Senior VP, Enterprise Security and Cyber-Resilience
Hills BankAbout the role
SCHEDULE: Full-time; Monday through Friday 8:00 am – 5:00 pm. Hours may vary due to job requirements.
LOCATION: 131 E Main St, Hills, IA 52235
BENEFITS: Our employees are our most valuable assets, so we invest in them with a comprehensive and competitive benefits package. Our philosophy of taking care of the customer extends to taking care of our employees so that they, in turn, can take good care of themselves and their families. Join Hills Bank and let us surprise you with even more perks!
SCOPE:
The Senior Vice President, Enterprise Security and Cyber-Resilience is responsible for leading the bank's enterprise-wide security strategy, encompassing both cybersecurity and physical facilities security. This executive role ensures the protection of information assets, customer data, and physical infrastructure while maintaining compliance with regulatory requirements. This position leads the Security Office and staff, drives strategic initiatives, and fosters a culture of security awareness across the organization.
ACCOUNTABILITIES:
- - Leadership and Team Management
- Supervise, lead, mentor, and develop the Security Office team of cybersecurity and physical security personnel, ensuring alignment with the bank's strategic objectives and risk posture.
- Build and lead a high-performing team, fostering a culture of accountability, innovation, and continuous improvement.
- Promote strong cross-functional collaboration with IT, risk, compliance, legal, facilities, and business units to ensure security is integrated into all aspects of operations and decision-making.
- Act as a strategic advisor to executive leadership, influencing enterprise-wide initiatives with a security-forward mindset.
- Facilitate regular communication and coordination across departments to ensure cohesive execution of security programs and shared ownership of risk management.
- - Security Strategy and Governance, Policies, Standards and Frameworks
- Lead, define and execute the bank's security: strategy, governance model, and management framework.
- Establish and maintain security policies, standards, and procedures aligned with industry best practices and regulatory requirements (e.g., NIST, FFIEC, GLBA).
- Provide strategic security guidance to executive leadership and the board.
- - Maintains Current Threat Intelligence Knowledge and Partnerships
- Proactively engage with security intelligence-sharing organizations (e.g., FS-ISAC, InfraGard), and other relevant industry groups, to stay ahead of emerging threats and vulnerabilities.
- Build and maintain strategic partnerships with law enforcement, regulatory bodies, peer institutions, and cybersecurity vendors to enhance situational awareness and threat response capabilities.
- Integrate actionable threat intelligence into operational processes, risk assessments, and incident response planning.
- Ensure the bank's threat intelligence program is dynamic, continuously updated, and aligned with the evolving threat landscape.
- - Security Operations and Incident Response
- Oversee daily security operations, including monitoring, detection, and response to cyber and physical threats.
- Lead as incident commander for security incident response efforts, ensuring timely containment, investigation, and remediation.
- Conduct post-incident reviews and implement lessons learned.
- - Security Architecture and Oversight
- Serve as a key stakeholder in enterprise architecture planning, ensuring security is embedded into the design and implementation of all technology solutions.
- Champion a "secure by design" philosophy across the organization, integrating security requirements early in the system development lifecycle (SDLC) and technology procurement processes.
- Collaborate with IT, application development, infrastructure, procurement, risk and legal teams to define and enforce secure architecture standards, patterns, and reference models.
- Evaluate and approve architectural designs, third-party integrations, and cloud strategies to ensure alignment with the bank's security posture and risk tolerance.
- Lead security architecture reviews for new initiatives, ensuring scalability, resilience, and compliance with regulatory and internal standards.
- Drive continuous improvement in security architecture maturity, leveraging threat modeling, risk assessments, and emerging technologies. Implement a zero-trust model as part of this process.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s