay Range Actual salary is commensurate with candidate’s relevant years of experience, skillset, education and other qualifications. USD $65,000.00 - USD $150,000.00 /Yr. Seniority level Executive Employment type Full-time Job function Information Technology Banking #J-18808-Ljbffr
-
Chief Information Security Officer
3 weeks ago
New York, United States Paul Murphy Associates Full timeRole: Chief Information Security Officer Reports to: President Location: Chicago or NYC preferred (Hybrid – 3 days per week on-site) The Chief Information Security Officer is a critical leadership position responsible for establishing, managing, and evolving the enterprise-wide information security strategy and program. The Company’s security strategy...
-
Chief Information Security Officer
2 days ago
New York, United States Paul Murphy Associates Full timeTitle: Chief Information Security Officer Reports to: President Location: Chicago or New York The Chief Information Security Officer (CISO) is a critical leadership position responsible for establishing, managing, and evolving the enterprise-wide information security strategy and program. The Company’s security strategy will initially focus on ensuring...
-
Chief Information Security Officer
1 week ago
New York, United States Storm2 Full timeChief Information Security Officer (CISO) 📍 Location: Remote or Hybrid in NYC 💰 Base Salary: Up to $325,000 + Bonus + Equity 🏢 Our Client: A Blockchain & Digital Asset Infrastructure CompanyAbout Our ClientOur client is a fast-growing organization building infrastructure, software, and services that support the next generation of blockchain and...
-
Chief Information Security Officer
1 week ago
New York, United States Storm2 Full timeChief Information Security Officer (CISO) 📍 Location: Remote or Hybrid in NYC 💰 Base Salary: Up to $325,000 + Bonus + Equity 🏢 Our Client: A Blockchain & Digital Asset Infrastructure CompanyAbout Our ClientOur client is a fast-growing organization building infrastructure, software, and services that support the next generation of blockchain and...
-
Chief Information Security Officer
7 days ago
New York, United States Storm2 Full timeChief Information Security Officer (CISO) Location: Remote or Hybrid in NYC Base Salary: Up to $325,000 + Bonus + Equity Our Client: A Blockchain & Digital Asset Infrastructure CompanyAbout Our ClientOur client is a fast-growing organization building infrastructure, software, and services that support the next generation of blockchain and digital asset...
-
Chief Information Security Officer
2 weeks ago
New York, United States Storm2 Full timeThis range is provided by Storm2. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range $280,000.00/yr - $325,000.00/yr Chief Information Security Officer (CISO) 📍 Location: Remote or Hybrid in NYC 💰 Base Salary: Up to $325,000 + Bonus + Equity About Our Client Our client is a...
-
Chief Information Security Officer
2 weeks ago
New York, United States Aaaipress Full timeOrganization Overview Information Technology (IT) aims to provide information resources and services to accelerate and support scientific research and administrative operations at The Rockefeller University. Our department is responsible for the university's software environment, decision support, data analytics, cyberinfrastructure (including cloud...
-
Chief Information Security Officer
1 week ago
New York, NY, United States Storm2 Full timeChief Information Security Officer (CISO) Location: Remote or Hybrid in NYC Base Salary: Up to $325,000 + Bonus + Equity Our Client: A Blockchain & Digital Asset Infrastructure Company About Our Client Our client is a fast-growing organization building infrastructure, software, and services that support the next generation of blockchain and digital asset...
-
Chief Information Officer
3 weeks ago
New York, United States Office of the Special Narcotics Prosecutor for the City of New York Full timeAbout The Office The Office of the Special Narcotics Prosecutor (SNP) for the City of New York is a multi-jurisdictional law enforcement agency dedicated to combatting complex narcotics and related offenses. Working in coordination with local, state, and federal partners, SNP plays a critical role in ensuring public safety through strategic investigations,...
-
Chief Information Security Officer
3 weeks ago
New York, United States Rockefeller University Full timeOrganization Overview Information Technology (IT) aims to provide information resources and services to accelerate and support scientific research and administrative operations at The Rockefeller University. Our department is responsible for the university's software environment, decision support, data analytics, cyberinfrastructure (including cloud...