22 Aug
|
State Street
|
Toronto
22 Aug
State Street
Toronto
Who We Are Looking ForThe Vice President, Business Information Security Officer (BISO) provides cyber risk management oversight to lines of business and legal entities within State Street, sitting within the first line of defense and reporting into the Senior BISO (MD). The VP BISO leads a small team focused on providing cyber advisory services, building application- and service-level threat models, executing a cyber book of work aligned to State Street business units, and delivering metrics and cyber-driven content that support the business’s enhanced decision‑making framework.BISO roles and responsibilities span multiple domains, including Information Security and Risk Management, Cyber Incident and Response Management, Cyber Controls Analysis, and Cyber Reporting.The Non-Technical Dimension: Trusted Advisor & Change AgentThe VP BISO is a strategic change agent and thought leader. They must build trust through information and transparency with senior executives, and be able to present to the highest levels of leadership, with the appropriate blend of technical and business detail. As a critical partner to senior business leaders in the first line of defense,
the incumbent must be skilled at influencing change to lead teams to further adopt cyber controls while reducing overall residual risk to their businesses. The VP identifies key stakeholders, establishes current relationships, and coordinates resources and Security Guardians to broker the right conversations across GCS and the business.The Technical DimensionThis role requires a strong technical background and the ability to understand emerging technologies, their purpose, security requirements, and benefits to a large financial firm. The VP is a strong cyber controls analyst who can correlate the firm’s cyber risk taxonomy to applicable business processes to conclude on the residual cyber risks aligned to business functions and critical business services, with practitioner‑level depth in at least two focus areas. They must understand threats and risk mitigations, perform cyber risk assessments at the application, platform, and system levels, and recommend solutions that protect the
📌 Business Information Security Officer-Vp (Toronto)
🏢 State Street
📍 Toronto