Deputy CHIEF Information Security Officer
NISA Investment Advisors
Deputy Chief Information Security Officer, Information Technology
Overview
NISA Investment Advisors, LLC (NISA) partners with world-leading organizations to design, develop, and manage highly customized, risk-controlled investment strategies across fixed income, equities, and derivatives. With $483 billion assets under management ($299 billion in physical assets and $184 billion in derivatives notional value), NISA actively manages risk for institutional investors, providing clarity to complicated challenges and stability in ever-evolving markets. At NISA, we foster a culture that supports both personal and professional growth, providing opportunities to learn from experienced professionals while contributing meaningful work from the outset. We seek candidates who demonstrate strong quantitative and analytical skills, intellectual curiosity, and a collaborative mindset to join our growing teams.
Responsibilities
The Deputy Chief Information Security Officer (Deputy CISO) holds enterprise-wide accountability for NISA's information security program, working alongside and deputizing for the firm's chief information security officer (CISO). The role leads core cybersecurity operations across the firm and provides the level of control and oversight expected of a leader in the financial services industry. The role is highly collaborative. The Deputy CISO will work closely with partners across the firm, including members of the technology solutions team, and will partner with the Chief Risk and Security Officer (CRSO) on enterprise cybersecurity risk matters. This person will also present to executive and board-level risk and governance committees, explaining and communicating recommendations regarding the firm's cybersecurity and technology risks in clear business terms.
- Partner with the CISO to develop NISA's enterprise cybersecurity strategy and roadmap, and integrate it with the enterprise technology strategy
- Hold enterprise-wide accountability for NISA's information security program - its design, implementation and day-to-day operation
- Coordinate the development and maintenance of cybersecurity policies, procedures and standards to protect the organization's assets and information
- Oversee regular risk assessments and vulnerability scans to identify potential threats and vulnerabilities
- Manage cybersecurity incident response activities and lead investigations into security incidents
- Lead, mentor and develop the cybersecurity team; assess and strengthen the team's skills and capabilities, including augmenting and upskilling existing personnel
- Participate in the firm's third-party (vendor) risk management program, assessing and monitoring the security posture of vendors and service providers
- Support client-facing security due diligence, including responses to client and consultant security questionnaires, due diligence questionnaires (DDQs) and requests for proposal (RFPs)
- Manage security across NISA's hybrid on-premises and public-cloud environment (AWS and Azure), including identity and access management (IAM) as an evolving area of the program
- Work with internal teams and external vendors to select, implement and manage security technologies and tools, including firewalls, intrusion detection and prevention systems and security information and event management (SIEM) systems
- Maintain the security program against recognized control frameworks, including the NIST Cybersecurity Framework (CSF) and SOC 2
- Develop, implement and refine security controls and guardrails for the firm's adoption of artificial intelligence (AI) - an evolving area the Deputy CISO will be expected to manage as it matures.
- Ensure compliance with relevant cybersecurity regulations, including the firm's obligations as an SEC-registered investment adviser and applicable DOL regulations
- Develop and deliver cybersecurity training and awareness programs to educate employees on best practices for information security
- Support disaster recovery (DR) capabilities for critical technology services and contribute to the firm's operational resilience, partnering with the risk function, which owns business continuity planning
- Collaborate across the firm, including with the technology solutions team, to embed security into projects and day-to-day operations
- Present to executive and board-level risk and governance committees, explaining NISA's cybersecurity and technology risks and the controls in place to manage them
- Participate in security audits and assessments to ensure compliance with industry standards and regulations
Qualifications
- Bachelor's or master's degree, including demonstrated coursework in computer science, cybersecurity or a related field
- 12+ years of experience in cybersecurity, with significant leadership experience and a track record of progressive responsibility
- Demonstrated experience operating as a senior leader or second-in-command within an information security organization, with the ability to deputize for a CISO
- CISSP certification is required
- Experience managing security across hybrid on-premises and public-cloud environments (AWS and Azure), including identity and access management
- Experience operating a security program against recognized control frameworks such as the NIST Cybersecurity Framework (CSF) and SOC 2
- Strong knowledge of cybersecurity technologies and tools
- Experience with cybersecurity compliance regulations
- Experience managing and developing cybersecurity teams
- Experience developing a holistic program around cybersecurity, including engagement with business stakeholders
- Experience participating in third-party (vendor) risk management
- Experience supporting client-facing security due diligence (e.g., client and consultant security questionnaires, DDQs and RFPs)
- Experience with disaster recovery and operational resilience for technology services
- Additional certifications such as CISM and CISA
- Familiarity with AI governance and risk frameworks (e.g., NIST AI Risk Management Framework) and emerging AI security credentials such as ISACA's Advanced in AI Security Management (AAISM)
- Strong communication and interpersonal skills, including the ability to communicate technical concepts to non-technical stakeholders and to present to senior leadership and committees
- Experience driving an automation-first approach to cybersecurity operations to strengthen operational resilience and keep pace with an accelerating threat landscape preferred
- Experience in financial services or another regulated industry preferred
- Experience reporting to or presenting to executives, risk committees or boards preferred
NISA's culture encourages collaboration and innovation. We seek self-motivated, intellectually curious individuals willing to push themselves and others in an environment that celebrates fresh thinking. We equip employees with the resources needed to excel and we encourage personal development. NISA is dedicated to internally cultivating and rewarding talent. Employees at NISA are provided with a wide range of benefits, including health, dental, vision and life insurance options, paid time off, a competitive retirement plan, onsite cafeteria, fitness center, a health and wellness program and an educational assistance program.
