Bring 10+ years of security experience with strong knowledge of security frameworks, NIST, regulatory requirements, security architecture, cloud environments, and the ability to communicate effectively across global and matrixed organizations; CISSP or CRISC preferred. Provide cybersecurity reporting and act as an escalation point for security incidents and issues, working closely with Incident Response, Cyber Defense, Product Security Engineering, and Enterprise Security teams.
Numbers & Facts
Location
New York, NY
Industry
Staffing/Employment Agencies
Salary
$230,000–$260,000 Per Year
Company Size
50 to 99 employees
Year Founded
2002
Website
https://phaxis.com/
Description
Salary is 230k to 260k + 25% bonus
Serve as the senior security advisor for the assigned business unit, partnering with technology, product, finance, legal, audit, compliance, and other leadership teams.
Develop a comprehensive understanding of business operations, critical assets, applications, infrastructure, data, customers, partners, and technology environments to identify and manage security risks.
Lead security compliance and governance activities, including PCI, SOX, ISO 27001, technology audits, and privacy initiatives such as GDPR and CCPA.
Manage client security assurance activities, including customer security questionnaires, client audits and meetings, and collaboration with Legal on security-related contract requirements.
Align cybersecurity strategy with business objectives, technology roadmaps, and product initiatives while ensuring security controls are incorporated throughout the development and implementation process.
Lead cybersecurity risk governance by facilitating monthly risk steering committees and quarterly executive briefings covering threats, risks, program maturity, and key security initiatives.
Drive adoption of enterprise security policies and standards, identify compliance gaps, and partner with stakeholders to implement effective remediation and standardized security solutions.
Provide cybersecurity reporting and act as an escalation point for security incidents and issues, working closely with Incident Response, Cyber Defense, Product Security Engineering, and Enterprise Security teams.
Bring 10+ years of security experience with strong knowledge of security frameworks, NIST, regulatory requirements, security architecture, cloud environments, and the ability to communicate effectively across global and matrixed organizations; CISSP or CRISC preferred.
About Company
We stand for PERSEVERANCE, as we refuse to quit when the journey gets tough. Your gold is our mission, and we search day and night to find it.