Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Officer

Shaw Systems Associates

Information Security Officer

Shaw Systems is a leading national software provider serving the consumer lending and financial services industry. We are seeking an Information Security Officer with the potential to grow into a CISO to lead the protection of corporate and client information assets and drive a secure, scalable technology environment.

This role owns enterprise security strategy, operations, compliance, and risk management while enabling secure adoption of AI, cloud, and automation platforms. The ISO serves as Shaw's primary authority on information security, partnering across business, technology, and client teams to strengthen security posture and support growth.

Organizational Scope
  • Direct Reports: Service Operations Manager, Senior Security Engineers, Security/InfoSec Analysts
  • Team Size: ~8 FTEs + contractors + SOC partner
  • Enterprise Reach: Full client portfolio (financial services focus)
  • Cross-Functional Influence: AI Committee; DevOps, Cloud, Implementation
Responsibilities

1. Security Strategy & Program Leadership

  • Define and mature enterprise information security strategy, policies, and standards
  • Own and evolve Shaw's Information Security Program and SOC 2 Type II compliance
  • Serve as primary security representative for clients, auditors, and executives
  • Lead risk identification, mitigation, and enterprise security roadmap
  • Oversee access controls, third-party risk, and security readiness exercises (DR, incident tabletop)
  • Present security posture, risks, and compliance status to leadership and external stakeholders
  • Hold named accountability for security representations in client agreements (including MSAs and processing agreements); present security posture and risk to clients, prospects, auditors, and executive forums as required

2. Security Operations (SecOps)

  • Oversee 24/7 SOC operations (via partner) and incident response lifecycle
  • Manage threat detection, monitoring, vulnerability management, and remediation
  • Lead response to authentication threats, phishing, and unauthorized access events
  • Maintain and enhance security tooling across the stack, including Microsoft Defender, FortiClient VPN, Arctic Wolf MDR, Keeper, KnowBe4, PAM solutions, and data protection technologies (e.g., DLP)
  • Ensure endpoint, identity, and infrastructure security across cloud and on-prem environments
  • Drive network, cloud, and infrastructure hardening initiatives

3. AI Governance & Security Architecture

  • Lead enterprise AI security strategy and rollout (Copilot, LLMs, AI tools)
  • Design and enforce AI governance framework (usage policies, data protection, access controls)
  • Architect secure AI/LLM environments (mitigating data leakage, prompt injection, etc.)
  • Own Microsoft Purview strategy (DLP, labeling, information protection)
  • Represent AI security posture to clients, auditors, and leadership
  • Manage strategic vendor relationships, including Microsoft, Anthropic, Arctic Wolf, Fortinet, Keeper, and other security and AI partners, ensuring enterprise value and risk alignment

4. Service Operations Oversight

  • Provide leadership oversight to Service Operations (infrastructure, endpoints, support)
  • Ensure reliability, patching, identity governance, and cloud operations (M365/Azure)
  • Drive SLA performance, operational efficiency, and automation initiatives
  • Ensure operational rigor through established tooling and cadences, including patch management (e.g., WSUS), endpoint monitoring, and environment audits

5. Compliance, Risk & Audit

  • Co-own SOC 2 Type II audit lifecycle and evidence management
  • Maintain enterprise risk register and mitigation tracking
  • Lead client/vendor security assessments and regulatory readiness
  • Ensure alignment with frameworks (ISO 27001, NIST, FFIEC, GLBA, SOX)
  • Ensure third-party vendor due diligence, security requirements, and contractual obligations are aligned with Shaw's Information Security Program and documented appropriately
  • Monitor regulatory developments (including AI and privacy laws)
  • Own security representations in client agreements and audit responses
  • Provide security review, guidance, and approval on security-related representations in client, regulatory, and third-party engagements, in partnership with executive leadership, Legal, and Compliance

6. Leadership & Culture

  • Lead, mentor, and develop InfoSec and Service Ops teams
  • Manage vendors, contractors, and partner performance
  • Promote enterprise-wide security awareness and training programs
  • Partner with HR on hiring, workforce planning, and organizational design

