Jobs and Careers
BE

Regional Information Security Officer

Be Grizzlee
Los Angeles, United Statesfull_timeVerifiedPosted 11 Mar 2024
💰 $170,000/yr($120,000/yr$170,000/yr)

About the role

Who We Are

Be Grizzlee is an always-on studio that hyper-tailor’s content for all its partners. Through agile production and a disruptive core, our diverse talent delivers best-in-class experiences globally. We are a friendly and ambitious creative studio with the highest standards for our content output.

Role Summary 

The Regional Information Security Officer (RISO) will be an embedded security & risk professional, charged with assisting their local team and aligned with the Corporate Security function to assist in the maturation the security posture for their Practice Area/Network’s business and services. Reporting to the Business Information Security Officer (BISO), this role will be focused on the governance, implementation and compliance of the Corporate Information Security policies, standards, procedures and guidelines to prevent the unauthorized use, release, modification or destruction of data/systems, specific to Be Grizzlee. The RISO will also be expected to assist with internal security consultancy to support strategy and identify information Security related risks and proactively work with all support departments including Human Resource, Facilities, Finance, Information Technology and Corporate Security to ensure that Information risks are identified, assessed, and mitigated in all situations where possible.

Responsibilities

  • Build and maintain global relationships with business units and stakeholders to support local security activities with focus on continuous improvement and program maturation.
  • Work with BISO and Corporate Security to deliver administrative and technical controls, in line with organizational policies, standards, contracts, and/or regulatory obligations.
  • Support strategic and tactical alignment of corporate technology to overall security to business objectives for all divisions within region.
  • Assist in responding to client requirements such as RFP/RFI, audits, security questionnaires, contract negotiation and client meetings as relates to security where appropriate.
  • Collaborate with the IT departments to identify and address internal/external security risks management and governance issues, developing treatment plans to address risk or reduce the risk to an acceptable level while aligning with the Corporate Risk Management Framework and practices.
  • Participate in implementation and management of Corporate platforms, e.g. endpoint protection, encryption, SIEM, CASB, perimeter controls
  • Assist with regular testing and applicable remediation efforts of critical infrastructure, high-risk applications, and processes.
  • Work with Corporate Security to supplement the global Information Security Awareness training curriculum, with BG specific content, facilitating cyber security awareness activities and security awareness concepts locally to be suitable for the business.
  • Participate in the coordination and documentation of Business Continuity Plans and appropriate exercising across their assigned Practice Area/Network.
  • Assist with CSIRT responses to security incidents, providing timely reports during the incident and remediation, as well as proposing solutions to anticipate, prevent, or mitigate future incidents
  • Provides additional leadership in support of the CIO’s strategic initiatives through dotted line reporting to the Regional CIOs.
  • Partner with Practice Area/Network technical operations staff for reporting on information program posture and compliance within all markets within the region
  • Maintain up to date knowledge of emerging security trends, risks, new guidance or standards (internal and external) and security enhancing technologies

Qualifications/Experience

  • Minimum 5 years of experience in IT, Information Security, IT Audit or related area
  • Familiarity with Information Security industry standards/best practices and relevant regulations (e.g., ISO27001, PCI DSS, HIPAA, GLBA, FISMA, SOX, NIST, CobiT)
  • Industry recognized certifications (CISA, CISSP, CISM) preferred
  • Bachelor’s degree in Information Security, Computer Science, Information Management Systems, Business/Accounting or related field or related experience preferred
  • Experience In production, content studio, digital, tech, marketing agency preferred

Skills

  • Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate security and risk-related concepts to technical and nontechnical audiences
  • Ability to cultivate relationships and act as a consultancy to varied stakeholders including cross-functional / peer relationships with diverse, global teams
  • Proven track record of managing security in operations programs, strategic se

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Be Grizzlee

View company profile →