Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

CHIEF Information Security Officer

$65k - $150k

Bocusa

Introduction Established in 1912, Bank of China is one of the largest banks in the world, with over $3 trillion in assets and a footprint that spans more than 60 countries and regions. Our long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business. Overview This incumbent will provide Strategy, Programs, Governance, Risk and Compliance functions as required to fulfill BOCNY information security program requirements. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments, Compliance, Data Privacy and Identity functions as detailed below. Responsibilities Strategy Coordinate Information Security strategy in alignment with the BOCNY branch strategy. Maintain strategic initiatives tracking and associated KRIs to track progress and execution of the objectives. Conduct quarterly strategy reviews with the CISO team to ensure alignment and momentum continue. Adjust strategy as necessary. Provide end-to-end project management function for all CISO led projects. Programs Manage all CISO programs, including but not limited to: Information Security Program, Data Privacy Program, and Training & Culture Program including Security Training, Phishing Campaigns, and Tabletop Exercises. Governance Establish and maintain Information Security policies and procedures. Ensure CISO roles and responsibilities are clearly delineated and documented to ensure efficiency, create synergies and ensure TISR is being properly managed across first and second lines. Periodically refresh and update TISR controls guidance in relevant policies and supporting procedures with detailed implementation guidance. Develop, monitor, and track CISO policy adherence measures and metrics. Provide all administrative functions for the Information Security Committee and all its sub-committees. Risk Establish and enhance a TISR framework that consists of the appropriate components to effectively manage TISR. Conduct risk assessments of TISR for Projects, Third-Party, New Activities and Applications. Develop and execute an TISR annual work plan of risk identification, assessment, and control evaluation and testing activities. Review and contribute to the development and maintenance of the taxonomy for Risk, Process and Controls for TISR domains. Catalog and oversee remediation of TISR issues include those arising from Audit and Regulatory exams, ITRM deep dives, root cause analyses and control testing. Track observed control gaps and root causes and annually refresh CISO policy and procedures to reflect new and enhanced controls. Compliance Prepare and submit Audit Requests for evidence. Anticipate audit requests and prepare comprehensive approach to for CISO policy and standards and associated implementation. Prepare response evidence for IT/IS related regulatory exams. Recommend changes to policy, process or procedures to align with OCC and other federal guidelines and regulations. Evaluate and provide evidence of compliance for BOCNY Branch. Liaison with LCD/RAO/IAD to ensure collaboration and partnership so that CISO can meet regulatory IT/IS requirements. Data Privacy Develop and implement strategies to ensure compliance with relevant privacy laws and regulations. Stay up-to-date with changes in data privacy legislation and industry best practices. Assist in the development and maintenance of privacy policies, standards and procedures. Provide oversight and monitoring of privacy risk assessments by the FLUs. Ensure all relevant processes reflect privacy requirements and comply with laws and regulations. Plan and implement privacy training programs and communications. Identify and assess privacy risks within the organization. Metrics & Reporting Manage all metrics and reporting for CISO, including: Operational, Executive & Board, Budget & Headcount, Dashboards. Identity & Access Management Establish and periodically update policies, procedures, and guidelines related to access recertification, incorporating industry best practices. Manage the end-to-end process of user access reviews, including planning, execution, tracking, and resolution of identified issues. Conduct periodic User Recertification & Access Reviews throughout all BOC applications to ensure consistency and accuracy. Collaborate with cross-functional teams, including IT, OSD, and business units, to align access governance with broader organizational goals. Conduct periodic assessments of user access governance processes, identifying opportunities for improvement and implementing necessary enhancements. Qualifications Bachelor’s Degree in Business, Risk, Data, Computer Science, Management Information Systems, Engineering, Mathematics, or related field Minimum 5 years of work experience in Risk Management, Audit, IT/IS Operations, or other relevant functions Minimum 3 years of experience in developing and executing IT/IS Risk programs, projects, and policies Minimum 1 year of experience working with US Banking Regulations, financial industry standards, and industry standard IT/IS Risk Frameworks Strong program, frameworks, project management development, implementation, and maintenance skills Strong writing skills, especially in the context of governing documents, such as policies and standards Strong verbal and interpersonal skills when working with a diverse group of stakeholders that can include senior management, business staff, and technical staff Creative problem-solving skills Strong organizational understanding and ability to navigate complex organizations Results oriented and metrics driven Understanding of financial services business and related processes and IT/IS risks and how to mitigate with well-designed, commercially sound controls Operational and IT/IS risk assessment and management skills in first, second, and/or third line capacity Sound and practical IT/IS risk management and program knowledge Financial / banking industry, business line, and product knowledge Familiarity with IT/IS Risk Management regulations, standards, and frameworks including NIST, ISO27002, FFIEC Guidelines, etc. Risk identification and assessments of different types that are commensurate with the size and complexity of the financial institution IT/IS risk management and audit principles and industry standard practices CISSP/CRISC/ or IT related certifications preferred Pay Range Actual salary is commensurate with candidate’s relevant years of experience, skillset, education and other qualifications. USD $65,000.00 - USD $150,000.00 /Yr. #J-18808-Ljbffr

