Elsevier · 7 hours ago
Business Information Security Officer (BISO)
Elsevier is a company focused on delivering measurable outcomes and improvements in organizational goals. As a Business Information Security Officer, you will plan, organize, and execute enterprise-wide information and security initiatives, with a focus on risk management and cybersecurity defenses.
Responsibilities
Driving information and infrastructure security awareness and governance deep into the organization. This will involve aligning Business & Technology units with enterprise cybersecurity programs and objectives
Providing a critical liaison role between the business unit and the Elsevier Cyber Security organization. This includes enhancing the level of collaboration and effective communications with key stakeholders/business units
Managing the oversight of technical risk assessments, such as vulnerability scanning, penetration testing, risk reviews for new applications, and third-party risk assessments. Leading, monitoring and managing security projects; provide expert guidance on security matters for other IT projects
Defining the information and infrastructure security utilizing a risk-based approach. Develop goals, training recommendations, strategies, plans, and success criteria needed to achieve the vision
Developing and report cyber security metric scorecards to reflect the level of adoption and compliance to security policies/standards. Tasked with the remediation of vulnerabilities, and residual risks
Managing the oversight of technical risk assessments, such as vulnerability scanning, penetration testing, risk reviews for new applications. Leading, monitoring and managing security projects; provide expert guidance on security matters for other IT projects
Providing leadership and direction for the integration of security strategy and architecture with business and IT strategy. Evaluate and design the implementation of new or updated information security hardware or software. Analyze its impact on the existing environment
Qualification
Required
Currently in a BISO role now. We are not looking to hire a CISO
Demonstrate an ability to effectively collaborate and communicate with multiple technical functions such as security, infrastructure, operations, software engineering
Illustrate expert knowledge and experience areas of Cyber Security involving incident response, risk, and governance. This would involve being able to imagine and create innovative approaches, strategies and develop security programs
Demonstrate extensive understanding of Information Security compliance and governance frameworks such as NIST, ISO27001
Have extensive experience in problem-solving involving leading teams in identifying, researching, and coordinating the resources necessary to effectively. Such as Troubleshooting/diagnosing complex project issues, prior success extracting/translating findings into alternatives/solutions. identifying risks/impacts, and schedule adjustments to facilitate management decision-making
Company
Elsevier
Elsevier is a world-leading provider of information solutions that enhance the performance of science, health, and technology. It is a sub-organization of RELX.
H1B Sponsorship
Elsevier has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (32)
2024 (17)
2023 (28)
2022 (46)
2021 (28)
2020 (19)
Funding
Current Stage
Late StageTotal Funding
unknown2003-09-01Private Equity
Recent News
2025-12-18
Business Wire
2025-12-17
Research & Development World
2025-12-05
Company data provided by crunchbase