Information Security Officer (Iso)
Current• Manage IT SECURITY FOR 7 BANK LOCATIONS throughout Indiana and Ohio, consisting of 120 employees at retail locations and an operations center. Report to the Chief Risk Officer (CRO), while working closely with the technical staff, including the Network Administrator and Chief Information Officer (CIO). • Implemented and update CONTINUOUS IMPROVEMENTS TO THE CYBER SECURITY PLAN to raise the technical posture and guard critical assets through: – Staff Training & Awareness, NIST/PCI DSS Compliance, Incident Response & Recovery – Security Tools & Technology (e.g., Detection, Encryption, Firewalls), Risk Assessment & Mitigation – Standard Operating Procedures (e.g., Password Management, Access Controls)• Vetted, negotiated contract, and implemented a NEW CYBER SECURITY AWARENESS TRAINING PLATFORM with built-in AI that further advances overall security framework, raises employee security awareness, and eliminates phishing vulnerabilities. Initiate training amongst new and existing personnel. • Advised on best practices for equipment, infrastructure, staff, and resources required during the SETUP OF A NEW REDUNDANT DATA (DR) SITE. Introduced business continuity practices and data storage solutions that maximized critical workloads and avoided data loss due to natural disaster, utility failure, or cyberwarfare. • Leverage a tech stack of NETWORK TRAFFIC, PERFORMANCE, and CONFIGURATION MONITORING TOOLS with vendors that ensure the overall health, connectivity, and availability of the network. Provide the Board and site staff with reports as part of the infosec transparency initiatives. • Serve on the INFORMATION SECURITY MANAGEMENT (ISM) and IT STEERING COMMITTEES to lessen the company’s risk profile. Raise the security governance and culture by prioritizing cybersecurity initiatives to mitigate cybersecurity threats and trends throughout banking. Comply with State & Federal Reserve regulations.