Wanted: Business Information Security Officer
HCLTech
We are HCLTech, one of the world’s largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud. The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves. Job Title: Business Information Security Officer (BISO / BSO) Role Summary
The Business Information Security Officer (BISO/BSO) serves as the primary security liaison between the business, enterprise security, and GRC functions. The role ensures that information security risks are appropriately identified, assessed by accountable teams (e.g., GRC, vendor risk, compliance), clearly communicated to business stakeholders, and effectively acted upon. The BISO enables secure-by-design execution across business initiatives while ensuring alignment with enterprise security frameworks and regulatory requirements such as ISO 27001, SOC 2, NIST, and FedRAMP. Key Responsibilities
1. Secure-by-Design Advisory & Consulting Act as a trusted security advisor to business and delivery teams, embedding security-by-design principles into initiatives from early design stages.
Translate enterprise security standards and regulatory requirements (ISO 27001, SOC 2, NIST, FedRAMP) into actionable guidance and security user stories.
Collaborate with architecture, engineering, and security teams to ensure security requirements are understood and incorporated into solution design. 2. SDLC Security Enablement (Coordination Role) Ensure security requirements are integrated into SDLC processes for in-scope applications.
Coordinate with GRC, application security, and engineering teams to ensure security assessments, control validation, and remediation activities are executed.
Track security findings and ensure remediation plans are clearly understood and actioned by delivery teams. 3. Third-Party Risk & Due Diligence Coordination Act as the business-facing liaison for third-party risk management activities conducted by GRC and vendor risk teams.
Ensure due diligence requests are completed by relevant stakeholders and that outcomes are communicated in business terms.
Facilitate business understanding of vendor risk posture and support informed risk decisions. 4. Divestiture / Transformation Support (Orthopedic Programs) Support security activities for orthopedic divestiture and transformation initiatives.
Coordinate across IT, GRC, security, and business teams to ensure security requirements are addressed during transition planning and execution.
Ensure alignment with enterprise security frameworks and regulatory obligations throughout the transformation lifecycle. 5. Physical Site Security Coordination Support physical security assessments for scoped orthopedic sites conducted by appropriate security teams.
Ensure findings, gaps, and remediation actions are clearly communicated to business and site leadership.
Track remediation progress and support closure of identified risks. 6. Risk Governance, Communication & Collaboration Facilitate security risk acknowledgement and decision-making discussions between GRC and business stakeholders.
Ensure risks, control gaps, and mitigation plans are clearly understood and appropriately documented.
Enable risk acceptance processes by ensuring business stakeholders are informed and aligned.
Collaborate across multiple teams (GRC, IT, engineering, legal, compliance, and business units) to ensure coordinated security outcomes. Key Deliverables
Security-by-design guidance aligned to ISO 27001, SOC 2, NIST, and FedRAMP frameworks
Coordinated tracking of SDLC security activities and remediation status
Third-party risk communication summaries (from GRC outputs)
Divestiture security coordination artifacts and transition support documentation
Physical site assessment coordination reports and action tracking
Risk acknowledgement and acceptance documentation
Executive-level security status reporting for business stakeholders Core Competencies
Strong understanding of enterprise security frameworks: ISO 27001, SOC 2, NIST, FedRAMP
Excellent stakeholder management and cross-functional collaboration skills
Ability to translate technical risk into business impact and decision-ready language
Strong coordination Equality & Opportunity for All
Representing 165 nationalities worldwide, we are proud to be an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, religion, sex, color, age, national origin, pregnancy, sexual orientation, disability or genetic information, or any other protected classification, in accordance with federal, state and/or local laws At HCLTech, we don’t just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way. Why Choose HCLTech?
Be part of a purpose-led organization with a global footprint
Collaborate with diverse teams across borders
Work on cutting-edge technologies in enterprise integration
Enjoy career mobility, continuous learning, and a culture of inclusion Ready to #FindYourSpark and be part of a team that’s #SuperchargingProgress ?
Apply now or reach out to learn more about this exciting opportunity!
Vaga publicada há 5 dias atrás
Empregos semelhantes que podem ser interessantes para vocêCom base na vaga Wanted: Business Information Security Officer em Bauru, SP
- ...ambientes de segurança utilizando as soluções nativas do Google Cloud Security. Liderar iniciativas relacionadas a monitoramento, detecção de... ...Architect. Certificação Google Professional Security Operations Analyst. Informações Adicionais: Atuação 100% remota Contratação CLT...
- ...automations. This role bridges the gap between business operations and technology. You will act... ...databases and ensure data integrity as information flows between the CRM, ERP, and operational software. IT Administration & Security Administer core software platforms and...
- ...scripts to extract, analyze, validate, reconcile, and report on business data. Strong data validation, reconciliation, and root cause... ...confer encesExposure to work in an IT environment that adheres to rigorous security and compliance standards defined by IS O/SOC
R$ 16.000
...support a Life Sciences company’s Enterprise Quality organization. This role partners closely with the Director of Enterprise Quality Business Excellence & Value Realization, operating at the intersection of portfolio governance, financial oversight, and digital enablement...- ...a trusted, intelligent trading platform. Our current vacancy | Full-time | Long-term | REMOTE Responsibilities Formulate business development plans, assist the team in completing the introduction, negotiation, cooperation, and signing of business cooperation projects...
- About Us: Temu is seeking a highly motivated and experienced Business Development Managerto join our team. As a rapidly growing company, we are looking for talented individuals committed to helping us achieve our goals. In this role, you will have the opportunity to work...
