Inscreva-se para aceder a todos os recursos do nosso serviço
  • Pesquisa de emprego
  • Favorito
  • Criar um CV
    Novo
  • Salários
  • Alertas de emprego

Business Information Security Officer

HCLTech

We are HCLTech, one of the world’s largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud.

The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves.

Job Title: Business Information Security Officer (BISO / BSO)

Role Summary The Business Information Security Officer (BISO/BSO) serves as the primary security liaison between the business, enterprise security, and GRC functions. The role ensures that information security risks are appropriately identified, assessed by accountable teams (e.g., GRC, vendor risk, compliance), clearly communicated to business stakeholders, and effectively acted upon.

The BISO enables secure-by-design execution across business initiatives while ensuring alignment with enterprise security frameworks and regulatory requirements such as ISO 27001, SOC 2, NIST, and FedRAMP.

Key Responsibilities 1. Secure-by-Design Advisory & Consulting

Act as a trusted security advisor to business and delivery teams, embedding security-by-design principles into initiatives from early design stages. Translate enterprise security standards and regulatory requirements (ISO 27001, SOC 2, NIST, FedRAMP) into actionable guidance and security user stories. Collaborate with architecture, engineering, and security teams to ensure security requirements are understood and incorporated into solution design.

2. SDLC Security Enablement (Coordination Role)

Ensure security requirements are integrated into SDLC processes for in-scope applications. Coordinate with GRC, application security, and engineering teams to ensure security assessments, control validation, and remediation activities are executed. Track security findings and ensure remediation plans are clearly understood and actioned by delivery teams.

3. Third-Party Risk & Due Diligence Coordination

Act as the business-facing liaison for third-party risk management activities conducted by GRC and vendor risk teams. Ensure due diligence requests are completed by relevant stakeholders and that outcomes are communicated in business terms. Facilitate business understanding of vendor risk posture and support informed risk decisions.

4. Divestiture / Transformation Support (Orthopedic Programs)

Support security activities for orthopedic divestiture and transformation initiatives. Coordinate across IT, GRC, security, and business teams to ensure security requirements are addressed during transition planning and execution. Ensure alignment with enterprise security frameworks and regulatory obligations throughout the transformation lifecycle.

5. Physical Site Security Coordination

Support physical security assessments for scoped orthopedic sites conducted by appropriate security teams. Ensure findings, gaps, and remediation actions are clearly communicated to business and site leadership. Track remediation progress and support closure of identified risks.

6. Risk Governance, Communication & Collaboration

Facilitate security risk acknowledgement and decision-making discussions between GRC and business stakeholders. Ensure risks, control gaps, and mitigation plans are clearly understood and appropriately documented. Enable risk acceptance processes by ensuring business stakeholders are informed and aligned. Collaborate across multiple teams (GRC, IT, engineering, legal, compliance, and business units) to ensure coordinated security outcomes.

Key Deliverables Security-by-design guidance aligned to ISO 27001, SOC 2, NIST, and FedRAMP frameworks Coordinated tracking of SDLC security activities and remediation status Third-party risk communication summaries (from GRC outputs) Divestiture security coordination artifacts and transition support documentation Physical site assessment coordination reports and action tracking Risk acknowledgement and acceptance documentation Executive-level security status reporting for business stakeholders

Core Competencies Strong understanding of enterprise security frameworks: ISO 27001, SOC 2, NIST, FedRAMP Excellent stakeholder management and cross-functional collaboration skills Ability to translate technical risk into business impact and decision-ready language Strong coordination

Equality & Opportunity for All Representing 165 nationalities worldwide, we are proud to be an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, religion, sex, color, age, national origin, pregnancy, sexual orientation, disability or genetic information, or any other protected classification, in accordance with federal, state and/or local laws

At HCLTech, we don’t just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way.

Why Choose HCLTech? Be part of a purpose-led organization with a global footprint Collaborate with diverse teams across borders Work on cutting-edge technologies in enterprise integration Enjoy career mobility, continuous learning, and a culture of inclusion

Vaga publicada há 3 dias atrás
Empregos semelhantes que podem ser interessantes para vocêCom base na vaga Business Information Security Officer em Recife, PE
  •  ...and become the best version of themselves. Job Title: Business Information Security Officer (BISO / BSO) Role Summary The Business Information...  ...stakeholders, and effectively acted upon. The BISO enables secure-by-design execution across business initiatives while... 

    Jobtome

    Recife, PE
    há 4 dias atrás
  •  ...automations. This role bridges the gap between business operations and technology. You will act...  ...databases and ensure data integrity as information flows between the CRM, ERP, and operational software. IT Administration & Security Administer core software platforms... 

