Jobs and Careers
AX
VP Information Security
Axiom Bank, N.A.United Statesfull_timeVerifiedPosted 13 Jan 2025
About the role
At Axiom Bank, we encourage you to aim for the sky and leverage your expertise and passion to excel. We are a growing, dynamic organization – this is an exciting time to get on board!
We believe in the value of promoting a healthy work/life balance and are committed to recognizing the role everyone plays in our ongoing success. We offer the following benefits to our Full Time Employees:
- 12 Paid Holidays
- Generous Paid Time Off
- 4% Match on our 401(k)
- Medical, Dental and Vision Benefits
- 100% Company Paid Life, AD&D Insurance, Short and Long Term Disability
Key Responsibilities and Accountabilities
The Information Security Officer’s Key Accountabilities include, but are not limited to the following:
- Maintain, update, and implement policies, programs, risk assessments and procedures (including, but not limited to the Cybersecurity Assessment Tool, Information Security Policy and Program, Third-Party Risk Management Program, and the Cybersecurity Monitoring Policy) to assure that information security risks are identified, monitored, measured, and reported. Identify security deficiencies and apply appropriate corrective action, and report on results.
- Report to the ITSC on information security issues including the risk assessment; risk management and control decisions; service provider arrangements; results of testing; security breaches or violations, and management’s responses; and recommendations for changes in the information security program. Advise management when changes to the system components, environment, or location are planned.
- Analyze tests implemented by independent third-parties of physical, technical and administrative security measures (including penetration tests, vulnerability analysis and network traffic analysis). Monitor testing of business continuity plans to validate availability of critical processes and incorporate that information into the risk assessment.
- Responsible for the Bank’s Third-Party Risk Management Program to include oversight of third-party due diligence, including each third-party’s IT and cybersecurity stature.
- Responsible for the Bank’s Third-Party and internal Fraud Management Program to include oversight of third-party due diligence
- Verify that users’ access requests are properly approved and adjusted for changes in employment status including new hires, transfers and terminations.
- Implement and monitor users’ information security training on the information security risks and controls based upon their roles.
- Monitor and respond to events discovered by Security Information and event Management (SIEM), Intrusion Detection Services (IDS), and Anti-Virus application.
- Assist Director of Information Technology in the development and continual enhancement of the Bank’s Information Security program used to maintain security of the Bank Information Systems. Develop and maintain the documentation for Information Security Policies, Procedures, and Standards.
- Stay current with information security & Fraud trends and provide threat intelligence in the areas of intrusion techniques, social engineering, technology and security solutions by researching security resources. Advise Chief Information officer and SVP, Retail, BAAS & Channel Tech on applicable trends and recommended solutions. Serve as subject matter expert (SME) on integration of information security technologies and controls within a common security reporting system.
- Review vendor patch deployment for operating systems, applications and other software and hardware on a monthly basis.
- Respond to and work with internal and external auditors and regulators to maintain the information security program.
- Assist in the development of an information technology risk management process that supports the Bank’s enterprise-wide risk management framework for new and existing products and services.
- Manage and perform annual Incident Response Program and ensure the program is in compliance with industry best practices and regulatory guidance.
- Participate on the monthly conference calls with FS-ISAC/ Community Institution Council (CIC).
- Monitor FS-ISAC and US-CERT Alerts to provide recommendations on the ones that are applicable to Axiom Bank, and
- Other duties as assigned.
Supervision of Personnel
- None
Working Conditions
- This position is performed in a regular office work environment. Will require bending and reaching, and will spend considerable
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s