Business Information Security Officer
HCLTech
We are HCLTech, one of the world's largest and fastest growing technology and DSA companies with over 227,000 professionals across 60 countries, driving progress through industry-leading capabilities focused on Digital, Engineering and Cloud. The driving force behind this work, our people, is a diverse, creative and passionate audience that enables us to continually raise the bar for excellence in our services. We strive to empower each of our professionals to achieve their best, while also striving to help them find their daily inspiration and become the best version of themselves. Job Title: Business Information Security Officer (BISO / BSO) Role Summary The Business Information Security Officer (BISO/BSO) serves as the primary security liaison between the business, enterprise security, and GRC functions. The role ensures that information security risks are appropriately identified, assessed by accountable teams (e.g., GRC, vendor risk, compliance), clearly communicated to business stakeholders, and effectively acted upon. The BISO enables secure-by-design execution across business initiatives while ensuring alignment with enterprise security frameworks and regulatory requirements such as ISO 27001, SOC 2, NIST, and FedRAMP. Key Responsibilities 1. Secure-by-Design Advisory & Consulting Act as a trusted security advisor to business and delivery teams, embedding security-by-design principles into initiatives from early design stages. Translate enterprise security standards and regulatory requirements (ISO 27001, SOC 2, NIST, FedRAMP) into actionable guidance and security user stories. Collaborate with architecture, engineering, and security teams to ensure security requirements are understood and incorporated into solution design. 2. SDLC Security Enablement (Coordination Role) Ensure security requirements are integrated into SDLC processes for in-scope applications. Coordinate with GRC, application security, and engineering teams to ensure security assessments, control validation, and remediation activities are executed. Track security findings and ensure remediation plans are clearly understood and actioned by delivery teams. 3. Third-Party Risk & Due Diligence Coordination Act as the business-facing liaison for third-party risk management activities conducted by GRC and vendor risk teams. Ensure due diligence requests are completed by relevant stakeholders and that outcomes are communicated in business terms. Facilitate business understanding of vendor risk posture and support informed risk decisions. 4. Divestiture / Transformation Support (Orthopedic Programs) Support security activities for orthopedic divestiture and transformation initiatives. Coordinate across IT, GRC, security, and business teams to ensure security requirements are addressed during transition planning and execution. Ensure alignment with enterprise security frameworks and regulatory obligations throughout the transformation lifecycle. 5. Physical Site Security Coordination Support physical security assessments for scoped orthopedic sites conducted by appropriate security teams. Ensure findings, gaps, and remediation actions are clearly communicated to business and site leadership. Track remediation progress and support closure of identified risks. 6. Risk Governance, Communication & Collaboration Facilitate security risk acknowledgement and decision-making discussions between GRC and business stakeholders. Ensure risks, control gaps, and mitigation plans are clearly understood and appropriately documented. Enable risk acceptance processes by ensuring business stakeholders are informed and aligned. Collaborate across multiple teams (GRC, IT, engineering, legal, compliance, and business units) to ensure coordinated security outcomes. Key Deliverables Security-by-design guidance aligned to ISO 27001, SOC 2, NIST, and FedRAMP frameworks Coordinated tracking of SDLC security activities and remediation status Third-party risk communication summaries (from GRC outputs) Divestiture security coordination artifacts and transition support documentation Physical site assessment coordination reports and action tracking Risk acknowledgement and acceptance documentation Executive-level security status reporting for business stakeholders Core Competencies Strong understanding of enterprise security frameworks: ISO 27001, SOC 2, NIST, FedRAMP Excellent stakeholder management and cross-functional collaboration skills Ability to translate technical risk into business impact and decision-ready language Strong coordination Equality & Opportunity for All Representing 165 nationalities worldwide, we are proud to be an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, religion, sex, color, age, national origin, pregnancy, sexual orientation, disability or genetic information, or any other protected classification, in accordance with federal, state and/or local laws At HCLTech, we don't just offer jobs — we offer journeys. Join a global team where your work drives innovation, your ideas matter, and your growth is supported every step of the way. Why Choose HCLTech? Be part of a purpose-led organization with a global footprint Collaborate with diverse teams across borders Work on cutting-edge technologies in enterprise integration Enjoy career mobility, continuous learning, and a culture of inclusion Ready to #FindYourSpark and be part of a team that's #SuperchargingProgress ? Apply now or reach out to learn more about this exciting opportunity!
