Cyber Business Relationship Manager- Business Information Security Officer

Consolidated Edison
New York, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Shift work
Job source

Tech stack

Cyber Security Workday

Job description

The Cyber Business Relationship Manager- Business Information Security Officer (BISO) acts as the primary bridge between cybersecurity and business operations. This role ensures security strategies are embedded into business objectives, proactively manages risk and drives compliance across initiatives. By partnering with stakeholders, the Business Relationship Manager- BISO promotes secure innovation, facilitates technology adoption and provides clear visibility into security posture, fostering a culture of resilience and accountability throughout the organization.

This role is a catalyst for cybersecurity and business demand, surfaces and shapes business alignment with the cybersecurity program and ensures that the company recognizes, captures, and responds to the cybersecurity risks.

Responsibilities

Core Responsibilities

  • Act as the primary bridge between cybersecurity and business units, ensuring security priorities align with business objectives and regulatory requirements
  • Drive proactive identification and mitigation of cyber risks within business processes and ensure compliance with enterprise security policies
  • Guide business stakeholders through IT intake processes, review technical documentation and facilitate smooth cybersecurity and enterprise architecture reviews
  • Develop and maintain application roadmaps, support IT capital project portfolio management and optimize rate case planning for technology initiatives
  • Educate business units on security requirements, promote awareness and advocate for secure innovation across projects and programs
  • Provide leadership with tailored dashboards and reports on security posture, risk trends and compliance performance
  • Act as a change ambassador, helping business units adapt to new technologies and security processes while maintaining resilience

Requirements

  • Bachelor’s Degree In relevant discipline and eight (8) years of progressive experience in information security, risk management, or cybersecurity roles and two (2) years working directly with business units or in a liaison capacity, driving alignment between technology and business objectives. or
  • Master’s Degree In relevant discipline and eight (8) years of progressive experience in information security, risk management, or cybersecurity roles
  • and two (2) years working directly with business units or in a liaison capacity, driving alignment between technology and business objectives.

Preferred Education/Experience

  • Master’s Degree In relevant discipline and Three to five (35) years of experience in governance, compliance, and regulatory frameworks (e.g., NERC CIP, SOX)

Relevant Work Experience

  • Demonstrate experience in stakeholder engagement and executive communication, with proven ability to lead change initiatives across complex organizations, required.
  • Demonstrate experience in working directly with business units or in a liaison capacity, driving alignment between cybersecurity and business objectives, required.
  • Proven work experience in information security, risk management, or cybersecurity leadership, required.
  • Work experience with cybersecurity industry recognized frameworks and standards such as NIST, ISO 27001/2, or CSA, required.
  • Demonstrates experience driving proactive identification and mitigation of cyber risks within business processes, and ensuring compliance with enterprise security policies, preferred.
  • Demonstrates experience in managing or influencing enterprise-level projects and portfolios, including application roadmaps and IT intake processes, preferred.

Skills and Abilities

  • Project Demonstrated project management skills
  • Possesses flexibility to work in a fast paced, dynamic environment
  • Demonstrates a high level of accuracy, even under pressure
  • Ability to drive multiple projects to successful completion
  • Ability to work within tight timeframes and meet strict deadlines
  • Assumes personal responsibility for actions
  • Strong written and verbal communication skills
  • Effective interpersonal skills
  • Excellent organizational skills

Licenses and Certifications

  • Driver’s License Required
  • Project Management Professional (PMP) Training and/or certification in Project Management is a plus. Preferred
  • Other: Certified Information Security Practitioner (CISSP) Preferred
  • Other: Certified Information Security Manager (CISM) Preferred

Physical Demands

  • Sit or stand to use a keyboard, mouse, and computer for the duration of the workday

Additional Physical Demands

  • The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.
  • Must be able and willing to travel within Company service territory, as needed.

Benefits & conditions

We are dedicated to supporting the physical, mental, and financial health of our employees and their families. This commitment extends beyond the workplace to foster personal growth and holistic wellbeing. Our life-changing rewards package includes:

  • Rich medical & pharmacy benefits, including vision benefits
  • Dental benefits
  • Health Savings Accounts
  • Health Care and Dependent Care Flexible Spending Accounts
  • 401(k) with robust matching
  • Employer paid Pension Plan
  • Employee Stock Purchase Plan with a generous matching contribution
  • State of the art Employee Assistance Program
  • Paid Parental Leave
  • Generous paid time off plus paid holidays
  • Family support: emergency backup child, & elder care assistance
  • Social responsibility and volunteer opportunities
  • Employee discount program
  • Commuter Benefits
  • Culture of growth and learning: career development; tuition reimbursement; recognition program
  • Life and Long-Term Disability Benefits

About the company

Mission Statement:

Consolidated Edison Company of New York, Inc. (Con Edison), Orange & Rockland Utilities (O&R), and Consolidated Edison Transmission (CET) employees are required to follow health, safety, and environmental policies, EEO, Standards of Business Conduct, and all other applicable company policy and procedures. We all share a responsibility to advance the company’s mission by excelling at our three corporate priorities - safety of our people and the public, operational excellence in all that we do, and ensuring the best possible customer experience.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

6:22 min

Eliminating HR bureaucracy and trusting employees

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

5:06 min

Primary reasons for capability gaps in modern recruitment systems

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all