7. Strategic & Cross-Functional Collaboration

  • Advise executive leadership on security and AI risk strategy
  • Partner with DevOps, Cloud, and Implementation teams on secure design practices
  • Support business development (security questionnaires, client discussions)
  • Translate technical risk into business impact for diverse stakeholders
Requirements

Education

  • Bachelor's or Master's degree in Computer Science, Engineering, or related field

Experience & Expertise

  • 10+ years in information security leadership
  • 5+ years securing cloud environments (Azure preferred, AWS acceptable)
  • Strong experience with SOC 2, ISO 27001, NIST, OWASP, FFIEC, GLBA, SOX
  • Deep technical background across DevOps, infrastructure, and security tooling
  • Expertise in network security, IAM, DLP, SIEM, and vulnerability management
  • Experience with Microsoft security stack (Defender, Purview, Intune, Entra ID, Azure)
  • Demonstrated experience with AI platforms and governance (e.g., Copilot, LLMs)
  • Financial services or lending industry experience preferred

Certifications

  • CISSP (required)
  • CCSP (required)
  • ISSAP (preferred)

Leadership Competencies

  • Strategic security leadership and business alignment
  • AI governance and emerging technology risk management
  • Operational execution and compliance discipline
  • Strong communication, stakeholder influence, and executive presence
  • Analytical problem-solving and results orientation
  • Vendor and partner management expertise

Performance Expectations (First 12 Months)

  • SOC 2 Type II audit completed with no material findings
  • Enterprise AI governance framework fully implemented
  • Microsoft Purview DLP and labeling deployed enterprise-wide
  • Mature security operations cadence with measurable SLAs
  • Updated BCP/DR program tested
  • Improved phishing awareness and security training outcomes

Supervisory Responsibility

  • Leads a team of internal, contractor, and external partners supporting security operations and enterprise infrastructure.
Location
  • Hybrid: Within 75 miles of Houston, TX
  • Remote (eligible states): TX, VA, FL, GA, ID, LA, MI, MN, NJ, NC, PA, UT
  • Travel: 10–25% as needed
Work Environment
  • Full-time, Monday–Friday; standard business hours with occasional after-hours support as needed.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Information Security Officer in Houston, TX vacancy
  •  ...Chief Information Security Officer (CISO) About the Company Mission-driven online provider of musculoskeletal therapy Industry Health, Wellness and Fitness Type Privately Held, VC-backed Founded 2015 Employees 501-1000 Funding $200+ million... 
    Suggested

    Confidential

    Houston, TX
    19 hours ago
  •  ...Chief Information Security Officer (CISO) About the Company Accomplished executive search firm Industry Staffing and Recruiting Type Privately Held About the Role The Company is seeking a Chief Information Security Officer (CISO) to oversee and... 
    Suggested

    Confidential

    Houston, TX
    1 day ago
  •  ...Key Responsibilities: Develop, implement, and maintain the organization’s information security strategy, policies, and procedures Identify, assess, and manage cybersecurity risks and vulnerabilities Monitor security systems and respond to incidents, breaches,... 
    Suggested

    Foxconn Technology Group

    Houston, TX
    6 days ago
  •  ...Information Security Officer Tech Tammina LLC Job Description 6+ years of experience in a technology leadership position 6+ years of experience in multiple industry risk, control and governance disciplines (e.g. Audit, Business Continuity Planning, and Regulatory... 
    Suggested

    Tech Tammina

    Houston, TX
    19 hours ago
  •  ...Job Description Civeo is seeking a strategic and experienced senior IT security leader to serve as our next Chief Information Security Officer. This opportunity follows the planned retirement of our CISO after 12 years of impactful service and reflects our commitment... 
    Suggested
    Contract work
    Relocation package
    Flexible hours

    Civeo

    Houston, TX
    19 hours ago
  • Position: Chief Information Security Officer Talent Area: Information Services Full/Part Time: Full time Location: Houston, TX, US Department: IS Core Leadership Job ID: 423905 At Texas Children’s Hospital, our mission starts with our people. Guided by our HEART values... 
    Full time
    Part time
    Local area

    Texas Children's Hospital

    Houston, TX
    19 hours ago
  • A leading technology firm in Houston is looking for an Information Security Manager to develop and maintain their information security strategy. Key responsibilities include managing cybersecurity risks, monitoring security systems, ensuring regulatory compliance, and... 