    Jobtome

    Recife, PE
    há 6 dias atrás
  •  ...ambientes de segurança utilizando as soluções nativas do Google Cloud Security. Liderar iniciativas relacionadas a monitoramento, detecção de...  .... Certificação Google Professional Security Operations Analyst. Informações Adicionais: Atuação 100% remota Contratação CLT... 

    2Brain Group

    Recife, PE
    há 3 horas atrás
  •  ...are looking for a Senior Application Security Engineer to architect and build automated...  ...within the SDLC, engineering AI-enabled secure code scanning, hardened baseline...  ...Flextime : Flexible schedule with remote and office options. Requirements 6+ years of software... 

    AgileEngine

    Recife, PE
    há 3 horas atrás
  •  ...are looking for a Middle Application Security Engineer to execute hands-on DevSecOps...  ...deploying automated hardened baselines and secure coding patterns; - Work directly with...  ...Flextime : Flexible schedule with remote and office options. Requirements 3–5 years of... 

    AgileEngine

    Recife, PE
    há 3 horas atrás
  •  ...We are looking for a Senior Application Security Engineer to architect and build automated...  ...within the SDLC, engineering AI-enabled secure code scanning, hardened baseline automation...  ...companies. - Flextime : Flexible schedule with remote and office options.... 

    AgileEngine

    Recife, PE
    há 1 dia atrás
  •  ...inovadora, a nossa vaga de Docente da disciplina de Segurança da Informação, foi feita pra você! Esperamos que você... Planeje e...  ...de saúde e odontológico Vale Refeição/ Alimentação Auxílio Home Office Auxílio Idiomas Auxílio Creche Auxílio Lentes de Contato Seguro... 

    CESAR

    Recife, PE
    há 3 dias atrás
  •  ...your mark, your place is here. Become Sangue Laranja. Sobre a vaga e missão do cargo Você fará parte do nosso time de Cloud Security e atuará diretamente com AWS, GCP e Microsoft Azure, garantindo segurança, conformidade e eficiência de operações.  No seu dia a... 

    Inter Carreiras

    Recife, PE
    há 2 dias atrás
  •  ...scripts to extract, analyze, validate, reconcile, and report on business data. Strong data validation, reconciliation, and root cause...  ...confer encesExposure to work in an IT environment that adheres to rigorous security and compliance standards defined by IS O/SOC

    Jobtome

    Recife, PE
    há 3 dias atrás
  • Auxiliar de Suporte de Tecnologia da Informação Junior - Detalhes da Vaga. ● Atender usuários no dia a dia. ● Resolver problemas básicos de hardware, software, rede, acessos e sistemas. ● Organizar chamados e pendências. ● Apoiar rotinas operacionais. ● Aprender rápido... 

    Caderno Nacional

    Recife, PE
    há 1 dia atrás
  •  ...are looking for a Tech Lead Application Security Engineer to serve as the regional...  ...across ASPM integrations and AI-enabled SDLC secure code scanning. You will facilitate clean...  ...top product companies. - Flextime : Flexible schedule with remote and office options.... 

    AgileEngine

    Recife, PE
    há 3 horas atrás
  •  ...Analista Financeiro Family Office O que você vai fazer Acompanhar e analisar investimentos (renda fixa, variável, fundos e alternativos...  .../remoto ?? Contratação: CLT Formação Acadêmica: Não informado Salário: A combinar Cargo: Analista financeiro Empresa... 

    Mobibrasil

    Recife, PE
    há 2 dias atrás
  • R$ 16.000

     ...support a Life Sciences company’s Enterprise Quality organization. This role partners closely with the Director of Enterprise Quality Business Excellence & Value Realization, operating at the intersection of portfolio governance, financial oversight, and digital enablement... 

    Insight Global

    Recife, PE
    há 1 dia atrás
  •  ...ao negócio. No seu dia a dia, você vai:  Contribuir na identificação de vulnerabilidades, riscos e exposição de segurança da informação;  Aplicar técnicas de Pentest para detectar vulnerabilidades;  Contribuir com o time na execução de exercícios de RedTeam;... 

    Inter Carreiras

    Recife, PE
    há 7 dias atrás
  •  ...Sobre a Posição Estamos procurando um(a) Analista de Segurança da Informação para proteger nossos ativos digitais e fortalecer nossa...  ...garantindo que novos sistemas e aplicações sejam desenvolvidos com Security by Design. • Promover a cultura de segurança na empresa... 

    Camarmo Recrutamento e Seleção

    Recife, PE
    há 29 dias atrás
  • Sobre nós ​ A XP Inc. é uma das maiores instituições financeiras independente do Brasil, dona das marcas XP, Rico, Clear, XP Educação, InfoMoney, entre outras. Com mais de 4,6 milhões de clientes ativos e um valor superior a R$ 1,1 trilhão de ativos sob custódia, há...

    XP Inc.

