Sr. Business Information Security Officer
Bank of America - Washington, DC
Apply NowJob Description
Sr. Business Information Security OfficerJoin to apply for the Sr. Business Information Security Officer role at Bank of AmericaAt Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We drive Responsible Growth and deliver for our clients, teammates, communities and shareholders every day. Bank of America is committed to an in‑office culture with specific requirements for office-based attendance and a level of flexibility based on role considerations. You can build a successful career with opportunities to learn, grow, and make an impact. Join us!The Information Security Officer will be a member of the Business Information Security Officers (BISO) organization and work closely with the line of business Front Line Units (FLU) / CIO executives. In this role, you will support a group to develop a deep understanding of the business to have specialized information security risk-based discussions. This relationship will ensure a focus on the right risk priorities and you will provide guidance on information security topics, policies and controls.Responsibilities / ScaleContribute to ongoing information security initiatives and improvements; development, implementation and maintenance of information security for FLU/OpsServe as an Information Security subject matter expert and participate in the development, implementation and maintenance of information security for FLU/OpsAlign to Fraud Authentication, Financial Center, and Automated Teller Machines channel segments to drive a security strategy and ensure security-by-design requirementsProvide guidance on prioritization of investments that impact information securityAdvise management on risk issues related to information security and recommend actions in support of broader risk management and compliance programsMonitor information security trends internal and external and keep leadership informedManage quality control and reportingEnsure compliance with policies and lawsRequired SkillsInformation Security & Technology professional with 10+ years’ experience7+ years of risk management experience with ability to apply risk principles to challenging business situationsSubject matter expert in application security, vulnerability testing and development of risk appetiteExperience evaluating cyber security controls and guidance for platform or distributed computing platforms (Cloud, PaaS)Experience evaluating third-party information security controls and guidance to reduce risk on identified observationsExperience with information security for NoSQL, Big Data, and unstructured data stores (Cassandra, Hadoop, Teradata)Knowledge of Windows, Midrange and Mainframe platforms with emphasis on security controlsExceptional executive presentation and communication skillsStrong influencing and problem-resolution skillsAbility to deliver messages across a wide spectrum of technical understandingStrong leadership skills to work with peers and managementDesired SkillsBachelors and/or Master’s degree in Computer Science, Information Technology or related fieldExperience with cloud control assessments in Microsoft Azure, Amazon Web Services and Google Cloud Platform environmentsRisk ManagementDrives GIS/FLU/Ops risk deliverablesCollaborates with risk partners on information security prioritiesParticipates in senior FLU/Ops Risk Management & Business Continuity routinesIdentifies and measures global information security controls on critical business processes or channelsLeadership / StrategyBuilds strong partner relationships with peer technology groups and supported FLU/OpsSupports triage processes with clients and explains GIS support structureDrives required risk culture and partnership with peer technology teams and supported FLU/OpsParticipates in key operating routines to drive information security risk strategyShift1st shift (United States of America)Hours Per Week40Seniority levelExecutiveEmployment typeFull-timeJob functionOther, Information Technology, and ManagementIndustriesBanking #J-18808-Ljbffr
Created: 2025-09-24