Confidential Jobs · 1 day ago
Business Information Security Officer (BISO) Fortune 100 company Direct Hire
Confidential Jobs is a Fortune 100 company seeking a highly strategic Business Information Security Officer (BISO) to act as a liaison between the enterprise security organization and key business units. The BISO will shape and execute a security strategy that aligns with business objectives, ensures regulatory compliance, and strengthens cyber resilience across a complex operational footprint.
Computer Software
Responsibilities
Act as the trusted security advisor to senior business leadership, translating technical risks into clear business impacts
Drive alignment between corporate security strategy and business-unit initiatives, ensuring security enables—not hinders—innovation and growth
Represent business needs within enterprise cybersecurity governance forums
Identify, assess, and prioritize cybersecurity risks across business units, including emerging threats to distribution operations, supply chain systems, and large-scale logistics platforms
Ensure compliance with internal policies, industry standards, and regulatory frameworks (e.g., NIST CSF, ISO 27001, SOX, PCI, data privacy regulations)
Oversee remediation plans and ensure timely closure of audit and assessment findings
Support implementation of enterprise-wide security programs (IAM, data protection, vulnerability management, cloud security, OT/ICS security, incident response)
Champion best practices for secure architecture, application development, and third-party vendor management
Coordinate with IT, OT, and business operations teams to drive adoption of security controls across complex distributed environments
Liaise between business leadership and Cyber Incident Response teams during major incidents or disruptions
Ensure business units are prepared with effective response plans, communication protocols, and recovery strategies
Build strong partnerships with executives, technology leaders, and operational teams
Deliver targeted security awareness and training for business units
Communicate risk posture and security metrics to leadership through dashboards, reports, and briefings
Qualification
Required
8+ years of experience in cybersecurity, risk management, or information security leadership roles
Proven experience supporting large-scale, distributed enterprise environments (preferably in supply chain, logistics, distribution, or retail)
Strong understanding of cybersecurity frameworks, governance, and risk methodologies
Ability to interact with C-suite executives, translate complex technical issues into business language, and influence decision-making
Experience coordinating cross-functional initiatives in complex, highly regulated organizations
Preferred
Experience within a Fortune 100 or Fortune 500 corporate environment
Background working with OT/ICS, distribution center technologies, or supply-chain automation systems
Relevant certifications: CISSP, CISM, CRISC, CISA, CGEIT, or similar
Bachelor's degree in Cybersecurity, Information Systems, Business, or related field; Master's degree a plus
Benefits
Competitive compensation
Comprehensive benefits
Career growth at a global scale