Talent.com
AVP Information Security Officer (ISO)
AVP Information Security Officer (ISO)Freedom Credit Union • Springfield, MA, United States
AVP Information Security Officer (ISO)

AVP Information Security Officer (ISO)

Freedom Credit Union • Springfield, MA, United States
4 days ago
Job type
  • Full-time
Job description

Job Type

Full-time

Description

Primary Summary :

To establish, implement, and maintain the Credit Union's information security program, including developing security policies and procedures, managing security controls, ensuring regulatory compliance and leading incident response efforts institution wide. The ISO collaborates with leadership across departments to promote a culture of security awareness and ensure that risks are properly managed throughout all project and system life cycles. The ISO is responsible for managing the vendor management program for the credit union.

Essential Functions / Position Responsibilities :

  • Responsible for the design, performance, planning, budgeting, securing, monitoring, and integration of Cybersecurity initiatives throughout the credit union. Develop, implement and maintain the credit union's information security strategy, standards and policies.
  • Consult with all levels of management to determine information security requirements to establish boundaries and priorities for new projects and to discuss system capacity and equipment acquisitions.
  • Establish, adhere to and enforce system security policy and standards; develop, maintain and update appropriate policies and procedures. Maintain an awareness of all laws, regulations, developments and trends that may affect Information Systems, vendor management and information security.
  • Conduct regular risk assessments; vulnerability assessments and scans; and penetration tests on technology infrastructure, applications and networks to identify and address potential risks. Develop risk mitigation plans to safeguard against cyber threats and vulnerabilities.
  • Conducts annual and periodic information security training for staff.
  • Conduct Incident Response table-top exercises to meet Incident Response Plan policy requirements.
  • In coordination with the Information Technology Officer (ITO), conduct an independent 3rd party IT / Information Security Audit annually - to include External and Internal PEN testing.
  • Manage the Vendor management program and maintain ongoing vendor due diligence, and the Watch List management matrix and provide monthly Vendor Management Report to the Board and Senior Management.
  • Co-chair Disaster Recovery and Business Continuity planning. Periodically test the emergency restoration plan for the company and other applications as deemed appropriate.
  • Develops, maintain all information security policies and procedures.
  • Maintain the Business Network of Emergency Resources (BNET) Corporate Emergency Access System (CEAS) for badge holders. Maintain subscriptions and memberships with FS-ISAC, US-CERT, and FBI InfraGard.
  • Provide monthly Information Security report, annual NCUA 748 Information Security Program status report to the Board and Senior Management. Responsible for tracking and reporting information security updates, vulnerabilities remediation, information and physical security incidents, CATO incidents, Red-Flag Identity Theft incidents, GLBA unauthorized disclosure incidents and Information Security threats.
  • Must comply with applicable laws and regulations, including but not limited to, the Bank Secrecy Act, the Patriot Act, the Gramm-Leach-Bliley Act (GLBA), and the Office of Foreign Assets Control.

Requirements

Experience

A minimum of ten years of experience is required, including time spent in preparatory positions.

Education / Certifications / Licenses

Bachelor's degree in Information Technology, Computer Science or related field.

Relevant certifications (e.g. CISSP, CISM, CISA) strongly preferred.

CRVPM ( Certified Regulatory Vendor Program Manager) strongly preferred.

Project management experience and certifications strongly preferred.

Interpersonal Skills

This position requires a significant level of expertise, credibility, influence and trust. Proficiency in developing and delivering material presentations on complex topics can be important to fulfilling the responsibilities of the position.

Other Skills

Will be required to work outside of scheduled hours to respond to pertinent position issues.

Salary Description

Market Value $142298

Create a job alert for this search

Information Security Officer • Springfield, MA, United States

Related jobs
vCISO

vCISO

Anatomy IT • Hartford, CT, United States
Full-time
The vCISO acts as a senior cybersecurity advisor for assigned clients, guiding them in establishing and maintaining a robust information security posture. This role provides strategic leadership in ...Show more
Last updated: 6 days ago • Promoted
Director, Cyber Security

Director, Cyber Security

KPMG • Hartford, CT, United States
Full-time
KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show more
Last updated: 16 days ago • Promoted
Sr IT Security Advisor

Sr IT Security Advisor

Sedgwick • Hartford, CT, United States
Full-time
By joining Sedgwick, you'll be part of something truly meaningful.It's what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your c...Show more
Last updated: 30+ days ago • Promoted
Director, Technology Enablement & Readiness

Director, Technology Enablement & Readiness

University of Massachusetts Amherst Foundation • Hadley, MA, US
Full-time +1
About University of Massachusetts Amherst Foundation.Established in 2003, the University of Massachusetts Amherst Foundation (UMAF), a private 501(c)(3) nonprofit organization, exists to raise phil...Show more
Last updated: 11 days ago • Promoted
Security Engineer II

