Senior Information Governance Officer
Current• Implement programs and processes that monitor the emergence of new threatsand vulnerabilities, assessing impacts and suggesting responses as appropriate.• Assist in establishing an information security and risk management functionalcapability and framework across the organization.• Ensure that information security and risk is adequately represented on relevantbusiness and governance forums and is known, well-integrated, and addressedacross the enterprise.• Coordinate all aspects of alignment of Information Security Management System(ISMS) with ISO 27001.• Deliver to staff effective information security awareness training.• Ensure that all IT and information security programs are in compliance withapplicable laws, regulations, and policies.• Collaborate with application owners to understand and address (as appropriate)the risk position around key business applications and processes, to build theBusiness continuity Plan and Disaster Recovery Plan.• Assist in information security risk assessments across the enterprise at suitableintervals. Ensure that key risk issues are understood, communicated, and trackedon the risk register.• Regularly verify that required information security and risk controls are in place,raising findings as noncompliance is found and driving improvement.• Ensure that internal and external audits are supported in development of anannual strategic audit plan