NISA is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.
- ...License Additional courses in physical therapy are advantageous Additional Skills/Competencies Medicine – Knowledge of the information and techniques needed to diagnose and treat human injuries, diseases, and deformities. This includes symptoms, treatment...SuggestedLocal area
$30 - $45 per hour
...programs, which may vary. Ready to Join the Movement? Apply today and start moving your career in the direction you want. For more information, visit or follow the brand on Facebook ( , Instagram ( , Twitter ( , YouTube ( and LinkedIn ( . Powered by JazzHR...SuggestedHourly payFull timePart timeImmediate startMonday to FridayShift workWeekend work$1,200 per week
...regions, including neighboring areas in Illinois and Cumberland, Maryland. Our clients include school districts, hospitals, doctor's offices, and we also assist individuals and families with their transportation needs. Contractor Responsibilities Provide safe and...SuggestedFull timePart timeFor contractorsFlexible hours- Sedgwick is seeking a seasoned Vice President, IT Internal Audit to lead the IT audit program across a global organization. You will shape risk-based testing, oversee IT general controls, SAP controls, and ERP risk management, and drive assurance across complex environments...Suggested
- ...Chief Technology Officer (CTO) About the Company Ambitious property & casualty insurance company... ...a leader who can build and operate secure, scalable, cloud-native technology platforms... .... Hiring Manager Title Chief Information Officer Functions Engineering...Suggested
- ...Chief Information Officer (CIO) About the Company Nationally recognized provider of high-quality legal services Industry Legal... ...investments with business growth, operational excellence, security, and innovation. This role requires a strategic leader who...
- ...Join to apply for the Cyber Security Analyst role at U.S. Air Force Reserve As a cyber warfare operations officer in the Air Force Reserve, you’ll serve at a base of your... ...Bachelor’s Degree with a focus in computer and information sciences Completion of Undergraduate...Full timePart time
$102.17k
...clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate... ...mental disability, veteran status, citizenship status, genetic information or any other characteristic protected by applicable law....H1b- ...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of... ...an innovative force, where healthcare meets retail. For more information, visit . Business Structure The Joint Corp. is a franchisor...Full timePart timeReliefWeekend workWeekday work
- ...St. Louis Community College seeks a Chief Information Officer to lead technology, data governance, cybersecurity, and digital transformation in support of student success and institutional effectiveness. The CIO guides a comprehensive strategy, stewarding budgets, vendor...
- ...Larson Financial is seeking a Vice President of Information Technology to lead technology strategy and execution across the organization... ...the Director of IT and business relationship managers to drive secure, scalable technology solutions. The candidate will champion AI...
- ...continuity planning, disaster recovery, compliance initiatives, and IT security best practices. Artificial Intelligence (AI) & Emerging... ...leadership. Qualifications ~ Bachelor's degree in Information Technology, Computer Science, Information Systems, or a...