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the CHIEF Information Security Officer in New York, NY vacancy
  • $300k - $350k

     ...decided to fix it. National security professionals, journalists, parents...  ...of their most personal information. The Team At Cape, we are the...  ...Mission) The CISO is our chief protector. Our infrastructure...  ...is based out of our NYC or DC office and reports to our founder and... 
    Suggested
    Odd job
    Full time
    Work at office
    Immediate start
    Relocation package

    Cape

    New York, NY
    4 days ago
  • $125k - $150k

    Job Description The Department of Records and Information Services is seeking to hire a Computer Systems Manager Non-Manager to serve as the Chief Information Security Officer (CISO). The Computer Systems Manager-Non-Manager will be responsible for compliance with the... 
    Suggested
    Permanent employment
    Full time
    Work at office
    Shift work
    Weekend work
    Afternoon shift

    City of New York

    New York, NY
    4 days ago
  •  ...reliable, backed by our Proof of Reserves. Across our multiple offices globally, we are united by our core principles: We Before Me, Do...  ...every OK-er. About the opportunity We're looking for a security leader for the Americas who's equally comfortable in front of a... 
    Suggested

    United States Digital Space LLC

    New York, NY
    3 hours ago
  • $350k - $400k

     ...service to seller and buyer clients. Role Executive Summary Compass International Holdings is seeking a seasoned Chief Information Security Officer to own and evolve the enterprise security program. This is an executive & highly technical role at the... 
    Suggested
    Flexible hours

    Socket.dev

    New York, NY
    1 day ago
  • $300k - $375k

     ...regulatory compliance in everything we do. Join us and help build the future of global investing! About the Role As Chief Information Security Officer, you will be responsible for leading and strengthening the company’s entire security function across four key domains... 
    Suggested
    Full time
    Work at office
    Worldwide

    Quiet Capital

    New York, NY
    4 days ago
  •  ...Responsibilities Establish and execute an enterprise information security strategy and operating model aligned with business objectives and risk appetite. Continuously assess and strengthen Genworth’s cyber and technology risk posture in support of enterprise resilience... 
    Contract work
    Temporary work

    Jobtailor

    New York, NY
    3 days ago
  • $350k - $400k

     ...Group Chief Information Security Officer The Chief Information Security Officer (CISO) will lead and oversee the Information Security program across the entire organization. The role will be responsible for developing, implementing, and maintaining a unified enterprise... 
    Contract work
    Local area
    Shift work

    Barnes & Noble Booksellers, Inc.

    New York, NY
    3 hours ago
  •  ...Who are we? Cohere is the leading security-first enterprise AI company. We build cutting...  ...in Toronto and San Francisco, with key offices in London, New York City, Montreal,...  ...us! The Opportunity Cohere seeks a Chief Information Security Officer who can help shape Cohere... 
    Full time
    Work at office
    Local area
    Remote work
    Home office

    Cohere

    New York, NY
    4 days ago
  •  ...CAIS is seeking a Chief Information Security Officer (CISO) who pairs deep technical expertise with strategic vision to lead the firm’s cybersecurity program and Operational Risk Management practices This role will drive security strategy—including AI security strategy... 
    Work at office
    Flexible hours

    CAIS

    New York, NY
    3 days ago
  • $350k - $400k

    Job Summary The Chief Information Security Officer (CISO) will lead and oversee the Information Security program across the entire organization. The role will be responsible for developing, implementing, and maintaining a unified enterprise security strategy that ensures... 
    Full time
    Contract work

    Barnes & Noble

    New York, NY
    4 days ago
  •  ...Chief Information Security Officer (CISO) US or Canada Location: Remote (U.S. or Canada) Type: US Applicants – Full‑Time; Canadian Applicants – Independent Contractor About Human Agency We’re scaling rapidly and have a growing pipeline of opportunities that demand exceptional... 
    Full time
    Contract work
    For contractors
    For subcontractor
    Work at office
    Remote work
    Day shift

    Human Agency

    New York, NY
    4 hours ago
  • $147.5k - $211k

     ...for vulnerability remediation performance across the enterprise. Success depends on strong partnership with platform, application, security, and risk teams, backed by senior leadership endorsement that gives the role authority to drive remediation actions, enforce SLA... 
    3 days per week

    New York Life

    New York, NY
    4 hours ago
  •  ...messaging across presentations, graphs, and narratives, and to build a roadmap for enterprise awareness. In this role you will lead cross‑functional collaboration, drive change communications for security initiatives, manage stakeholder feedback, and #J-18808-Ljbffr... 

    Pfizer

    New York, NY
    4 hours ago
  •  ...Chief Information Security Officer (CISO) About the Company Innovative online real estate platform Industry Real Estate Type Privately Held, VC-backed Founded 2012 Employees 1001-5000 Funding $200+ million Categories... 
    Local area

    Confidential

    New York, NY
    4 hours ago
  •  ...Chief Information Security Officer (CISO) About the Company Established data management and secure communications firm serving highly regulated industries. Industry Information Technology and Services Type Privately Held About the Role The Company... 

