Leads the team in providing strategic security leadership and assurance to business and IT teams for major corporate initiatives and information security projects. Develops the strategy in how Western & Southern Financial Group (W&SFG) performs risk assessments, security assessments and policy reviews of WSFG systems and third-party vendors to identify areas of noncompliance with established information security standards and regulations. Manages the recommendations and coaches the team on mitigation strategies and countermeasures. Provides guidance to IT stakeholders in the evaluation, design or implementation of secure computing environments including vulnerability management. Works with Cybersecurity Risk Management team in driving improvements in the information security policy framework. Manages the development, review and monitoring of information security policies and procedures, and develops and communicates improvements. Identifies and defines overall security requirements for the proper operation and design of business and IT applications to ensure the protection of W&SFG systems and data. Leads the development of the organization's information security awareness program. Escalates when needed and updates Director on a regular basis.
Responsibilities:
What you will do;
| |
| |
| |
| |
| |
| |
| |
| |
| |
| |
|
|
|
|
Qualifications:
| In computer science, computer engineering, IT or a related technical field, or commensurate selection criteria experience. |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
- Certified Information Systems Security Professional (CISSP), any GIAC certification or ISACA certifications-preferred
Work Setting/Position Demands:
- Works in an office setting and remains in a stationary position for long periods of time while working at a desk, on a computer or with other standard office equipment, or while in meetings.
- Requires the ability to verbally communicate and exchange accurate information to customers and associates on a regular basis.
- Requires visual acuity to read and interpret a variety of correspondence, procedures, reports and forms via paper and electronic documents, visual inspection involving small defects; small parts, and/or operation of machinery (including inspection); using measurement devices continuously. Visual acuity is required to determine accuracy, neatness, and thoroughness of work assigned.
- Requires the ability to prepare written correspondence, reports and forms using prescribed formats and conforming to rules of punctuation, grammar, diction, and style on a regular basis.
- Requires the ability to apply principles of logical thinking to define problems, collect data, establish facts, and draw valid conclusions
- Performs substantial movement of wrists, hands, and fingers for continuous computer work.
- Extended hours required during peak workloads or special projects/events.
Travel Requirements:
- Occasional travel may be required.