Vaga publicada há 5 dias atrás
Empregos semelhantes que podem ser interessantes para vocêCom base na vaga Business Information Security Officer em São Caetano do Sul, SP
- ...and become the best version of themselves. Job Title: Business Information Security Officer (BISO / BSO) Role Summary The Business Information... ...stakeholders, and effectively acted upon. The BISO enables secure-by-design execution across business initiatives while...
- ...automations. This role bridges the gap between business operations and technology. You will act... ...databases and ensure data integrity as information flows between the CRM, ERP, and operational software. IT Administration & Security Administer core software platforms...
- ...ambientes de segurança utilizando as soluções nativas do Google Cloud Security. Liderar iniciativas relacionadas a monitoramento, detecção de... ...Architect. Certificação Google Professional Security Operations Analyst. Informações Adicionais: Atuação 100% remota Contratação CLT...
- ...scripts to extract, analyze, validate, reconcile, and report on business data. Strong data validation, reconciliation, and root cause... ...confer encesExposure to work in an IT environment that adheres to rigorous security and compliance standards defined by IS O/SOC
- ...interpretação de dados e indicadores de performance, transformando informações em insights para o negócio; Habilidade para comunicar análises... ...dashboards e análises gerenciais; Domínio do pacote Microsoft Office, especialmente Excel, PowerPoint e Power Automate; Ensino...
R$ 11.000 a R$ 16.000 mensal
...support a Life Sciences company’s Enterprise Quality organization. This role partners closely with the Director of Enterprise Quality Business Excellence & Value Realization, operating at the intersection of portfolio governance, financial oversight, and digital enablement...- ...tudo o que fazemos! Estamos em busca de um(a) Analista de Informações Gerenciais para atuar de forma 100% presencial. Nessa posição,... ...e análises gerenciais; ~ Domínio do pacote Microsoft Office, especialmente Excel, PowerPoint e Power Automate; ~ Ensino...
- ...Grupo Casas Bahia. /n Perfil analítico, com interesse em trabalhar com dados e indicadores; Boa comunicação para apresentar informações de forma clara e objetiva; Organização e atenção a detalhes; Conhecimento intermediário em Excel; Noções de Power BI ou interesse...
- ...Summary We are a family-owned business group overseeing a... ...providers , including medical offices, travel partners, production... ...entities, ensuring documents are secure, accessible, and well categorized... ...judgment with sensitive information ~ Reliable high-speed internet...
- About Us: Temu is seeking a highly motivated and experienced Business Development Managerto join our team. As a rapidly growing company, we are looking for talented individuals committed to helping us achieve our goals. In this role, you will have the opportunity to work...
- Vaga: Analista de Segurança da Informação Pleno (Foco Microsoft Security & Compliance) Modelo: CLT | Remoto... ...Defender for Endpoint, Identity e Office 365 Experiência com classificação,... ...Operations Analyst SC-400 — Microsoft Information Protection Administrator...
- ...dashboards, and generate reports, but often lack the structured thinking to turn those outputs into decisions that actually change the business. This role exists to close that gap. Responsibilities: Diagnosing drivers of customer satisfaction, loyalty, and operational...
- ...CFDs, ETFs, indices, commodities, or other multi-asset trading products Strong partner network and proven track record of driving business growth Excellent communication and stakeholder management skills Proficiency in English and local languages is essential Preferred...
- ...are open to candidates who do not have a Bachelor's degree but have experience in the area. Experience writing professionally (business analysts, research analyst, copywriter, journalist, technical writer, editor, translator, etc.) Understanding of Excel and Google...
- ...a trusted, intelligent trading platform. Our current vacancy | Full-time | Long-term | REMOTE Responsibilities Formulate business development plans, assist the team in completing the introduction, negotiation, cooperation, and signing of business cooperation projects...
