Sr. Business Information Security Officer (sr. Biso) – Consumer Technology

Bank of America Bank of America · Banking · Washington, WA +6

Senior Business Information Security Officer (Sr. BISO) for Consumer Technology at Bank of America. This role involves understanding business operations to provide specialized information security risk-based discussions, guidance on information security topics, and contributing to security initiatives. Responsibilities include serving as a subject matter expert, advising management on risk, monitoring trends, managing quality control, and ensuring compliance with policies and laws. Requires 10+ years in Information Security & Technology and 5+ years in risk management, with expertise in application security, vulnerability testing, and evaluating cyber security controls for various platforms including cloud and data stores. Experience with Windows, Midrange, and Mainframe platforms is also needed.

What you'd actually do

  1. Contribute to the ongoing information security initiatives and improvements development, implementation and maintenance of information security for FLU/Ops
  2. Serves as an Information Security subject matter expert and participates in the development, implementation and maintenance of information security for FLU/Ops
  3. Provides guidance and advocacy regarding the prioritization of investments that impact information security
  4. Advises management on risk issues related to information security and recommends actions in support of the bank's wider risk management and compliance programs
  5. Monitors information security trends internal and external to the bank and keeps leadership informed

Skills

Required

  • Information Security
  • Risk Management
  • Application Security
  • Vulnerability Testing
  • Cyber Security Controls
  • Cloud Security
  • PaaS Security
  • No SQL Security
  • Big Data Security
  • Windows Security
  • Mainframe Security
  • Access Controls
  • Executive Presentation
  • Communication Skills
  • Influencing Skills
  • Problem Resolution Skills
  • Leadership Skills

Nice to have

  • Bachelor’s degree in Computer Science
  • Master’s degree in Computer Science
  • Bachelor’s degree in Information Technology
  • Master’s degree in Information Technology

What the JD emphasized

  • Information Security & Technology professional with 10+ years’ experience
  • 5+ years of risk management experience
  • Subject matter expertise in application security, vulnerability testing and development of risk appetite
  • Experience evaluating cyber security controls and providing guidance for platform or distributed computing platforms (Cloud, PaaS)
  • Experience with information security for No SQL, Big Data , and unstructured data stores (Cassandra, Hadoop, and /or Teradata)
  • Knowledge in Windows, Midrange and Mainframe Platforms with emphasis on security and access controls