Security Engineer II

Trustmark • Hartford, CT, United States
Full-time
Trustmark's mission is to improve wellbeing - for everyone.It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust.Tr...Show more
Last updated: 30+ days ago • Promoted
Associate Analyst, IT Security & Governance, GRC

Associate Analyst, IT Security & Governance, GRC

Allied World Assurance Company Holdings, Ltd • Farmington, CT, United States
Full-time
Associate Analyst, IT Security & Governance, GRC.Reports to : AVP, Enterprise and Cyber Governance Lead.Partnership : Collaborates closely with Cyber, Infrastructure and Application Management teams....Show more
Last updated: 3 days ago • Promoted
Staff Security Engineer -Sailpoint Identity Security Cloud

Staff Security Engineer -Sailpoint Identity Security Cloud

CVS Health • Hartford, CT, United States
Full-time
At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.As the nation’s leading h...Show more
Last updated: 16 days ago • Promoted
Museum Security Officer (Casual Position)

Museum Security Officer (Casual Position)

InsideHigherEd • Amherst, Massachusetts, United States
Part-time
Museum Security Officer (Casual Position).Amherst has taken a leadership role among highly selective liberal arts colleges and universities in successfully diversifying the racial, socio-economic, ...Show more
Last updated: 30+ days ago • Promoted
Clerk IV (Office Manager - CNEI)

Clerk IV (Office Manager - CNEI)

UMass Amherst • Amherst, MA, United States
Full-time +1
The flagship of the Commonwealth, the University of Massachusetts Amherst is a nationally ranked public land-grant research university that seeks to expand educational access, fuel innovation and c...Show more
Last updated: 30+ days ago • Promoted
Lead Adversarial Security Engineer

Lead Adversarial Security Engineer

Trellix • Hartford, CT, United States
Full-time
Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
Last updated: 5 days ago • Promoted
Sr II Security Analyst Vulnerabilities

Sr II Security Analyst Vulnerabilities

NYU Langone Health • Farmington, CT, United States
Full-time
COME LEARN MORE ABOUT RN OPPORTUNITIES AT OUR FOOD TRUCK EVENT.Hiring Full Time Home Health Registered Nurses.We are offering $5,000 Sign-On Bonus for Full Time RNs. AS THE LARGEST HEALTHCARE EMPLOY...Show more
Last updated: 30+ days ago • Promoted
Associate Analyst, IT Security & Governance, GRC

Associate Analyst, IT Security & Governance, GRC

Allied World • Farmington, CT, United States
Full-time
Associate Analyst, IT Security & Governance, GRC .Reports to : AVP, Enterprise and Cyber Governance Lead .Partnership : Collaborates closely with Cyber, Infrastructure and Application Management team...Show more
Last updated: 2 days ago • Promoted
Security Architect - Secure Technology, Architecture and Safety

Security Architect - Secure Technology, Architecture and Safety

Oracle • Hartford, CT, United States
Full-time
You will design and govern security reference architectures, standards, and controls for cloud primitives (compute, network, storage), identity and access, data protection, container / Kubernetes pla...Show more
Last updated: 16 days ago • Promoted
Sr. Security Engineer

Sr. Security Engineer

Nutanix • Hartford, CT, United States
Full-time
Hungry, Humble, Honest, with Heart.Are you a proactive and strategic Security Engineer with a passion for identity and access management, data loss prevention, and a strong ability to lead collabor...Show more
Last updated: 16 days ago • Promoted
Product Cybersecurity Officer (Pco)

Product Cybersecurity Officer (Pco)

Raytheon Technologies • East Hartford, CT, United States
Full-time
PW100 : East Hartford 400 Main Street, East Hartford, CT, 06118 USA.Person, or Immigration Status Requirements : .The ability to obtain and maintain a U. Pratt & Whitney is working to once again transf...Show more
Last updated: 12 days ago • Promoted
Offensive Security Engineer, Assessments (Web3)

Offensive Security Engineer, Assessments (Web3)

Coinbase • Hartford, CT, United States
Full-time
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
Last updated: 16 days ago • Promoted
IT Senior Architect, Security (Hybrid)

IT Senior Architect, Security (Hybrid)

Eversource Energy • East Berlin, CT, United States
Full-time
Develops and implements security architecture that will meet business needs to ensure confidentiality, integrity and availability to Eversource systems. Security Architect's responsibilities include...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Manager - Diego Garcia

Cyber Security Manager - Diego Garcia

Amentum • Hartford, CT, United States
Full-time
Please note this position is based on Contract Award and is located on the island of Diego Garcia.Facility-Related Control System (FRCS) Cybersecurity Manager. The Contractor shall provide a FRCS Cy...Show more
Last updated: 16 days ago • Promoted