Executive Director - Business Information Security Officer (BISO)
Core
Senior leader and trusted security advisor supporting all CVS Health lines of business, accountable for leading the BISO team and driving mission, vision, and governance model.
Role type
Executive Director - Business Information Security Officer (BISO)
Builds
Enterprise cybersecurity program and business unit security objectives
Domain
Healthcare / Cybersecurity Governance, Risk, and Compliance (GRC)
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
Strategic leadership, stakeholder management, risk-based decision-making, program and project management, regulatory compliance, business acumen, team leadership, KPI definition and reporting, cross-functional initiative sponsorship
Preferred skills
Enterprise Risk Management concepts, large-scale enterprise security initiative partnership, complex cybersecurity problem-solving, data analysis for decision-making
Technologies
NIST, ISO, HITRUST, HIPAA, PCI
Responsibilities
Serve as trusted advisor to business unit leadership to embed cybersecurity practices; Define and report KPIs and metrics to non-technical teams; Drive risk management strategy and security objectives; Lead critical cross-functional projects; Develop communication materials for senior leaders; Analyze data to support decision-making and drive continuous improvement; Organize leadership-level governance meetings; Assess impact of new laws and regulations; Negotiate to remove security control obstacles; Motivate business units to adopt cybersecurity controls; Lead, coach, and develop BISO team members
Seniority
Executive, hands-on IC with strategy & mentorship
