Information Security Officer

German American

Owensboro (KY)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, vision insurance
25 days paid time off
Education Assistance Program
401(k) match

Job summary

German American in Owensboro is seeking an Information Security Officer responsible for overseeing information security and managing security teams. The ISO will develop security programs, lead disaster recovery initiatives, and ensure compliance with regulations. Ideal candidates will have significant experience in security and leadership roles.

The position includes comprehensive benefits like medical coverage, paid time off, and wellness programs, aiming to foster a secure and positive work environment.

Qualifications

  • 5-10 years of information and physical security experience.
  • 2-3 years of leadership/managerial experience.
  • Knowledge of regulations such as PCI, GLBA, and NIST.

Responsibilities

  • Develop and maintain the company's information security program.
  • Maintain the bank's business continuity and disaster recovery plan.
  • Lead the Information Security and Physical Security teams.

Skills

Information security experience
Leadership experience
Communication skills
Attention to detail

Education

Bachelor's Degree in Information/Cybersecurity

Job description

Job Title: Information Security Officer
Summary

The Information Security Officer (ISO) at German American Bank is responsible for establishing and coordinating information security efforts, privacy efforts and business resumption planning across the company. The role is positioned as a key partner to the Technology Services department – ensuring security and IT activities are completed in a coordinated, prioritized and timely manner. The ISO carries direct leadership responsibility for both the information security and physical security team(s). This role is responsible for ensuring the bank's information security strategy is optimal and includes the appropriate controls for mitigating identified threats and risks. This includes research, development, planning, implementation, communication and enforcement of IT security design, policies, procedures, solutions and standards.

Duties and Responsibilities
  • Information Security Program: Develop and maintain the company's information security program, ensuring compliance with all regulatory guidance and information security best practices. This includes policies and procedures aligned with the bank's information security program as well as ownership of the information security risk assessment for the bank.
  • Business Continuity & Disaster Recovery: Maintain, coordinate, and support the bank's enterprise-wide disaster recovery and business continuity plan, including periodic testing. Key contributor and leader in any Incident Response Team issue, including documentation of any information security related incident.
  • Enterprise Risk Management reporting: Establish and monitor KRIs related to information security to align with the bank's ERM framework and risk appetite. Participate and contribute reports, projects and findings at management's Tech Risk Committee quarterly, and present the annual Information Security Program at Board Risk Committee annually.
  • Privacy Program: Maintain compliance with applicable privacy laws including GLBA, HIPAA, PCI, etc.
  • Threat Monitoring: Proactively monitor, evaluate, and implement best practices related to enterprise information security. Provide internal guidance on emerging threats.
  • Daily Security Operations: Ensure completion of daily reviews of security logs and reports; ensure appropriate follow-up action is taken.
  • Third-Party Risk: Evaluate effectiveness of information security programs of third-party software, hardware, and service providers.
  • User Access Management: Oversee user access provisioning for all company systems.
  • Team Leadership: Lead the Information Security and Physical Security Team(s), including recruiting, hiring, training, and performance management.
  • IT Partnership: Work closely and collaborate with the Technology Services department to protect information assets through appropriate tools and coordinate project timelines, resources and outcomes for any new information security initiatives with Technology Services.
  • Audit & Examination Response: Respond to relevant audit and examination requests, manage resolutions of any findings.
  • Training & Awareness: Oversee the bank's information security training and awareness efforts, ensuring employees receive timely, role-based education on security practices and emerging threats.
Requirements
  • To be successful as the Information Security Officer, you'll need:
  • 5-10 years information and physical security experience.
  • 2-3 years leadership/managerial experience.
  • Bachelor's Degree in Information/Cybersecurity, Computer Information Systems, Computer Science, Information Technology Management, Network Management Systems, or related work experience.
  • Knowledge and experience with regulatory bodies including FFIEC, FDIC and banking regulations such as, but not limited to PCI, GLBA, NIST and Cybersecurity.
  • Certifications in or willing to obtain certification in CISSP, CISM, or CISA or equivalent recognized industry certifications.
  • Ability to communicate effectively (written and verbally), maintain confidentiality, work with speed and accuracy, grasp technical information quickly, and work independently and as a team member.
  • Attention to detail and ability to work well in teams and individually.
Benefits
  • Medical, dental, vision, STD, LTD, Life insurance, etc.
  • 25 days paid time off, 11 paid holidays and bereavement leave
  • Education Assistance Program
  • Paid Parental Bonding Leave
  • Wellness benefits
  • Life event coverage
  • Service awards
  • Financial benefits including 401(k) match, stock purchase plan, short-term incentives and long-term equity earning opportunities
  • Logo wear discounts
  • Free checking account, checks and discounted bank services
Locations
  • Operations Center, 1311 West 12th Ave, Jasper, IN 47546
  • Owensboro Downtown, 313 Frederica St, Owensboro, KY 42301
  • Evansville Vogel Rd, 4424 Vogel Rd, Evansville, IN 47715
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Officer
Information Security Officer

German American • Jasper (IN)

On-site
USD 90,000 - 115,000
Medical insurance
25 days paid time off
Education Assistance Program
+2
Information Security Officer
Information Security Officer

German American • Evansville (IN)

On-site
USD 90,000 - 130,000
Medical, dental, vision insurance
25 days paid time off
Education Assistance Program
Information Security Officer
Information Security Officer

Fortis Private Bank • Denver (CO)

On-site
USD 190,000 - 200,000
Information Security Officer
Information Security Officer

Fortis Bank • Denver (CO)

On-site
USD 180,000 - 240,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Monroe (LA)

On-site
USD 180,000 - 260,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Fort Walton Beach (FL)

On-site
USD 180,000 - 300,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Longview (TX)

On-site
USD 180,000 - 240,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Houston (TX)

On-site
USD 180,000 - 260,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Fort Worth (TX)

On-site
USD 180,000 - 300,000
Chief Information Security Officer
Chief Information Security Officer

Origin Bank • Jackson (MS)

On-site
USD 180,000 - 260,000