Chief Information Security Officer (CISO) — Insurance & Investments

thehivecareers.co

Charlotte Amalie (United States Virgin Islands)

On-site

USD 180,000 - 290,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

thehivecareers.co in the United States seeks a Chief Information Security Officer (CISO) to lead enterprise cybersecurity, information security governance, cyber risk management, and security architecture across cloud, on-premises, and digital platforms.

The role requires steering incident response, regulatory compliance, IAM, third-party risk, and business continuity, reporting to the CEO and board with a vision for cyber resilience.

Qualifications

  • 15+ years of IT, cybersecurity, information security, technology risk, or related experience.
  • 7+ years in senior cybersecurity/security leadership.
  • Experience presenting cyber risk to Board/C-suite stakeholders.

Responsibilities

  • Develop and execute enterprise cybersecurity and information security strategy.
  • Establish information security policies, standards, controls, and governance frameworks.
  • Lead enterprise-wide cybersecurity risk management.
  • Protect sensitive customer, financial, investment, policyholder, employee, and corporate data.
  • Oversee SOC/SIEM, threat detection & response, incident response, vulnerability management, and IAM.

Skills

Cybersecurity strategy
Governance & policy
Cyber risk management
Security architecture
SOC/SIEM
Incident response
Threat intelligence
Vulnerability management
IAM/PAM
Cloud security
Data security
Third-party risk
Leadership & crisis management

Education

Bachelor's degree in a relevant field
Master's degree
Certifications such as CISSP, CISM, CRISC, CISA, CCSP

Job description

Job Summary

The Chief Information Security Officer (CISO) is the executive responsible for protecting the organization's information, technology infrastructure, applications, data, and digital services from cyber threats and security risks.

Within Insurance & Investments, the CISO leads enterprise cybersecurity, information security governance, cyber risk management, security architecture, incident response, regulatory compliance, identity and access management, third-party security, and business continuity/cyber resilience.

Key Responsibilities
  • Develop and execute the enterprise cybersecurity and information security strategy.
  • Establish information security policies, standards, controls, and governance frameworks.
  • Lead enterprise-wide cybersecurity risk management.
  • Protect sensitive customer, financial, investment, policyholder, employee, and corporate data.
Oversee:
  • Security Operations (SOC)
  • Threat Detection & Response
  • Incident Response
  • Security Architecture
  • Vulnerability Management
  • Penetration Testing
  • Identity & Access Management
  • Endpoint Security
  • Network Security
  • Cloud Security
  • Application Security
  • Data Security
  • Establish and manage cyber incident response and crisis-management processes.
  • Lead security monitoring, threat intelligence, vulnerability assessment, and security testing.
  • Develop cybersecurity controls across cloud, on-premise, applications, APIs, and digital platforms.
  • Implement and maintain Identity & Access Management (IAM), privileged access, MFA, and least-privilege controls.
  • Oversee third-party/vendor cybersecurity risk and technology due diligence.
  • Ensure security requirements are embedded into digital transformation and technology projects.
  • Lead security awareness, phishing prevention, and employee cybersecurity training.
  • Ensure compliance with applicable financial-services, privacy, cybersecurity, and regulatory requirements.
  • Manage security audits, risk assessments, control testing, and remediation programs.
  • Develop and test Business Continuity, Disaster Recovery, and Cyber Resilience plans.
  • Establish cybersecurity KPIs, KRIs, dashboards, and executive reporting.
  • Manage cybersecurity budgets, vendors, managed security providers, and strategic technology partners.
  • Lead and develop information-security and cybersecurity teams.
  • Advise the CEO, Board, Risk Committee, Audit Committee, and senior leadership on cyber risk.
  • Ensure cybersecurity risks are integrated into the organization's overall enterprise risk-management framework.
Insurance & Investments Security Focus
  • Insurance
  • Policyholder/customer data
  • Claims systems
  • Underwriting platforms
  • Actuarial systems
  • Payment systems
  • Customer portals
  • Insurance APIs
  • Fraud and identity data
  • Investments / Asset Management
  • Portfolio and investment systems
  • Trading platforms
  • Market and financial data
  • Investment research
  • Client/investor information
  • Custody and transaction systems
  • Wealth-management platforms
  • Third-party investment technology
Ideal Candidate Profile
  • 15+ years of IT, cybersecurity, information security, technology risk, or related experience.
  • 7+ years in senior cybersecurity/security leadership.
Previous experience as:
  • CISO
  • Group CISO
  • Chief Information Security Officer
  • Chief Cybersecurity Officer
  • Head of Information Security
  • Head of Cybersecurity
  • Director of Information Security
  • Director of Cybersecurity
  • VP Information Security
  • VP Cybersecurity

Strong background in Insurance, Banking, Investment Management, Asset Management, Wealth Management, or Financial Services.

Strong expertise in:
  • Cybersecurity strategy
  • Information security governance
  • Cyber risk management
  • Security architecture
  • SOC/SIEM
  • Incident response
  • Threat intelligence
  • Vulnerability management
  • IAM/PAM
  • Cloud security
  • Application security
  • Network security
  • Data security
  • Third-party risk
  • Business continuity/cyber resilience

Experience with recognized security frameworks and standards such as NIST, ISO 27001, CIS Controls, COBIT, or equivalent.

Strong understanding of financial-services cybersecurity and regulatory requirements.

Demonstrated experience presenting cyber risk to Board/C-suite stakeholders.

Strong leadership, crisis management, risk communication, and stakeholder-management skills.

Relevant bachelor's degree; Master's degree and certifications such as CISSP, CISM, CRISC, CISA, CCSP or equivalent are advantageous.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Information Security Officer — Insurance & Investments
Chief Information Security Officer — Insurance & Investments

thehivecareers.co • San Juan (PR)

On-site
USD 180,000 - 260,000
Health insurance
Service award program
401(k) plan
Chief Information Security Officer (CISO) — Insurance & Investments
Chief Information Security Officer (CISO) — Insurance & Investments

thehivecareers.co • San Juan (PR)

On-site
USD 180,000 - 290,000
Head of Information Security — Insurance & Investments
Head of Information Security — Insurance & Investments

thehivecareers.co • Charlotte Amalie

On-site
USD 180,000 - 280,000
Head of Information Security — Insurance & Investments
Head of Information Security — Insurance & Investments

thehivecareers.co • San Juan (PR)

On-site
USD 180,000 - 260,000
Chief Information Security Officer
Chief Information Security Officer

The Security Executive Council • Chicago (IL)

On-site
USD 150,000 - 250,000
Base salary
Incentive bonus opportunities
Medical, dental, vision options
+1
Chief Information Security Officer CISO
Chief Information Security Officer CISO

Ryde Technologies, LLC • Phoenix (AZ)

On-site
USD 180,000 - 260,000
Chief Information Security Officer
Chief Information Security Officer

The Security Executive Council • Jacksonville (FL)

On-site
USD 180,000 - 280,000
Medical, dental & vision insurance
401(k) with company match
Employer paid life insurance and AD&D
+7
Information Security Risk Manager
Information Security Risk Manager

Bloomberg • New York (NY)

On-site
USD 120,000 - 180,000
Director Chief Information Security Officer - IT Infrastructure and Operations
Director Chief Information Security Officer - IT Infrastructure and Operations

St. Peter's Health • Montana

On-site
USD 140,000 - 180,000
Director Chief Information Security Officer
Director Chief Information Security Officer

The Security Executive Council • Montana

On-site
USD 130,000 - 180,000