    Confidential

    New York, NY
    2 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Trusted provider & publisher of consumer insights about car models & auto brands Industry Market Research Type Privately Held, Private Equity-backed Founded 1968 Employees 1001-5000... 

    Confidential

    New York, NY
    2 days ago
  • CHIEF INFORMATION SECURITY OFFICER THE POSITION IN A NUTSHELL Sciens is seeking a Chief Information Security Officer (CISO), who will be responsible for establishing and operating a right‑sized, risk‑based cybersecurity program that protects the company, supports growth... 
    Temporary work
    Work experience placement

    Sciens Building Solutions LLC

    New York, NY
    5 days ago
  • $300k - $375k

    Chief Information Security Officer Location: New York, NY (Hybrid) Pay Range: $300,000 USD - $375,000 USD About The Role As Chief Information Security Officer, you will lead and strengthen the company’s entire security function across Governance, Risk & Compliance (GRC... 
    Visa sponsorship

    DriveWealth

    New York, NY
    1 day ago
  • $150k

     ...Overview Our top-notch Information Security team quickly finds and responds to real time threats. These critical thinkers have...  ...in this growing and ever-changing field. The Deputy Chief Information Security Officer (Deputy CISO) serves as the principal lead to the CISO... 
    Work at office
    Immediate start
    Remote work
    Flexible hours

    Touro University

    New York, NY
    3 days ago
  •  ...Advisor & Field CTO for Trusted Services to join their Platform Specialist team in New York. This senior role will engage with C-suite security leaders to articulate Salesforce's security posture and accelerate trust in their solutions. Responsibilities include developing... 

    Salesforce

    New York, NY
    2 days ago
  • $350k - $375k

     ...About the role InvestCloud is seeking an experienced Chief Product & Information Security Officer (CPISO) to lead the company's global information security strategy, governance, risk management, and incident response capabilities. Uniquely, this role carries explicit... 
    Full time
    Part time
    Flexible hours

    Investcloud

    New York, NY
    3 days ago
  •  ...visit healthsolutions.org. Position Summary The Chief Technology and Information Officer (CTIO) is an executive leader responsible for advancing...  ...data infrastructure, cybersecurity, HIPAA and NYS OHIP security compliance, interoperability, AI governance, analytics... 
    Monday to Friday

    Public Health Solutions

    New York, NY
    14 days ago
  •  ...Chief Information Officer / Chief Technology Officer (CIO / CTO) job at Delan Associates, Inc. New York, NY. Now Hiring: Chief Information...  ...in advancing the organization's mission, efficiency, and security. What You’ll Do Develop and execute a comprehensive... 
    Permanent employment
    Immediate start

    Itlearn360

    New York, NY
    1 day ago
  •  ...Life Plan Community. by Foulkeways on July 15, 2026 Director of Information Technology (IT) (1) Full time position to provide strategic...  ...efficiency, support resident care and services, and ensure the security and reliability of all information systems. Job Category: Administration... 
    Full time

    Foulkeways

    New York, NY
    4 days ago
  • $120k - $200k

     ...Information System Security Officer (ISSO) Employment Type: Full-Time, Mid-Level Department: Administrative and Logistics Support As a FSR ISSO, you will be embedded on-site with U.S. Government customers to ensure the secure, compliant operation of a... 
    Full time
    Flexible hours

    Contact Government Services, LLC

    New York, NY
    3 days ago
  • $125k - $150k

     ...with external partners - City Hall and the Office of Mass Engagement (to whom PEU reports)...  ...Management Planning M1 to function as a Chief Strategy Officer who can help PEU stand...  ...as described in "1" above. Additional Information The City of New York is an inclusive... 
    Full time
    Work at office
    Monday to Friday
    Flexible hours
    Shift work

    City of New York

    New York, NY
    3 days ago
  • Salesforce, Inc. is seeking a CISO Advisor & Field CTO for Trusted Services to bridge their security capabilities with the CISO community. You will engage at the executive level, addressing key enterprise security challenges and driving trust in Salesforce's solutions.... 

    Salesforce, Inc.

    New York, NY
    1 day ago
  • $250.44k - $375.67k

     ...Proof of Reserves. Across our multiple offices globally, we are united by our core principles...  ...the opportunity We're looking for a security leader for the Americas who's equally...  ...regardless of race, color, genetic information, creed, religion, sex, sexual orientation... 
    Full time

    OKX

    New York, NY
    12 days ago
  •  ...building a smarter, faster, and more secure financial future by revolutionizing...  ...About the team  The Security & Information Technology organization is the backbone...  ...Reporting directly to the Global CTO, the Chief Information Security Officer (CISO) & Head of Information... 
    Full time
    Contract work
    Temporary work
    Work at office
    Worldwide
    Home office
    Flexible hours

    Trustly

    New York, NY
    23 days ago
  • $208.18k - $278.46k

    salesforce.com, inc. is seeking a CISO Advisor & Field CTO for Trusted Services to engage with executive-level security leaders. This role emphasizes cybersecurity strategy, requires 15+ years of experience, and involves crafting security frameworks to enhance trusted... 

    salesforce.com, inc.

    New York, NY
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to CHIEF Information Security Officer. Be the first to apply!