    Recife, PE
    há 3 horas atrás
  • Analista de Segurança da Informação - Sênior (Recife - Hibrido) Na EY, estamos comprometidos em moldar seu futuro com confiança. Nós...  ...DESEJÁVEL) Requisitos desejáveis / Diferenciais: CompTIA Security+ Splunk Certified Admin GIAC Security Essentials (GSEC)... 

    EY

    Recife, PE
    há 10 dias atrás
  •  ...internos. Requisitos e qualificações Requisitos Obrigatórios Ensino superior completo ou em andamento em Sistemas de Informação, Ciência da Computação, Engenharia, Administração ou áreas correlatas. Experiência sólida com o ERP Sankhya, atuando em... 

    Natto

    Recife, PE
    há 10 dias atrás
  •  ...Summary We are a family-owned business group overseeing a...  ...providers , including medical offices, travel partners, production...  ...entities, ensuring documents are secure, accessible, and well categorized...  ...judgment with sensitive information ~ Reliable high-speed internet... 

    Jobtome

    Recife, PE
    há 5 dias atrás
  • Responsabilidades e Atribuições Efetuar detalhamento de projeto na sua especialidade de processos, conforme normas e padrões vigentes; Realizar levantamento de campo e de documentação técnica; Atualizar, revisar e elaborar documentação técnica pertinente para...

    Jobtome

    Recife, PE
    há 1 dia atrás
  •  ...the P&L About the Role: We are looking for a detail-oriented Business Analyst to support evaluation and annotation workflows focused...  ...quality, accuracy, and relevance. Conduct fact-checking to validate information and identify inconsistencies or inaccuracies. Provide detailed... 

    Turing

    Recife, PE
    há 19 dias atrás
  •  ...Identificar necessidades de desenvolvimento e apoiar a construção de soluções de treinamento Competências técnicas Visão de negócio (Business Acumen) Planejamento de força de trabalho (Workforce Planning) Gestão de talentos e performance People Analytics (tomada de... 

    Farmácias Pague Menos

    Recife, PE
    há 9 horas atrás
  •  ...dashboards, and generate reports, but often lack the structured thinking to turn those outputs into decisions that actually change the business. This role exists to close that gap. Responsibilities: Diagnosing drivers of customer satisfaction, loyalty, and operational... 

    Jobtome

    Recife, PE
    há 9 horas atrás
  • Requisitos: Formação em Redes, Segurança da Informação, Computação ou áreas correlatas; Conhecimentos sólidos em redes (TCP/IP, VLAN, VPN, roteamento); Conhecimentos em sistemas operacionais Windows e […] Ler mais
    Recife, PE
    Há 2 meses atrás
  • Estamos em busca de uma pessoa HR Business Partner para atuar de forma estratégica junto às lideranças, conectando a gestão de pessoas aos objetivos do negócio e contribuindo diretamente para o desenvolvimento dos nossos times. Essa posição terá papel fundamental... 

    TrueChange

    Recife, PE
    há 3 dias atrás
  •  ...de pessoas, #vempraAvantia ! Responsabilidades e atribuições Seu dia a dia será: • Apoiar a operação de Segurança da Informação no ambiente corporativo; • Auxiliar no monitoramento de alertas e eventos de segurança; • Apoiar a análise e tratamento... 

    https://www.linkedin.com/company/avantiatecnologiaeseguranca...

    Recife, PE
    há 28 dias atrás
  •  ...About Us: Temu is seeking a highly motivated and experienced Business Development Managerto join our team. As a rapidly growing company, we are looking for talented individuals committed to helping us achieve our goals. In this role, you will have the opportunity to... 

    Temu

    Recife, PE
    há 10 dias atrás
  •  ...Vaga: Analista de Segurança da Informação Pleno (Foco Microsoft Security & Compliance) Modelo: CLT | Remoto...  ...Defender for Endpoint, Identity e Office 365 Experiência com classificação...  ...Operations Analyst SC-400 — Microsoft Information Protection Administrator... 

    Jobtome

    Recife, PE
    há 9 horas atrás
  •  ...Infraestrutura - Serviço de Operação de Soluções de Segurança da Informação no time de Cyber. Na sua rotina, você irá: Operar...  ...: Uma das certificações abaixo: (ISC)² CC CompTIA Security+ EC-Council CEH Certificação oficial de fabricante em alguma... 

    Deloitte-RPO

    Recife, PE
    há 1 dia atrás
  •  ...a trusted, intelligent trading platform. Our current vacancy | Full-time | Long-term | REMOTE Responsibilities Formulate business development plans, assist the team in completing the introduction, negotiation, cooperation, and signing of business cooperation projects... 

    Jobtome

    Recife, PE
    há 1 dia atrás

Deseja receber mais vagas?

Assine e receba vagas semelhantes a Business Information Security Officer. Seja o primeiro a se candidatar!