Business Information Security Officer
HCLTech
We are HCLTech, one of the world’s largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud. The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves. Job Title: Business Information Security Officer (BISO / BSO) Role Summary
The Business Information Security Officer (BISO/BSO) serves as the primary security liaison between the business, enterprise security, and GRC functions. The role ensures that information security risks are appropriately identified, assessed by accountable teams (e.g., GRC, vendor risk, compliance), clearly communicated to business stakeholders, and effectively acted upon. The BISO enables secure-by-design execution across business initiatives while ensuring alignment with enterprise security frameworks and regulatory requirements such as ISO 27001, SOC 2, NIST, and FedRAMP. Key Responsibilities
1. Secure-by-Design Advisory & Consulting Act as a trusted security advisor to business and delivery teams, embedding security-by-design principles into initiatives from early design stages.
Translate enterprise security standards and regulatory requirements (ISO 27001, SOC 2, NIST, FedRAMP) into actionable guidance and security user stories.
Collaborate with architecture, engineering, and security teams to ensure security requirements are understood and incorporated into solution design. 2. SDLC Security Enablement (Coordination Role) Ensure security requirements are integrated into SDLC processes for in-scope applications.
Coordinate with GRC, application security, and engineering teams to ensure security assessments, control validation, and remediation activities are executed.
Track security findings and ensure remediation plans are clearly understood and actioned by delivery teams. 3. Third-Party Risk & Due Diligence Coordination Act as the business-facing liaison for third-party risk management activities conducted by GRC and vendor risk teams.
Ensure due diligence requests are completed by relevant stakeholders and that outcomes are communicated in business terms.
Facilitate business understanding of vendor risk posture and support informed risk decisions. 4. Divestiture / Transformation Support (Orthopedic Programs) Support security activities for orthopedic divestiture and transformation initiatives.
Coordinate across IT, GRC, security, and business teams to ensure security requirements are addressed during transition planning and execution.
Ensure alignment with enterprise security frameworks and regulatory obligations throughout the transformation lifecycle. 5. Physical Site Security Coordination Support physical security assessments for scoped orthopedic sites conducted by appropriate security teams.
Ensure findings, gaps, and remediation actions are clearly communicated to business and site leadership.
Track remediation progress and support closure of identified risks. 6. Risk Governance, Communication & Collaboration Facilitate security risk acknowledgement and decision-making discussions between GRC and business stakeholders.
Ensure risks, control gaps, and mitigation plans are clearly understood and appropriately documented.
Enable risk acceptance processes by ensuring business stakeholders are informed and aligned.
Collaborate across multiple teams (GRC, IT, engineering, legal, compliance, and business units) to ensure coordinated security outcomes. Key Deliverables
Security-by-design guidance aligned to ISO 27001, SOC 2, NIST, and FedRAMP frameworks
Coordinated tracking of SDLC security activities and remediation status
Third-party risk communication summaries (from GRC outputs)
Divestiture security coordination artifacts and transition support documentation
Physical site assessment coordination reports and action tracking
Risk acknowledgement and acceptance documentation
Executive-level security status reporting for business stakeholders Core Competencies
Strong understanding of enterprise security frameworks: ISO 27001, SOC 2, NIST, FedRAMP
Excellent stakeholder management and cross-functional collaboration skills
Ability to translate technical risk into business impact and decision-ready language
Strong coordination Equality & Opportunity for All
Representing 165 nationalities worldwide, we are proud to be an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, religion, sex, color, age, national origin, pregnancy, sexual orientation, disability or genetic information, or any other protected classification, in accordance with federal, state and/or local laws At HCLTech, we don’t just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way. Why Choose HCLTech?
Be part of a purpose-led organization with a global footprint
Collaborate with diverse teams across borders
Work on cutting-edge technologies in enterprise integration
Enjoy career mobility, continuous learning, and a culture of inclusion
Vaga publicada há 3 dias atrás
Empregos semelhantes que podem ser interessantes para vocêCom base na vaga Business Information Security Officer em Alemanha
- Mission Description As an experienced Business Support Analyst, your mission is to secure and optimize business performance by providing reliable data, insightful... ...presentations on business development; Contribute information for commercial proposals and public tenders (bids);...
- ...support, join us at AVASO to help businesses thrive with reliable and... ...ensure systems are up-to-date and secure. Provide end-user training... .... ~ Strong knowledge of MS Office Suite and other productivity... ...identity, pregnancy, genetic information, disability, protected...
- ...-to-day IT issues within the office environment Coordinate with L2... ...upon arrival and store securely in end customer-provided facilities... ...maintain accurate inventory information Perform periodic audits of hardware... ...projects Assist with local business events such as AEMs, demos (...
- ...automations. This role bridges the gap between business operations and technology. You will act... ...databases and ensure data integrity as information flows between the CRM, ERP, and operational software. IT Administration & Security Administer core software platforms and...
- ...this role, the person Cloud Security Architect will be responsible... ...implementing, and governing secure cloud architectures across enterprise... ...regulatory requirements, and business objectives. Main... ...have: • Knowledge of security information and event management platforms...
- ...ambientes de segurança utilizando as soluções nativas do Google Cloud Security. Liderar iniciativas relacionadas a monitoramento, detecção... ...Google Professional Security Operations Analyst. Informações Adicionais: Atuação 100% remota Contratação CLT...
- ...more than 25 years of experience with multiple offices around the world including London, Larnaca,... ...) and the Banco Central do Brasil. Ensure the business is built and operated in full compliance with Brazilian securities and financial services regulations. Maintain thorough...
- ...'s request for assistance, with impartial, ethical and independent posture required by the Ombudsman role.Able to perform 5 days' rotational shift work including weekends & Public Holidays, with availability to attend the Ombudsman phone line during business h ours.
