> Markdown version of [/jobs/ext/1794074-business-information-security-liaison](https://www.wearedevelopers.com/jobs/ext/1794074-business-information-security-liaison). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Business Information Security Liaison - **Company:** Southern Company - **Location:** Birmingham, AL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Information Leak Prevention, Database Encryption, Multi-Factor Authentication, Identity and Access Management, Information Security Management, Intrusion Detection Systems, Packet Analyzer, Oracle (Applications), Open Web Application Security, Public Key Infrastructure, Security Information and Event Management, Cloud Platform System, Firewalls (Computer Science), Information Technology, Oracle Cloud Infrastructure, Vmware - **Published:** July 11, 2026 - **Apply:** https://dejobs.org/x/x/B457E3E11A944C798F4E48896F49BA2D/job/ ## About the Role The ideal candidate brings a strong foundation in cybersecurity, risk management, and security strategy, combined with exceptional communication skills. This individual will drive meaningful risk reduction through collaboration, partnership, and business alignment. Success in this role requires the ability to translate complex security concepts into business terms, influence decision-making at all organizational levels, and champion security practices that strengthen resilience, protect critical information assets, and support the mission of a company that powers communities and critical services across the United States., * Working knowledge of information technology and cloud network design and practice. * Hands-on experience designing, architecting, and implementing various information security tools/products such as PKI, Full Packet Capture, Next-Generation Firewalls, HSM's, SIEM, Multi-Factor Authentication, IDS/IPS, Database Encryption, Privileged Identity Management, Cloud Posture Management, etc. * Competency in APIs (Rest, Graph), VMware, and/or cloud environments. * Experience promoting security as a business enablement function using influence, metrics, documentation, strong verbal communication, and presentation skills. * Working knowledge of cloud and traditional security network architectures. * Ability to lead a project from concept through implementation and anticipate potential problems. * Experience prioritizing and executing with minimal direction or oversight. * Ability to perform detailed information security risk assessments and recommend mitigating controls. * Must pass NERC CIP & Insider Threat Protection background checks. Preferred Qualifications * Experience with Oracle Cloud Infrastructure. * Technical knowledge of various cloud providers and vendor platforms including Oracle, Google, Azure etc. * Industry certifications such as: CISSP, CCSP, CISA, GIAC, OSCP, CRISC, CCNP, etc. * At least 5 years of experience playing a key role in building technical programs. * Experience with information security frameworks such as: NIST, OWASP, etc. * Familiarity with nation state, sophisticated criminal, and supply chain threats. * Up-to-date knowledge of current hacking techniques, vulnerability disclosures, and data breach incidents. * Experience with cybersecurity analysis and analytic tradecraft. ## Description We are seeking a Business Information Security Liaison (BISL) to serve as the strategic cybersecurity partner for our Human Resources organization within one of the nation's largest energy/utility and critical infrastructure companies. This role is responsible for building trusted relationships with business leaders, technology teams, and cybersecurity professionals to proactively identify, communicate, and reduce security risk across HR processes, technologies, and initiatives. The BISL acts as the bridge between business and security, ensuring that sensitive employee and enterprise information is protected while enabling business objectives, transformation efforts, and innovation., * Serve as a trusted advisor to our stakeholders, by designing security solutions, for better security and business enablement. * Design and implement guardrails to secure modern networks and infrastructure with a variety of vendors and device types * Continuously seek opportunities to enhance the security posture of HR infrastructure and technologies, including but not limited to: Identity & Access Management (IAM), Cloud Security Posture Management (CSPM), Data Loss Prevention (DLP) * Align forward thinking strategy with business goals to integrate and raise the bar on security practices and solutions. * Assist in the ongoing development of Southern Company's security architecture - identify areas of opportunity, research alternatives, and recommend solutions. * Develop creative solutions to meet business needs while ensuring appropriate security controls and best practices are implemented. * Partner with others to identify and resolve information security issues. * Plan, coordinate, and lead information security projects. * Help customers understand and apply information security concepts, processes, and technologies. * Maintain current knowledge of information security and cybersecurity concepts, technologies, and practices. * Mentor others to strengthen cybersecurity principles and best practices to outside operational areas. * Establish and maintain excellent working relationships and partnerships across the Technology Organization, business partners, and external vendors and suppliers. * Create an environment that fosters accountability, innovation, and engagement at all levels. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)