Charles Schwab · 20 hours ago
Business Information Security Officer (BISO) - Digital Assets
Charles Schwab is a leader in the finance industry, and they are seeking a Business Information Security Officer (BISO) for Digital Assets. This role involves acting as a cybersecurity risk liaison for business units engaged in cryptocurrency and digital asset initiatives, ensuring compliance with cybersecurity policies while promoting innovation.
Financial Services
Responsibilities
Serve as the embedded security partner for Digital Assets business teams, aligning security requirements with product and operational objectives
Translate enterprise cybersecurity policies and procedures into practical, actionable expectations for digital asset initiatives
Participate in project planning, architecture reviews, and roadmap discussions to ensure secure design and regulatory alignment
Support risk exception, risk acceptance, and mitigation processes
Lead end-to-end cybersecurity risk assessments for digital asset products, crypto custody models, wallet operations, blockchain integrations, and supporting vendors
Evaluate risks related to private key management, wallet operations, smart contract risks, node infrastructure, and transaction processes
Document risks, recommend compensating controls, and track remediation to closure
Own the security risk lifecycle for digital asset vendors—from due diligence and contract negotiation to ongoing monitoring
Review vendor cybersecurity evidence (SOC 2, pen tests, questionnaires, cloud posture)
Ensure contractual controls for data protection, breach notification, crypto asset handling, and regulatory adherence
Track and drive remediation of vendor findings
Educate business, engineering, and operations teams on Schwab’s cybersecurity policies and secure practices
Develop crypto-specific security training and guidance
Promote a culture of security awareness
Prepare and coordinate internal/external audit activities
Ensure controls operate effectively and evidence is complete
Support alignment with SEC, FINRA, OCC, FFIEC, and other regulatory expectations
Collaborate with Cyber Operations and IR teams for crypto-specific incident preparedness
Contribute to playbooks for key compromise, vendor breaches, on-chain exploits, and blockchain outages
Produce business-focused reporting on residual risk, vendor posture, assessment outcomes, KRIs, and audit findings
Present risks and recommendations to leadership
Qualification
Required
Bachelor's degree in Information Security, Computer Science, Engineering, or related field
7+ years in cybersecurity or technology risk
Experience with digital assets, blockchain, or crypto custody/security
Familiarity with cybersecurity frameworks: NIST CSF, NIST 800-53, SOC 2, FFIEC
Strong communication and risk articulation skills
Preferred
Cybersecurity related certification such as: CISSP, CISM, CRISC, CCSP, CISA or similar
Crypto-focused credentials or blockchain training
Knowledge of key management systems, smart contract risks, and cloud security
Experience with GRC (Governance Risk & Compliance) platforms
Company
Charles Schwab
We have plans for every turn you take.
H1B Sponsorship
Charles Schwab has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (579)
2024 (468)
2023 (455)
2022 (705)
2021 (483)
2020 (282)
Funding
Current Stage
Late StageRecent News
2025-10-04
Morningstar.com
2025-09-28
Company data provided by crunchbase