Information Security Officer
Location: Santa Rosa
Posted on: February 14, 2020
Job DescriptionOur client is looking to hire ASAP an Information
Security Officer (ISO). This is a management position responsible
for overseeing the Banks third party IT Service Provider (FIS
Pronet) and monitoring the risks and controls related to the Banks
IT environment. Working with FIS Pronet, the ISO safeguards
information by ensuring that security risks are identified,
assessed and accurately reported. The ISO is responsible for
ensuring IT Service Provider is properly managing the Bank's local,
wide, Internet, and Intranet networks, telephone and Voice Over IP
(VoIP) systems, and all related software programs. The ISO is
responsible for developing information technology initiatives to
accommodate current and future organizational needs.
--- Actively manages third party IT Service Provider relationship
through consistent communication, follow up and escalation,
including ensuring adherence to Service Level Agreements.
--- Works closely with IT Service Provider to actively ensure
appropriate cyber security, administrative, physical and technical
safeguards are in place to protect the Banks information assets
from internal and external threats.
--- Develop and maintain an information security control framework
in accordance with applicable security regulations, guidance,
policies and standards (e.g., GLBA, FFIEC IT Examination Handbook,
FDICIA, NIST, and other industry-relevant security standards).
--- Consults with senior management and IT Committee to analyze
computer system needs for management information and functional
operations, to determine scope and priorities of projects, and to
discuss system capacity and equipment acquisitions.
--- Recommends and develops plans for systems development and
operations, hardware and software purchases, budget, and
--- Regularly reviews the Banks service and security metrics and
takes action as needed.
--- In partnership with IT Service Provider, manages projects
pertaining to the implementation, installation, and operation of
information and functional systems for the organization.
--- Develops, implements and monitors management information
systems policies and controls to ensure data accuracy, security,
and legal and regulatory compliance.
--- Negotiates, contracts, and works with consultants, technical
personnel, and vendors for services and products.
--- Facilitates IT support to end users in the selection,
procurement, usage, and maintenance of software programs and
--- Ensures proper functioning of all internal systems and
hardware, including end user training and support.
--- Consults with Auditors and Regulators in relation to IT Audits
and ensures completion of all IT related audit remediation.
--- Develops, maintains, and tests disaster recovery plans for all
--- Acts as committed owner of the security incident and
vulnerability management processes.
--- Reports the Banks IT security and service metrics to Banks IT
Committee on a quarterly basis or more frequently as necessary.
--- Responsible for maintenance of and training employees on
Information Security Policy.
--- Maintains GLBA Risk Assessment and Cyber Security Risk
Assessment in conjunction with IT Service Provider.
--- Assures compliance with all Bank policies and procedures, as
well as, all applicable state and federal banking regulations.
--- Other duties as assigned.
--- Responsible for supervision of the Information Systems
Technician and management of IT Service Provider, FIS Pronet.
--- A minimum of 8 years of information security and risk
--- Bachelors Degree or work experience equivalent with sufficient
background in information security and business management
--- Must possess a relevant professional certification (e.g. CISSP,
CISSO, CISA or CISM).
--- Experience managing projects or programs to achieve information
--- Ability to interact with a wide range of i
Keywords: AppleOne, Santa Rosa , Information Security Officer, Accounting, Auditing , Santa Rosa, California
Didn't find what you're looking for? Search again!