- Job Title: Chief Information Security Officer
- Location: US-NJ-Princeton
- Travel Required: Minimal
Overview:
The CISO is responsible for maintaining and maturing the enterprise-wide information security management program to ensure that information assets, intellectual property, and critical infrastructure are adequately protected.
Responsibilities:
- Oversee the development, implementation, and advancement of the company-wide Information Security program.
- Facilitate appropriate resource allocation and increase the efficacy of the program.
- Security organization development.
- Assure alignment with Information Security Standards, such as ISO27001/27002, COBIT.
- Develop, implement, and publish global information security standards, policies, and guidelines.
- Develop business-relevant metrics to measure the efficiency and effectiveness of the client's information security management program.
- Mentoring and management of internal security personnel.
- Security incident response management.
- Creation and implementation of Information Security Awareness programs.
Desired Experience:
- Must have a solid understanding of information security technologies, information security methods, and risk management practices typically gained in seven (7) to ten (10) years of progressive information security management and/or risk management experience.
- Expert knowledge of security and control frameworks, such as ISO 27001, ISO 27002, COBIT, ITIL.
- Ability to relate business requirements and risk to technology implementations for security-related issues.
- Knowledge of best-practice methodologies, tools, and technologies for policy development and implementation.
- Knowledge of role-based authorization and authentication technologies.
- Knowledge of defending against security attacks.
- Excellent communication and presentation skills.
- Demonstrated ability to serve as an effective member of the senior management team and to communicate security-related concepts to a broad range of technical and non-technical management and staff.
- High level of personal integrity, and the ability to professionally handle confidential matters and display the appropriate level of judgment and maturity.
Desired Certifications:
Information Security certifications such as the Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) are required, with CISSP being highly preferred.
#J-18808-Ljbffr