BISO Director

The Cigna Group
Bloomfield, CT
Full-time

Evernorth BISO roles are key leadership Technology roles aligning with our business functions to acts as a conduit between the Cigna Information Protection cybersecurity service delivery and business Technology.

Acting as the primary delegate for the business line Chief Information Security Officer, the BISO is responsible for maintaining a strategic relationship with the business function to ensure that ongoing continuity of cybersecurity the evolving organization.

Strategically you will be responsible for ensuring delivery of the last mile execution’ of global Cigna Information Protection Shared Services, developing and measuring capabilities whilst leading risk management activities for a portion of our Evernorth business.

Key Responsibilities

Understand the business unit and accompanying strategy to continuously monitor threat trends and business change to anticipate and plan for future impact of cyber risk on each business function.

Leverage Shared Service Integrated Cyber Risk Management Framework to help the business effectively manage business risk.

This includes partnering with business line CIOs and technology stakeholders to educate and integrate risk management activities in first and second line of defense governance.

Develop organizational wide Cyber / Information Security risk views by collaborating with internal control groups e.g. Audit, Compliance, Enterprise Risk Management, Legal and Privacy.

Coordinate with Shared Services to provide localized risk and vulnerability management information and reporting and embed Cyber / Information Security into business operational governance forums enabling data driven decision making.

Provide oversight and coordination of delivery of global Cyber & Privacy portfolio risk mitigation projects and programs into business line.

Conversely feed the portfolio by registering local business line residual risk outputs driving controls mitigation activity.

Partner with the Security Assurance team to evolve Cigna Information Protection security policies and processes, aligning to local business requirements and operate the policy exceptions management process.

Coordinate security education & awareness initiatives in line with policy framework, integrate with the Shared Service overall thematic awareness program.

Embed secure development practices, working with local business and technology teams to implement enterprise tooling and processes to ensure secure code implementation.

Embed risk management practices into Agile / DevSecOps pipelines to minimize production vulnerabilities.

Champion local incident responses & handling processes, provide business context and local expertise in incident scenarios.

Coordinate with Shared Service owner to manage local incident management postmortem activities and track residual findings to resolution.

Maintain and manage local regulatory incident response reporting requirements. Engage with Shared Services to carry out forensics security investigations work integrating processes with business and legal / compliance stakeholders.

Partner with Global Architecture Shared Services organizations to implement standard security solutions and capabilities, providing expert change solution design in local business line.

Conversely feed global Architecture roadmaps by capturing local requirements.

Support business line mergers, acquisitions, and divestiture activities in line with the Shared Services playbook designed to reduce change risk.

Lead local business Cigna Information Protection teams as well as matrix manage Shared Services peers. Ensure in person employee engagement by motivating team, running personalized development programs, and creating an empowering culture aligned with Cigna values.

Qualifications and Experience

A BA / BS in business or technical related field. MBSs are an added benefit, but not required.

Proven track record of successfully influencing and leading peer and matrix teams where direct and in-direct reporting relationships exists.

Strong leadership qualities and business acumen able to deal with all levels of the organization. Demonstrable experience developing and leading organizations autonomously.

Appreciation of global organizational culture variances.

Minimum 10+ years of Information Security / Cyber experience. Ability to translate information security and technical controls into business terms that are easily understood.

CISSP or other security related certification preferred (CISM, etc.).

Minimum 5+ years of Cyber leadership experience with Fortune 500 company in areas of Cyber Operations (preferred), Audit, Risk, Program Management.

Implementation level knowledge of information security standards and frameworks (e.g. ISO / IEC 27001 / 27002, PCI-DSS, NIST Cybersecurity Framework, Fedramp, etc.

and attestation reports (e.g. SOC 1 / 2). Awareness of Governance, Risk and Compliance and workflow management tools.

Experience within the Insurance, Financial Services, and / or Healthcare industry preferred.

30+ days ago
Related jobs
The Cigna Group
Bloomfield, Connecticut

Evernorth BISO roles are key leadership Technology roles aligning with our business functions to acts as a conduit between the Cigna Information Protection cybersecurity service delivery and business Technology. Acting as the primary delegate for the business line Chief Information Security Officer,...

Promoted
Allied Universal
Windsor, Connecticut

Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose. Allied Universal Is seeking Part Time Security For A Warehouse In Windsor, CT. As a Security Guard, you will serve and safeguard clients in a range of indust...

Promoted
Allied Universal Security Services
Manchester, Connecticut

Full time available for an Armed Guard at a Manufacturing site in Manchester CT - M Security Officer, Armed, Officer, Security. As an Armed Security Officer you will serve and safeguard clients in a range of industries such as Commercial Real Estate, Healthcare, Education, Government and more. ...

Promoted
Raytheon Technologies Corporation
CT, United States

Pratt & Whitney is working to once again transform the future of flightdesigning, bu Security Officer, Systems, Security, Officer, Information, Cybersecurity, Manufacturing, Technology. ...

Promoted
Securitas Inc.
CT, United States

Frequently our Security Officers will provide customer service and information to a client's employees and customers. Securitas is a global company that offers the most advanced and sustainable security solutions in the industry. United through our common purpose, we provide the security needed to s...

Promoted
Hartford HealthCare
CT, United States

The Public Safety Officer is responsible for the safety and security of patients, visitors, physicians and employees. Hospital and departmental standards of safety and security; patrols and inspects buildings and premises and reports problems to appropriate authorities; performs investigations and d...

CDM Smith
Hartford, Connecticut

Are you passionate about sustainable water management and eager to lead impactful projects? Join our dynamic team as a Water Project Manager and play a key role in advancing innovative solutions to address critical water challenges. Coaches project staff and provides feedback to staff and to project...

Liberty Jobs
East Hartford, Connecticut

An excellent commercial & industrial Mechanical Contractor, local to the Hartford, CT area is actively seeking to add a Project Manager to the team. Manage commercial HVAC mechanical projects (both new construction & renovations). Perform a key role in project planning, budgeting, and identification...

SSC, Inc.
Hartford, Connecticut

Must posses a State Issued License as Security Officer (where applicable) or meet qualifications to complete state required Security Officer Affidavit/Registration. As a fully integrated provider of uniformed security, investigative, and consulting services, we provide the highest levels of asset pr...

Insight Global
Hartford, Connecticut

As a project manager you will focus on developing and leading campaign initiatives aimed at improving member experience amongst Aetnas Medicare member population. Ability to create and manage tasks in project management software (, Jira, Rally), ensuring smooth workflow coordination and task trackin...