    Foxconn Industrial Internet - FII

    Houston, TX
    4 days ago
  •  ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider of market research & business intelligence services Industry Market Research Type Privately Held About the Role The Company is in need of a Virtual Chief Information... 
    Part time

    Confidential

    Houston, TX
    3 days ago
  • A leading healthcare institution is seeking a Chief Information Security Officer responsible for advancing cybersecurity initiatives. This strategic leader will design, implement, and oversee a comprehensive security program that safeguards sensitive health information... 

    Texas Children's Hospital

    Houston, TX
    19 hours ago
  •  ...over $10 billion in client assets. With a state-of-the-art trust accounting system, the firm is seeking an experienced Information Security Risk Officer (ISRO) to lead its overall technology and information security strategy. This role carries accountability for the... 
    Contract work
    Work at office
    Worldwide

    Texas State Library and Archives Commision

    Houston, TX
    1 day ago
  • $165k - $200k

     ...VP, Information Security Risk Officer (ISRO) Trust Company l Financial Services Houston, TX (on-site role) Compensation: $165k - 200k plus bonus plus long-term incentive program including employee tracking stock grants Please note: Financial services industry... 
    Contract work
    Work at office

    Sabio Systems

    Houston, TX
    2 days ago
  •  ...three to four days per week. Job Summary The BISO is a dedicated security professional that is able to balance risk management and...  ...Degree or above) related to Computer Science, Cybersecurity, Information Technology, or related fields Experience Required 10+ years... 
    Local area
    3 days per week

    Sysco

    Houston, TX
    2 days ago
  •  ...Chief Information Officer (CIO) and Chief Technology Officer (CTO) About the Company Expanding company in the payments & neo banking sectors...  ...tasked with overseeing the development and maintenance of secure, scalable, and efficient payment solutions, and ensuring... 
    Remote work

    Confidential

    Houston, TX
    3 days ago
  • $75k - $100k

     ...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of...  ...an innovative force, where healthcare meets retail. For more information, visit     Business Structure The Joint Corp. is a franchisor... 
    Full time

    The Joint Chiropractic

    Houston, TX
    19 days ago
  • $35 - $50 per hour

     ...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of...  ...an innovative force, where healthcare meets retail. For more information, visit Business Structure The Joint Corp. is a franchisor... 
    Hourly pay
    Part time

    The Joint Chiropractic

    Houston, TX
    8 days ago
  • Job Description Job Description Dane Street is expanding our physician panel! We are seeking a skilled and Chiropractor in Houston, TX to join our team for Independent Medical Examinations (IMEs). This role offers flexible scheduling, allowing you to select or decline...
    Extra income
    Contract work
    Flexible hours

    Dane Street, LLC

    Houston, TX
    10 days ago
  • $36 - $40 per hour

     ...programs, which may vary.  Ready to Join the Movement?  Apply today and start moving your career in the direction you want. For more information, visit  or follow the brand on Facebook, Instagram, Twitter, YouTube and LinkedIn.  Powered by JazzHR R4SVvFGJui... 
    Full time
    Part time
    Relief
    Immediate start
    Monday to Friday

    The Joint Chiropractic

    Houston, TX
    29 days ago
  • $65k - $85k

    Job Description Job Description Looking for a bold, high-growth career in chiropractic care? The Joint Chiropractic in the Copperfield community of Northwest Houston, TX is where you break free from the grind of insurance billing, endless admin, and outdated systems...
    Full time

