|
| Job Title: Chief Information Security Officer-Manager of Information Protection
Position Overview
Bank of Hawaii is looking for a Chief Information Security Officer (CISO) to join their team. The Chief Information Security Officer (CISO) focuses on leading and driving the information security program for Bank of Hawaii Corporation (BOHC) and all of its subsidiaries. This position manages the Information Protection department in Honolulu, Hawaii.
Position Responsibilities
Information Security Strategy
The CISO develops and leads the systems information security strategy and drives improvements to stay ahead of increasing security threats. The CISO establishes and executes an Information Security Architecture and Program consistent with BOHC risk management standards and regulatory requirements. The Information Security Architecture includes (but is not limited to): GLBA, ID Theft and Privacy Programs. Elements of the Programs include:
• policies and security standards/baselines,
• information security risk awareness programs (training, general education, internal consultative services, etc.),
• information security risk self assessment program,
• review of system development, maintenance and acquisition efforts (to ensure efficient and adequate security provisions), and
• periodic reporting to executive management and board of directors on effectiveness of Programs
Relationship Management
As a proactive leader, the CISO fosters close working relationships within Bank of Hawaii. The CISO will work closely with:
• Bank of Hawaii Information Management Support Group and Risk Specialists in the identification of vulnerabilities that may
affect information assets, providing advisory support in the design of cost-effective security and risk management practices, and
• internal and external auditors, and regulators regarding their role in information security policies, procedures and audit compliance
Technical Guru
The CISO will perform as a valued member and/or expert advisor to major technology projects and selected task forces. The successful incumbent maintains technical expertise on the security aspects of existing, new and evolving systems, applications, and networks (including communication networks).
Leadership
As the manager of the Information Protection department, the CISO will manage a staff and will be responsible to attract, retain and motivate the team to achieve business objectives and maintain favorable employee relations climate.
The qualified candidate for the Chief Information Security Officer position meets the following requirements:
Education/Certification
o Bachelor’s degree in Management Information Systems, Computer Science or related field, with courses in business management, computer science, risk management or related courses
o CISSP Certification is preferred
Experience
o 10+ years of progressive experience and responsibility in the information technology discipline and IS Security
o 5+ years of experience within the financial industry
o Thorough knowledge of security controls for online and distributed computing systems, technology and networks
o Experience with current IT security technologies including but not limited to LAN/WAN technology, wireless security,
penetration testing, identity management, identity theft, denial of service attacks, hacking techniques, access list
management, etc.
o Proven experience in developing and administering security policies and procedures
o Experience in successfully and effectively implementing, testing and maintaining security plans
o Demonstrated knowledge of regulatory and risk management requirements from a security perspective for the financial
industry including GLBA, ID Theft Red Flags and HIPAA
o Experience in establishing appropriate priorities for tasks to be accomplished based on project plans and management
direction
Technical Skills
o Advanced understanding in one or more of the following areas: Operating System Security, Database Security, Network
Security, Firewalls, Computer Security Incident response, Vulnerability Scanning, or PCI DSS
o Strong understanding of Information Security Standards and Technical Security Risk Assessment
o Demonstrated expertise in a variety of the field's concepts, practices, procedures, security technologies, standards, and networking architectures. Knowledge of industry trends & security issues in applications/systems development, telecom,
desktops, client/server, & mobile computing
o Knowledge of vulnerabilities that may cause inappropriate or accidental access, destruction, or disclosure of information
Other Job Qualifications
o Ability to work with minimum supervision and manage several projects simultaneously under pressure with tight deadlines
o Ability to communicate well in a technical & non-technical manner with employees at all levels, vendors, customers
o Team player with excellent interpersonal and communication skills, and a demonstrated ability to influence others and work effectively with a wide variety of people including senior management
o Excellent analytical and research skills
o Demonstrated ability to partner with business units to achieve goals
o Excellent interpersonal and communication (both oral and written) skills, with the ability to successfully interact with and
relate necessary information to executive management.
To view the complete job description and apply for this position with Bank of Hawaii, please visit our careers website. Only candidates who apply online will be considered.
www.boh.com/careers
We foster a drug-free work environment.
We are proud to be an Equal Employment Opportunity/Affirmative Action Employer.
| |
|
|