- ...CFDs, ETFs, indices, commodities, or other multi-asset trading products Strong partner network and proven track record of driving business growth Excellent communication and stakeholder management skills Proficiency in English and local languages is essential...
- ...We are open to candidates who do not have a Bachelor's degree but have experience in the area. Experience writing professionally (business analysts, research analyst, copywriter, journalist, technical writer, editor, translator, etc.) Understanding of Excel and Google...
- ...Vaga: Analista de Suporte N1 – Front Office (Capital Markets) Contexto Buscamos profissional para atuar no suporte de primeiro nível (N1) às aplicações de Front Office de uma grande instituição financeira, com foco em Mercado de Capitais / Renda Fixa . O profissional...
- ...working around the world, from our offices and remotely, to help us... ...with teams across the business to create a people-first environment... ...of local income tax, social security, pension, statutory leaves, and... ...or personal financial information during the hiring proce ss....
- ...closely with cross-functional teams (Regulatory Operations, IT Security, QA, Validation) to meet compliance and audit readiness. Maintain... ..., and user acceptance testing (UAT) to support uninterrupted business operations. Proactively identify and drive opportunities for process...
- ...Design and implement Azure Landing Zones governance networking security Develop HLDLLD architecture diagrams BoM pricing and licensing... ...Secondary Skills Infrastructure storage and business continuity solution design SQL Server upgrades and modernization...
- ...highly technical, and passionate about applying AI to solve real business and engineering problems at scale. Responsibilities Build... ...containers, and infrastructure automation. Knowledge of observability, security, and performance for AI systems in production. Experience...
- ...and written communication skills suitable for professional U.S. business communication Understanding of American business culture,... ...and comfort learning new tools and systems Professional home office setup suitable for business calls Reliable high-speed internet...
- ...orchestration, transformation) • Experience with security concepts including OAuth, JWT, certificates, encryption, and secure data exchange • Experience with Oracle... ...Enterprise Integration Architect . This role bridges business and IT by translating business needs into...
- ...mastery, ownership, and transparency. With offices in New York, Austin, Miami, Denver,... ...have 60+ Data team members in our Investor business who build, create and maintain our data... ...require innovative thinking — even when information is incomplete or ambiguous. Use AI and tooling...
- ...guide them through our journey with us. What is this challenge about Design and implement scalable, secure, and cost-effective cloud architectures aligned with business needs Build and manage Infrastructure as Code solutions using Terraform and other automation tools...
- ...people working around the world, from our offices and remotely, to help us achieve our... ...high-impact initiatives throughout the business, using insight to solve challenges, scale... ...the eyes and ears of the company, feeding information from the market back into company strategy...
- ...solving real-world problems, and want to be part of a team that’s... ...globally. Through our deep business knowledge, operational excellence... ...Bachelor’s degree in information systems, Computer Science, Data... ...with proficiency in Microsoft Office Suite. Familiarity with BI tools...
- ...with customers by understanding their goals, preferences, and business needs. Support the end-to-end matching process by reviewing... ...discretion and judgment when handling confidential or sensitive information. Experience working with global clients or in remote-first...
- ...in dire need of it. Robin, our autonomous AI agent, handles back-office work end to end. Our Heroes, a sharp human-in-the-loop team,... ...and maintains AWS‑native infrastructure that is observable, secure, and cost‑efficient. Works cross‑functionally to understand customer...
- ...Spark, SQL, R) and Python libraries ~ Business experience solving analytical issues through... ...methods, data mining techniques, and information retrieval ~ Experience in applying... ...talent who enjoy taking on challenging work, want to grow their skills and experiences...
- ...necessary to set up fields, profiles, roles, security & other configurations Investigate... ...dashboards to support the delivery of business key metrics. Contribute and prepare effective... ...orientation, disability or genetic information, or any other protected classification,...
- Contractor (PJ) Rate - 25 - 40hr USD - depending on experience Must Haves · 7+ years of experience as an SAP Functional Consultant / Business Partner (SAP R/3 is what they are migrating to) · Strong expertise across FICO (Finance ), MM (Procurement ), and WM (...
- ...analytics deployments for customers with complex technical and business needs. You will partner closely with customers, internal stakeholders... ...experience troubleshooting distributed systems, networking, security, and monitoring tools such as Grafana and Coralogix. ~...
- ...payroll, compliance, legal, facilities, asset protection, and analytics. You’ll partner closely with Product, Architecture, and business teams to build scalable, reliable integrations that improve operational efficiency and employee experience. Key...
- ...release management Exposure to AI/ML-driven forecasting and scenario planning workflows Experience supporting IBP (Integrated Business Planning) initiatives in CPG or supply chain environments Background creating runbooks, reference architectures, and...
- ...with industry-leading utilities, EPCs, and industrial customers, helping them solve critical challenges while driving sustainable business growth. Responsibilities Market Development & Business Growth • Develop and execute market expansion strategies based on the...
- ...Designer ~ Full-time, Remote | US Central Time Business Hours A letter from our client Our client wanted us to share this role directly in their own words... ...and self-directed mindset What they DO NOT want Someone who requires constant follow-up Someone...
R$ 3.500
...to the U.S. market and a clear growth path for professionals who want to build an international career in recruitment. What We... ...12GB RAM High-speed internet Headset with microphone Quiet home office Build your international career in Recruitment. Work directly...
Deseja receber mais vagas?
Assine e receba vagas semelhantes a Wanted: Business Information Security Officer. Seja o primeiro a se candidatar!