    The Joint Chiropractic

    Houston, TX
    a month ago
  •  ...ideal candidate will be responsible for network management, using various monitoring tools, troubleshooting issues, and ensuring security compliance. A Bachelor's degree in computer science and relevant certifications such as CCNA or CCNP are preferred. The role requires... 
    Contract work

    Foxconn Industrial Internet - FII

    Houston, TX
    3 days ago
  • The Houston Forensic Science Center is hiring an Entry Level Forensic Analyst responsible for conducting forensic examinations of computer and cell phone evidence. Candidates will analyze data from electronics, provide expert testimony, and assist in search warrants. A ...

    Houston Forensic Science Center

    Houston, TX
    3 days ago
  •  ...Deputy Chief Technology Officer (CTO) About the Company Top-tier investment bank Industry Investment Banking Type...  ...Hiring Manager Title CIO/CTO Travel Percent Less than 10% Functions Engineering Information Technology Confidential

    Confidential

    Houston, TX
    3 days ago
  • $238.83k - $341.19k

     ...care team consisting of care promoter (medical assistant), care facilitator, and care coordinator for patients able to come to the office. For patients that are unable to come to the office—in hospital, SNF, LTC or home-bound, the CMD will engage with the transitional... 
    Hourly pay
    Full time
    Temporary work
    Work at office

    ChenMed

    Houston, TX
    19 hours ago
  • $238.83k - $341.19k

     ...care team consisting of care promoter (medical assistant), care facilitator, and care coordinator for patients able to come to the office. For patients that are unable to come to the office—in hospital, SNF, LTC or homebound, engages with the transitional care team... 
    Work at office

    ChenMed

    Houston, TX
    19 hours ago
  • GCP Technologies LLC is an engineering and design firm with a history of continuous growth serving the Telecommunication Industry. We are seeking a qualified candidate to join our team as a Project Manager. The Project Manager is responsible for the planning, execution...
    Permanent employment
    Full time
    Local area
    Relocation
    Monday to Friday
    Flexible hours

    GCP Technologies LLC

    Houston, TX
    2 days ago
  • San Jacinto College in Houston is seeking Part-Time Faculty for Computer Science. Instructors will be responsible for teaching courses using various delivery methods, with potential evening and weekend classes. A Master's Degree with at least 18 graduate hours in Computer...
    Part time
    Weekend work
    Afternoon shift

    San Jacinto College

    Houston, TX
    1 day ago
  • San Jacinto College is seeking Part-Time Faculty for Computer Science in Houston, Texas. The role involves teaching courses with potential evening and weekend classes. Qualifications require a Master's Degree or above with at least 18 graduate hours in Computer Science ...
    Part time
    Weekend work
    Afternoon shift

    San Jacinto College

    Houston, TX
    1 day ago
  • A private Catholic university in Houston is seeking an Adjunct Faculty member in Computer Science. This role involves teaching undergraduate lecture courses and requires a master’s degree in computer science or a related field, along with teaching experience. The university...

    University of St. Thomas

    Houston, TX
    19 hours ago
  •  ...Chief Technology Officer (CTO) About the Company Prominent financial services firm specializing in investment management, research...  ...be responsible for the delivery of cloud-native applications, secure infrastructure, and automation pipelines to support agile product... 

    Confidential

    Houston, TX
    19 hours ago
  •  ...Chief Technology Officer (CTO) About the Company Venture-backed fintech startup....  ...responsible for ensuring the reliability, security, and scalability of the products, as well...  ...Percent Less than 10% Functions Engineering Information Technology Confidential

    Confidential

    Houston, TX
    1 day ago
  •  ...Chief Technology Officer (CTO) About the Company Accomplished executive search firm Industry Staffing and Recruiting...  ...certifications or advanced degrees are a plus. Travel Percent Less than 10% Functions Engineering Information Technology Confidential
    Work at office

    Confidential

    Houston, TX
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Officer. Be the first to apply!