Business Information Security Officer - AMERICAS

Ingenico Inc.
Alpharetta, GA, United States
27 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Cloud Computing Security Cyber Security DevOps Identity and Access Management IT Management PCI Data Security Standards Software Vulnerability Management Cyber Warfare

Job description

The Business Information Security Officer (BISO) will serve as the primary point of contact between the cybersecurity function and their assigned business unit(s)/region. The BISO is responsible for maintaining a strategic relationship with the specific business unit or function that they are aligned to. This role is in place to ensure that cybersecurity is incorporated into the culture of the organization/business unit in question., Serve as the cybersecurity SME for regional business stakeholders, translating security policies, standards, and frameworks into business-relevant guidance. Build trusted relationships, influence decision-making through risk-based consultation, and align cybersecurity priorities with business objectives. Promote cybersecurity awareness and foster a strong security culture in partnership with global awareness and training teams.

Security Risk Management & Governance

Conduct security risk assessments for new initiatives, projects, and material technology changes. Advise stakeholders on risks, controls, mitigations, and trade-offs before key decisions. Establish clear risk ownership and accountability, ensuring risks, remediation plans, and exceptions are properly documented, governed, and tracked within enterprise GRC processes. Monitor and escalate emerging regional and business-specific cyber risk

Security Integration, Compliance & Control Assurance

Act as the regional liaison between business teams and Security Centers of Excellence (Cyber Defense, Security Architecture, Security Risk Management, etc.). Ensure enterprise security standards, operating models, and controls are applied consistently and pragmatically across the region. Validate that regional changes do not introduce compliance, regulatory, or security boundary risks and escalate control deviations as required.

Planning, Transformation & Stakeholder Engagement

Align security funding requirements and risk treatment plans with business and IT priorities. Participate in governance forums, councils, and working groups to represent regional security interests. Ensure security considerations are embedded in regional initiatives, transformations, and technology programs.

Incident Response, Audit & Regulatory Support

Serve as the regional security escalation point during major incidents, coordinating with incident response teams and stakeholders. Support internal, external, customer, and regulatory audits, including evidence collection and remediation tracking. Contribute to accurate communication of the organization’s security posture during customer and regulatory engagements.

Requirements

Bachelor’s degree in business, Technology, Cybersecurity, or a related field. 8+ years of experience in cybersecurity risk management, governance, and regulatory compliance, with a focus on business outcomes and service delivery. Experience leading and collaborating with global, cross-functional teams. Strong knowledge of risk assessments, incident response, and security audits. Experience working within regulated environments, including PCI DSS, ISO 27001, and/or NIST Cybersecurity Framework. Understanding of cloud security governance, DevOps, and enterprise IT control environments. Familiarity with identity and access management (IAM), privileged access management (PAM), vulnerability management, and SOC operating models. Proven ability to partner with business leaders and support enterprise-wide initiatives. Excellent stakeholder management and communication skills. Experience managing and/or partnering with Managed Service Providers (MSPs). Comfortable travelling - Regional based role, requiring occasional visits to regional offices. Fluency in written and oral English required.

PREFERRED

Certifications: CISSP, CISM or CRISC. MBAs are an added benefit but not required.

About the company

Ingenico is the global leader in payments acceptance solutions. As the trusted technology partner for merchants, banks, acquirers, ISVs, payment aggregators and fintech customers our world-class terminals, solutions and services enable the global ecosystem of payments acceptance.

With 40 years of experience, innovation is integral to Ingenico’s approach and culture, inspiring our large and diverse community of experts who anticipate and help shape the evolution of commerce worldwide. At Ingenico, trust and sustainability are at the heart of everything we do.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Managing infrastructure limitations with managed Amazon Aurora databases

Dharin Shah Dharin Shah · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:00 min

Managing complex state with scope-based resource management

Bjarne Stroustrup · World Congress 2022

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

Videos

See all

Related articles

See all