Yoh Services - Houston, TX

posted 5 days ago

Full-time - Senior
Houston, TX
Administrative and Support Services

About the position

The Chief Information Security Officer (CISO) will lead the cybersecurity strategy for an energy client, ensuring the protection of critical information assets and infrastructure. This role involves developing and implementing security policies, managing a global security team, and overseeing security operations while aligning with business goals and regulatory requirements. The CISO will report to the board of directors and collaborate with executive leadership to integrate cybersecurity into business processes.

Responsibilities

  • Develop and implement strategies, policies, and standards for application security, infrastructure security, compliance, and security operations.
  • Ensure a robust security governance framework that aligns with business goals and regulatory requirements.
  • Lead the development and management of a comprehensive cybersecurity program.
  • Lead the cybersecurity team, setting strategic priorities and ensuring best practices are implemented internationally.
  • Create and manage an enterprise-wide cybersecurity program to safeguard critical information assets and infrastructure.
  • Oversee security operations, including incident response, threat intelligence, and vulnerability management.
  • Ensure the selection and implementation of appropriate security technologies.
  • Oversee security aspects of digital transformation initiatives, including cloud adoption, OT, and IoT integration.
  • Report to the board of directors on cybersecurity programs and develop metrics to demonstrate the impact and progress of the cybersecurity program.
  • Assess cybersecurity risks across digital infrastructure, networks, and sensitive data.
  • Implement risk mitigation strategies and conduct regular risk assessments and audits.
  • Establish and enforce security policies and procedures in compliance with legal, industry standards.
  • Drive security awareness and training programs for all employees.
  • Oversee business continuity and resiliency plans in collaboration with the CIO and other business leaders.
  • Collaborate with executive leadership, including the CIO, and business unit leaders to integrate cybersecurity into business processes.
  • Work closely with IT, operations, and other departments to ensure a cohesive approach to cybersecurity.
  • Liaise with vendors and external stakeholders to maintain security standards.

Requirements

  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent experience.
  • 15+ years of progressive experience in information security roles, with at least 5 to 7 years in senior management within a large, complex organization, preferably in the energy sector.
  • Direct leadership experience in managing a global security team within a highly regulated industry.
  • Deep understanding of cybersecurity technologies, practices, and methodologies.
  • Experience managing security for critical infrastructure and operational technology (OT) environments.
  • Extensive knowledge of relevant standards and regulations, including GDPR, NERC CIP, ISO/IEC 27001, NIST frameworks.
  • Proven experience in crisis management and incident response.
  • Strong analytical skills to assess security systems and foresee potential vulnerabilities.
  • Excellent communication skills to explain complex security risks and strategies to stakeholders at all levels.

Nice-to-haves

  • Master's degree in Computer Science, Information Systems, Engineering, Business, or related discipline, or equivalent training/experience.
  • Bilingual in English and Spanish (highly preferred).
  • Relevant certifications such as CISSP, CISM, CCISO, CompTIA Security+, GIAC Security Essentials, or CISA.

Benefits

  • Competitive salary ranging from $170,000 to $210,000 based on experience level.
  • Direct hire opportunity with a reputable company in the energy sector.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service