R$ 1.930
Especificação da Vaga Vaga: Office Boy Quantidade de vagas: 1 posição CLT (efetiva) Salário: R$ 1.930,00 Escala de trabalho... ...administrativas • Boa organização e postura profissional Informações adicionais Tipo de Vaga Efetivo Benefícios Nenhum Informado...- ...for a proactive and detail‑oriented intern to join our Safety & Security team. In this role, you will support operations monitoring,... ...Support Invoice registration and reconciliation after validation by business owners, ensuring accounting accuracy and fiscal compliance. In...
- ...THE ROLE We are looking for a Senior Application Security Engineer to develop AI-enabled secure code scanning and integrate security tooling directly... ...solutions with Fortune 500 and top product companies. - Flextime : Flexible schedule with remote and office options....
- ...future as a magentian! Position: Front Office Analyst | Pleno Main responsibilities... ...that the system is showing the accurate information related to BL issue and release Daily... ...fast BL release Maintain BL forms in security and guarantee stock levels in all agencies...
- Job Title: Chief Executive Officer (CEO) – Brazil Sao Paolo Location: Brazil Eligibility: experienced About the Role We are seeking... ...center projects . The CEO will be responsible for driving business growth, operational excellence, and strategic expansion while...
- ...its international headquarter. Our core businesses are lending operation and equity investment... ...exceptions or delays to the Middle Office Lead. Reconciliation & Controls Perform... ...Functional Data Support Support data inputs and information requests from Lending, Accounting,...
- ...às 17:30. Após o período de experiência 2 vezes na semana home office Benefícios: Assistência médica, Assistência online... ...importados, contribuindo com a qualidade e confiabilidade das informações da base. Responsabilidades Realizar coleta e estruturação de...
- ...região. No seu dia-a-dia: Realizar os processos de geração de informações gerenciais, emissão de relatórios mensais de controle de... ...descritas e/ou correlatas; Conhecimentos avançados do pacote office; Perfil analítico e orientado à solução de problemas; Proatividade...
- ...clareza na navegação. - Curadoria de Dados: Filtrar e organizar informações críticas, priorizando o que é relevante para o negócio em cada... ...de visualização para customização de reports. - Pacote Office Avançado: PowerPoint de alto nível (storytelling e design de slides...
- Descrição da vaga Coordenar a execução de serviços técnicos relacionados a Segurança da Informação, envolvendo desenvolvimento, monitoramento e controle da política e dos planos de ação aprovados, realizando interações com parceiros de infraestrutura e sistemas, e também...
R$ 11.000 a R$ 16.000 mensal
...support a Life Sciences company’s Enterprise Quality organization. This role partners closely with the Director of Enterprise Quality Business Excellence & Value Realization, operating at the intersection of portfolio governance, financial oversight, and digital enablement...- ...risco e preservação do capital dos nossos clientes. Responsabilidades: Controlar diariamente as posições dos fundos e validar informações operacionais; Realizar conciliação e batimento de cotas, posições e movimentações financeiras; Utilizar Excel e SQL para consultas...
- ...gerenciais, rotineiros e sob demanda; Validar dados: garantir a informação correta dos dados; Validar dados, gerar relatórios e... ...complexos. Esperamos de você Formação superior completa; Pacote office avançado; Excel avançado; Power BI avançado; Análise crítica; Visão...
- ..., providing quantitative and technology expertise across front office, pricing and risk. We support more than 80 financial institutions... ...colleagues and major financial institutions on high-value, business-critical initiatives. About the Client Phi Partners has been...
- IT Office • Experiência comprovada em gestão de portfólio de projetos de TI em ambientes corporativos complexos • Experiência com projetos... ...e portfólio • Domínio de conceitos financeiros de CAPEX/OPEX e Business Case • Conhecimento em frameworks de governança de TI...
- ...scripts to extract, analyze, validate, reconcile, and report on business data. Strong data validation, reconciliation, and root cause... ...confer encesExposure to work in an IT environment that adheres to rigorous security and compliance standards defined by IS O/SOC
- Supervisor de Back Office Atividade Principal: Garantir a execução eficiente das rotinas operacionais de cadastro de processos e elaboração de subsídios jurídicos, assegurando qualidade, produtividade e cumprimento de prazos. Principais responsabilidades: - Supervisionar...
- Senior Officer – Corporate | Banco de Grande Porte Estamos buscando um(a) Senior Officer – Corporate com perfil altamente comercial e orientado a resultados para integrar o time de um dos maiores bancos do país. Se você é movido por desafios, tem forte capacidade de...
- ...de Crescimento na Organiza ção;Diversas parcerias e descontos pela reg ião. No seu dia-a- dia :Extrair, manipular e analisar informações de bancos de dados e man uais.Gerar e elaborar relatórios, indicadores operacionais e de result ados.Analisar periodicamente os relatórios...
- Corporate IT is the backbone of our business. Our team helps the company to develop a competitive advantage through defining our technology... ...and pricing records. Maintaining and updating supplier information such as qualifications, delivery times, product range. Researching...
- ...prazo. Nosso time combina visão estratégica, profundidade analítica e forte cultura de dono . Sobre a área A área de Middle Office é responsável pela coordenação operacional, documental e regulatória dos veículos de investimento da Prisma, atuando diretamente com...
- ...L2 Application Support Engineer (Front Office) to join our team in Sao Paulo, Brazil.... ...services and solutions provider, led by Business and Technology Consulting. ITC Infotech... ...gender identity or expression, genetic information, marital status, citizenship status or any...
Deseja receber mais vagas?
Assine e receba vagas semelhantes a Business Information Security Officer. Seja o primeiro a se candidatar!