- ...The Chief Information Officer (CIO) serves as the College’s senior technology executive and a member of the executive leadership team. The CIO... ...effectiveness, and community engagement. The CIO ensures the secure, reliable, and cost-effective delivery of technology services...Contract workCasual workWork at officeLocal areaAfternoon shift
$100k - $150k
...Job Summary B.S. in information technology, information systems, computer science or equivalent required. B.S. in information technology... ...ensure industry compliance, including the facilitation of IT security audits or investigations. Coordinates, researches, designs, and...Permanent employmentTemporary workWork experience placement- ...Chief Information Officer (CIO), Food Ingredients Business Unit About the Company Top-tier manufacturer of fragrances & flavors Industry... ...processes. The CIO will also be responsible for building a secure technology environment, leading technology investments, and...
- ...Trinnex is seeking a Senior Cyber Security Analyst to protect software systems critical for water utilities. This role involves advanced threat detection and vulnerability management within a DevSecOps environment. The ideal candidate will have a Bachelor's Degree and...
$110k - $130k
...from $110K-$130K IT Director Requirements Bachelor's degree in Information Technology, Information Systems, Computer Science, or a... ...initiatives, business continuity planning, compliance efforts, and security audits. Manage ERP deployment, ecommerce operations,...Work from home- ...may include integrating third party systems and new business features. Coach the Software Engineering team in both formal and informal working techniques, creative problem solving and business support. Specific Skills may include Custom Application Development...Contract workRemote work
- ...leadership support, financial resources, and key security personnel, to support information technology (IT) security goals and objectives and... ...operations program. Advise senior management (e.g., Chief Information Officer [CIO]) on risk levels and security posture. Advise...
- ...seeking a Chiropractor’s Assistant to support both front and back-office operations. About the Role This hybrid role offers a... ...committed to patient care Able to handle confidential patient information with discretion Benefits Available ~ Health, Dental, and...Temporary work
$50 per hour
...established cybersecurity team focused on protecting and maintaining secure operations across the organization. This role is fully onsite... ...more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy:...- Job Role: Cybersecurity Consultant Location: Irving, TX, USA (Try Local) Duration: 12+ Month Contract Need Total 10+ experience. RequiredEducation • Option1:Bachelor'sdegreewith5+yearsofexperienceinthiscapacity • Option2:Nodegreewithaminimumof7+yearsofexperienceinthiscapacity...Contract workLocal area
- ...Manager to lead internal IT operations and Tier 2 support. This hands-on leadership role covers device management, infrastructure, and security across customer facilities. The successful candidate will balance strategic planning with operations, driving reliability,...
- ...hardware while coordinating cross-functional IT initiatives. This permanent, full-time position requires a strong background in information systems, network administration, and end-user training, with the ability to back up the division's data infrastructure and #J-188...Permanent employmentFull time
$144.9k - $265.8k
...solutions using Microsoft Entra, Okta, Ping, Saviynt Design cloud security and IAM architectures for Azure, AWS, GCP, and hybrid... ...those living in California, please click here for additional information. EY focuses on high-ethical standards and integrity among...Work experience placementSummer holidayFlexible hours- Overview Chiropractor or Physical Therapist - In-Home Neurologic Rehab SynapseTBI is a neurodiagnostic and rehabilitation company specializing in TBI, mTBI, and Post-Concussion Syndrome , delivering ACOEM-validated diagnostic and treatment protocols. We’re seeking a licensed...Work from homeFlexible hours
- ...Cyber Security Operations Specialist III EOE Statement: We are an equal employment opportunity employer. All qualified applicants... ...TCS) contract. The functional capabilities are to provide the information technology (IT) infrastructure services required to deliver timely...Full timeContract workPart timeWorldwide
- ...IT Operations & Cyber Security Lead At Ruveon we’re visionaries, driven to solve... ...The IT Operations Lead / Cyber Security Officer is responsible for ensuring Ruveon IT... ...needed accommodation(s) using the contact information below. In compliance with federal law...Temporary work
- ...Cybersecurity GRC Analyst We are seeking an experienced Cybersecurity GRC Analyst for a 6-month engagement to support our ongoing security compliance and governance initiatives. The ideal candidate will have strong hands-on experience with ISO 27001, including audit...
$185k
...innovation, transformation, and security, we want you to lead our next... ...visionary. You will be the chief architect of the firm's... ...earned a Bachelor’s degree in Information Technology, Computer Science,... ...LOCATION | COMPENSATION Our office is located in St. Louis, Missouri...Work at officeRelocation packageFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Deputy CHIEF Information Security Officer. Be the first to apply!


