BISO – Enterprise Technology Services (ETS)
Core
Strategic cybersecurity partner to the Enterprise Technology Services (ETS) organization, leading risk and resilience outcomes across cloud, infrastructure, network, and digital workplace domains.
Role type
Senior BISO (Business Information Security Officer)
Builds
Cybersecurity strategy, governance frameworks, risk dashboards, and secure operational workflows for enterprise technology services.
Domain
Enterprise Technology Services, Cloud Infrastructure, Network Security, Digital Workplace
Required skills
Information security leadership, enterprise infrastructure operations, cloud security posture management, network security architecture, vulnerability management, third-party risk management, incident response planning, stakeholder management, risk reporting, technology governance
Preferred skills
Experience with AWS, Microsoft 365, ITSM processes, threat modeling, penetration testing coordination
Technologies
AWS, Microsoft 365, Teams, SharePoint, OneDrive, Viva, Power Platform, Linux, Windows, Infrastructure-as-Code
Responsibilities
Act as primary strategic partner to ETS leadership driving alignment between technology priorities and cybersecurity strategy; Provide cybersecurity leadership across cloud environments and on-premises infrastructure including hosting, compute, storage, and operating systems; Partner with network engineering teams to ensure robust network security architecture including segmentation, firewall governance, and secure remote access; Guide security of end-user devices, workplace engineering, and productivity services like Microsoft 365 and Teams; Ensure cybersecurity principles are embedded within service operations including monitoring, incident management, patching, and change management; Carry out cyber risk assessments and make recommendations on best practices and control improvements; Facilitate vulnerability management and remediation of audit and penetration test findings; Lead third-party cybersecurity risk management for cloud providers and technology suppliers; Create risk dashboards and metrics translating complex security data into actionable insight; Partner with security operations and infrastructure teams to enhance incident readiness and crisis alignment; Maintain knowledge of threats relevant to enterprise IT including ransomware, cloud breaches, and supply chain compromise.
Seniority
Senior, hands-on IC with strategic influence