Enable job alerts via email!

Cyber security - Business Information Security Officer

Elsevier

London

On-site

GBP 50,000 - 90,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking organization as a Business Information Security Officer, where you will play a crucial role in bridging the gap between cybersecurity and business units. This position emphasizes collaboration, communication, and security alignment across projects and infrastructure. You'll be instrumental in implementing security solutions and fostering relationships with business leaders, ensuring that cybersecurity risks are managed effectively. If you're passionate about enhancing security practices and thrive in dynamic environments, this role offers a unique opportunity to make a significant impact in an innovative company dedicated to advancing healthcare and science.

Qualifications

  • Experience in cybersecurity and risk management is essential.
  • Ability to develop and implement security programs effectively.

Responsibilities

  • Act as a liaison between business units and the security program.
  • Lead the implementation of security solutions and tools.

Skills

Collaboration with technical functions
Cloud and network infrastructure security
Security controls for end-user devices
Microsoft 365 security implementations
DevOps principles and practices
Communication skills
Organizational navigation
Compliance and governance initiatives
Project planning and time management
Problem-solving and data analytics

Job description

About the Company:

Elsevier is a global information analytics business that helps institutions and professionals advance healthcare, open science, and improve performance for the benefit of humanity. They provide digital solutions and tools in the areas of strategic research management, R&D performance, clinical decision support, and professional education.

About the Role:

The Business Information Security Officer (BISO) will work closely with senior management, third parties, project managers, and business subject matter experts (SMEs).

The BISO is a liaison between cybersecurity and their aligned business unit. The BISO ensures the enterprise's assets are secure, its business requirements are received and understood by the cybersecurity division, and that the business understands cybersecurity risks.

Key Responsibilities:

  • Provide a critical liaison role between the business unit and the security program, enhancing collaboration, communication, and alignment of goals.
  • Serve as a trusted advisor with business unit leadership, fostering strong relationships with squads and BU teams.
  • Build relevant relationships with business units and tech squads to deliver security-by-design controls in projects, architecture, infrastructure, and applications.
  • Support the CISO, Security management team, and Executive Leadership, even during challenging times.
  • Be actively engaged and informed in projects across the business unit, ensuring visibility and security alignment.
  • Act as an ambassador for security-wide workstreams, aligning business units with the enterprise-wide security program.
  • Lead the implementation of security solutions, tools, and monitoring to mitigate cybersecurity risks.
  • Work closely with security leadership to instill cybersecurity policies and practices throughout business units.
  • Define the information and infrastructure security needs of the BU's using a risk-based approach.
  • Develop and report BU metric scorecards to reflect the level of adoption and compliance to security policies/standards.

Skills Required:

  • Ability to collaborate with multiple technical functions in security, infrastructure, technical operations, training, software engineering, and customer support.
  • Strong awareness of cloud and network infrastructure security best practices.
  • Comprehensive understanding of security controls for end-user devices and Microsoft 365 security implementations.
  • Knowledge of key DevOps principles and practices.
  • Strong communication and customer service skills.
  • Organizationally savvy and able to navigate complex organizations.
  • Strong understanding of compliance and governance initiatives.
  • Strong project planning, time management, and change management skills.
  • Strong problem-solving experience and data analytics skills.
  • Ability to develop and implement security programs.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.