Establishes a strategic security architecture vision, including standards and frameworks that are aligned with the overall business and IT strategies
Acts as information security subject matter expert; provides advisory and consulting services to business, IT departments, and IS management
Works closely with Enterprise Architecture and Application Development to enhance the security posture of new and existing systems
Works to design security architecture, evaluate risk posed to the organization from, and ultimately approve the implementation of systems and applications into the environment
Assesses the state of the information security program using the NIST Cybersecurity Framework and the FFIEC Cyber Assessment Tool to identify gaps and works with appropriate stakeholders to remediate deficiencies
Participates in the development of information security strategies, roadmaps, policies, and standards
Ensures systems and applications are implemented with compensating controls to meet regulatory requirements (GLBA, SOX, HIPAA, FFIEC, etc.