Business Information Security Officer

GE Renewable Energy Power and Aviation
Job Description Summary
The Business Information Security Officer (BISO) serves as a strategic bridge between GE Aerospace's cybersecurity organization and the business organization. This senior role is pivotal in aligning GE Aerospace's cyber, compliance, and governance needs with business objectives to foster a strong cybersecurity culture. The BISO communicates the impact of cybersecurity on the organization, promotes best practices across departments, and ensures the effective management of cybersecurity risks, compliance, and overall security posture.
This role is open to being remote with a preference to EST candidates.
Job Description
Key Responsibilities:
Business Collaboration and Communication:
Security Strategy and Implementation:
Risk Management and Problem Solving:
Compliance and Incident Response:
Business Reporting and Advocacy within the Cyber organization:
Education Qualifications:
Eligibility Requirement:
Desired Characteristics:
Additional Job Description
Additional Information
Compensation Grade
SPB2
GE Aerospace offers a great work environment, professional development, challenging careers, and competitive compensation. GE Aerospace is an Equal Opportunities Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE Aerospace will only employ those who are legally authorized to work in the United States for this opening.
Relocation Assistance Provided: No
The Business Information Security Officer (BISO) serves as a strategic bridge between GE Aerospace's cybersecurity organization and the business organization. This senior role is pivotal in aligning GE Aerospace's cyber, compliance, and governance needs with business objectives to foster a strong cybersecurity culture. The BISO communicates the impact of cybersecurity on the organization, promotes best practices across departments, and ensures the effective management of cybersecurity risks, compliance, and overall security posture.
This role is open to being remote with a preference to EST candidates.
Job Description
Key Responsibilities:
Business Collaboration and Communication:
- Act as a cybersecurity subject matter expert (SME), providing multi-disciplinary knowledge and experience.
- Collaborate with business units to identify security needs and requirements.
- Communicate security policies and procedures to stakeholders, including executive leadership.
- Serve as a trusted partner, helping design and implement security strategies that align with the overall cyber strategy to deliver positive business results.
Security Strategy and Implementation:
- Align security initiatives with business goals and strategies.
- Translate security policies and procedures into actionable steps for the business unit.
- Develop and implement security strategies tailored to the business unit's needs.
- Provide expert guidance on security controls and solutions to manage risk effectively.
- Review technical risk assessments and new and existing applications and systems.
Risk Management and Problem Solving:
- Support cyber risk assessments tailored to the business unit's specific operations and assets.
- Identify, assess, and manage cybersecurity risks, collaborating with business leaders to develop and implement risk mitigation strategies.
- Support cyber related key performance indicators (KPIs) and coordinate problem solving opportunities to improve those KPIs.
- Monitor and report on security risks specific to business operations.
Compliance and Incident Response:
- Monitor compliance with regulatory requirements and ensure adherence to security policies and standards.
- Support incident response efforts within the business unit, assisting with investigations.
Business Reporting and Advocacy within the Cyber organization:
- Offer regular reporting on business unit status across the cybersecurity function.
- Advocate for security investments that support business growth.
- Serve as 'voice of the business,' providing insights into cyber initiatives from the business (and user) perspective.
Education Qualifications:
- Bachelor's degree from accredited university or college with minimum of 10 years of professional experience OR Associates degree with minimum of 13 years of professional experience OR High School
- Minimum 7 years of professional experience in Cyber Security
- Note: Military experience is equivalent to professional experience
- Minimum of 5 years experience as a BISO or strategic cyber role
Eligibility Requirement:
- Legal authorization to work in the U.S. is required. Sponsorship for employment visas, now or in the future, will not be offered.
Desired Characteristics:
- Experience in a relevant security-related role, with a strong understanding of information security principles.
- Excellent executive-level business acumen and communication skills, with the ability to communicate effectively with both technical and non-technical personnel.
- Strong analytical and problem-solving skills, with an emphasis on methodical and logical thinking.
- Ability to develop and interpret standards, policies, and procedures.
- Experience in risk management and compliance, including conducting cyber risk assessments.
- Knowledge of relevant security frameworks and regulations.
- Preferred certifications: CISSP, CISM, CRISC, or equivalent.
- Project management experience is highly desired.
- Knowledge or application of Lean principles is highly desired.
Additional Job Description
Additional Information
Compensation Grade
SPB2
GE Aerospace offers a great work environment, professional development, challenging careers, and competitive compensation. GE Aerospace is an Equal Opportunities Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE Aerospace will only employ those who are legally authorized to work in the United States for this opening.
Relocation Assistance Provided: No
JOB SUMMARY
Business Information Security Officer

GE Renewable Energy Power and Aviation
Cincinnati
13 hours ago
N/A
Full-time
Business Information Security Officer