- Responsabilidades e Atribuições Efetuar detalhamento de projeto na sua especialidade de processos, conforme normas e padrões vigentes; Realizar levantamento de campo e de documentação técnica; Atualizar, revisar e elaborar documentação técnica pertinente para registro do...
- Vaga: Analista de Suporte N1 – Front Office (Capital Markets) Contexto Buscamos profissional para atuar no suporte de primeiro nível (N1) às aplicações de Front Office de uma grande instituição financeira, com foco em Mercado de Capitais / Renda Fixa . O...
- About the Role We are seeking a highly connected, results-oriented Business Development & Strategic Partnerships Manager to accelerate global growth through strategic alliances, influencer ecosystems, community partnerships, and market expansion initiatives. This...
R$ 2.200 a R$ 3.000 mensal
Vaga: Assistente de Back Office – Provedor de Internet Fibra Óptica ?? Local: ABC Paulista ?? Regime: CLT ?? Horário: Segunda a sexta-feira ?? Modalidade: Presencial Responsabilidades Suporte operacional às equipes comercial e técnica; Cadastro e conferência de contratos...R$ 1.621
Descrição Local de Trabalho: Rua Serafim Constantino - Centro, São Caetano do Sul/SP Número de vagas: 20 Local de trabalho: São Caetano do Sul, SP Regime de contratação de tipo: Efetivo – CLT Jornada: Período Integral Área e especialização profissional...R$ 1.800 a R$ 2.500 mensal
Descrição Local de trabalho: São Caetano do Sul, SP Regime de contratação de tipo: Efetivo – CLT Jornada: Período Integral Área e especialização profissional: Administração - Administração Geral Nível hierárquico: Assistente Requisitos Escolaridade...- ...Technical Business Analyst – FIX Protocol / Trading Applications We are looking for a Technical Business Analyst with strong experience in FIX Protocol and trading applications to support technology initiatives within a global financial services environment. This...
R$ 1.621
...Híbrido; Atendimento Presencial, com possibilidades de Home Office após o período de experiência, atingimento das metas e... ...híbrida; Fácil acesso a Unidade Atento São Caetano do Sul. Informações adicionais Salário R$ 1.621,00 + Variável de até R$ 200...R$ 1.621
...e para casos específicos, também via voz; Treinamento Home Office ou Híbrido ; Possibilidade de atuação em home office após... ...ou ter fácil acesso a Unidade Atento São Caetano do Sul. Informações adicionais Salário R$ 1.621,00 + REMUNERAÇÃO VARIÁVEL...R$ 1.621
...presencial Unidade São Caetano do Sul com possibilidade de home office após 90 dias; Treinamento Online (Necessário possuir... ...Preferencialmente residir próximo a Unidade Atento São Caetano do Sul. Informações adicionais Salário R$1.621,00 + Remuneração variável...- Aqui, nas empresas do grupo Atento, composta por Interfile e RBrasil, a experiência do cliente começa com o respeito pelos funcionários. Venha evoluir junto conosco! Estamos de braços abertos para recebê-lo. Acolhemos profissionais que buscam uma primeira oportunidade de...
- ...oferecendo ofertas especiais para pagamento. ~ Treinamento em Home Office / Híbrido / Presencial - Necessário computador ou notebook... ..., a empresa disponibilizará os equipamentos ; Informações adicionais Salário R$ 1.621,00 - Premiação conforme atingimento...
- ...working around the world, from our offices and remotely, to help us... ...with teams across the business to create a people-first environment... ...of local income tax, social security, pension, statutory leaves, and... ...or personal financial information during the hiring proce ss. If...
- ...degree in Computer Science, Information Security, Cybersecurity, Information... ...methodologies, threat modeling, secure SDLC practices, and cloud... ...competing priorities across business units while maintaining strong... ...Information Security Officer (BISO) to join our team. As...
- ...You will... Serve as a local security representative for Playtech,... ...Define, establish, and implement information security governance and... ...Brazil to ensure compliance with business objectives, Brazilian... ...at our new Brazilian Playtech office, where we work together to support...
Deseja receber mais vagas?
Assine e receba vagas semelhantes a Business Information Security Officer. Seja o primeiro a se candidatar!
