Summary Of RoleÂ
The Chief Information Security Officer (CISO) serves as the Bank Security Officer and is responsible for the strategic direction and overall operations of Vast Bank's information security program. The CISO develops and implements a comprehensive information security program to safeguard the bank's customers, employees, and assets. This position is responsible for overseeing the bank’s physical security in compliance with all relevant regulations. The CISO is accountable for providing executive-level reporting and oversight of the bank's information security program. In this role, the CISO will work closely with internal and external stakeholders, including regulatory bodies, to ensure compliance with all applicable laws, regulations, and industry standards.Â
Major Duties and ResponsibilitiesÂ
-
Develop and implement a comprehensive board-approved information security program to protect the bank's customers, employees, and assets, including physical security, information systems, networks, and data.Â
-
Develop, implement, and mature business continuity and cybersecurity incident management plans, testing, and response across the Enterprise.Â
-
Must comply with applicable laws and regulations, including but not limited to, the Bank Secrecy Act, the Patriot Act, and the Office of Foreign Assets Control.Â
-
Ensure compliance with all applicable laws, regulations, and industry standards, such as the Gramm-Leach-Bliley Act (GLBA), Office of Foreign Assets Control (OFAC), Federal Financial Institutions Examination Council (FFIEC), etc.Â
INDEPENDENT OVERSIGHT OF SECURITY & TECHOLOGY COMPLIANCEÂ
The Chief Information Security Officer (CISO) shall have direct and independent access to the Information Technology and Audit and Risk Committees, and the Chairperson of the Board for all security and compliance matters. The CISO will provide routine reports and regular updates to the Board or respective Committees, ensuring transparent oversight of the Bank’s information security posture. This includes a standing agenda item for security concerns or escalations in regular Committee meetings. The Board shall ensure the CISO maintains the authority, autonomy, and resources necessary to fulfill his or her responsibilities.Â
Knowledge & SkillsÂ
ExperienceÂ
Education/Certifications/LicensesÂ
-
Bachelor's degree in computer science, information technology, and or in, related field. CISA, CISSP, CISM, or other relevant certifications are preferred.Â
Interpersonal SkillsÂ
A significant level of trust and diplomacy is required to be an effective subject matter expert in the position. In-depth dialogues, conversations and explanations with customers, direct and indirect reports and outside vendors of a sensitive and/or highly confidential nature is a normal part of the day-to-day experience. Communications can involve motivating, influencing, educating and/or advising others on matters of significance.Â
Role Important Behavioral SkillsÂ
Â
ADA RequirementsÂ
Physical RequirementsÂ
Is able to bend, sit, and stand in order to perform primarily sedentary work with limited physical exertion and occasional lifting of up to 10 lbs. Must be capable of climbing / descending stairs in an emergency situation. Must be able to operate routine office equipment including computer terminals and keyboards, telephones, copiers, facsimiles, and calculators. Must be able to routinely perform work on a computer for an average of 6-8 hours per day, when necessary. Must be able to work extended hours or travel off site whenever required or requested by management. Must be capable of regular, reliable, and timely attendance.Â
Working ConditionsÂ
Must be able to routinely perform work indoors in climate-controlled shared work area with minimal noise.Â
Mental and/or Emotional RequirementsÂ
Must be able to perform job functions independently or with limited supervision and work effectively either on own or as part of a team. Must be able to read and carry out various written instructions and follow oral instructions. Must be able to complete basic mathematical calculations, spell accurately, and understand computer basics. Must be able to speak clearly and deliver information in a logical and understandable sequence. Must be capable of dealing calmly and professionally with numerous different personalities from diverse cultures at various levels within and outside of the organization and demonstrate highest levels of customer service and discretion when dealing with the public. Must be able to perform responsibilities with composure under the stress of deadlines / requirements for extreme accuracy and quality and/or fast pace. Must be able to effectively handle multiple, simultaneous, and changing priorities. Must be capable of exercising the highest level of discretion on both internal and external confidential matters.Â
EEO Statement
It is the policy of Vast Bank to afford equal opportunity in all phases of employment without regard to an individual’s race, color, creed, religion, gender, national origin, age, disability, marital status, ancestry, sexual orientation, unfavorable military discharge for qualified individuals with disabilities, and for qualified disabled veterans and veterans of the Vietnam era, to the extent required by applicable local, state and federal law.