Vp Of Information Security
Current• Tasked with developing an information security vision and strategy that is aligned with organizational priorities and the strategic and operational governance processes. • Lead strategic information security planning to achieve business goals by prioritizing initiatives and coordinating the evaluation, deployment, and management of current and future technologies using a risk-based assessment methodology.• Provide regular reporting on the status of the information security program to a variety of audiences including senior management and the board of directors.• Create a risk-based process for the assessment and mitigation of any information security risk in the ecosystem consisting of supply chain partners, vendors, consumers, and any other third parties.• Develop, define, and communicate policies, procedures, and associated plans for system security administration and user system access based on industry-standard best practices and regulatory requirements.• Manage the information security organization, including hiring, development, retention, and performance management.• Participate in feasibility studies and conduct risk assessments for software and systems under consideration for purchase and make recommendations.• Develop, track, and control the security services’ annual operating and capital budgets for purchasing, staffing, and operations.• Manage and contain information security incidents and events to protect corporate IT assets, intellectual property, regulated data, and the credit union’s reputation.• Coordinate the development and implementation of incident response plans ad disaster recovery policies, procedures, and standards to ensure that business-critical services are recovered in the event of a security event; provide direction, support, and in-house consulting in these areas.• Promote and oversee strategic security relationships between internal resources and external entities, including government, vendors, and partner organizations.