Friday, February 24, 2012

Job opening - Global Information Security Officer at Citi (Jacksonville, FL; Long Island City, NY)

Citi, the leading global financial services company, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions.  Citi provides consumers, corporations, governments and institutions with a broad range of financial products and services including consumer banking and credit, corporate and investment banking, securities brokerage and transaction services, and wealth management.
The Collections Center of Excellence has a mandate of minimizing Net Credit Loss (NCL) across all of Citi.  It provides default related services to all lines of business, CitiCards, Citibank, Real Estate Lending, and One Main Financial. 
The GISO will be a direct report of the Global Head of Information Security for the Global Consumer Group and a matrix report to the Control Director of the Collections Center of Excellence. The role will be based in Jacksonville, FL or Dallas, Tx.


Responsibilities:

! ·         Engage with senior technology and business executives to drive the information security program and risk management activities.
·         Leadership and management, including hiring, training, staff development, performance management and annual performance reviews.
·         Drive risk-based processes for vendor risk management, including assessment and treatment for risks that may result from partners, consultants and other service providers.
·         Develop and manage information security budgets, and monitor them for variances
·         Participate in the management of information security awareness training programs for employees, contractors and approved system users.
·    &! nbsp;    Work directly with the business units ! to facilitate IT risk assessment and risk management processes, and work with stakeholders on identifying acceptable levels of residual risk.
·         Provide strategic risk guidance for IT projects, including the evaluation and recommendation of technical controls.
·         Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation.

·         Engage in, and facilitate, the following processes;

o    Information Security Risk Assessments,
o    Third Party Information Security Assessments,
o    Identity & Access Management Provisioning,
o    Entitlement\Access Control List Activities,
o    Data Protection Functions,
! o    Application Vulnerability Assessments,
o    Audit Reviews

Apply for this job vacancy

No comments:

Post a Comment