NewVice President, Information Security - Remote Spring HealthVice President, Information Security - RemoteNew York, NYRemote$250,000–$291,000 / yearLead audit readiness and certification execution for information security programs, including evidence collection, technical control validation, remediation tracking, and partnership with the CISO, Legal, Privacy, and Compliance teams on frameworks such as HITRUST, SOC 2, ISO 27001, HIPAA, and PCI DSS. Experience leading or supporting HITRUST CSF, SOC 2, ISO 27001, PCI DSS, and comparable certification programs through strong technical controls, remediation management, evidence support, audit readiness, and cross-functional partnership.
Assistant Director, Information Security Operations New York UniversityAssistant Director, Information Security OperationsNew York, New York$140,000–$160,000 / yearDrive a culture of security awareness to minimize risk and ensure the confidentiality, integrity, and availability of sensitive information (including ePHI) owned, controlled, and processed within the Student Health Center, working in close partnership with central NYU Information Technology Services. Demonstrated experience with security toolsets (e.g., SIEM, DLP, vulnerability management), identity and access management solutions, and cloud-based technology platforms (i.e., Amazon/AWS Virtual Private Cloud, other cloud services, Citrix Workspace, etc.).
Senior Information Security Engineer - Data Protection & Insider Risk - Hybrid Genesis10Senior Information Security Engineer - Data Protection & Insider Risk - HybridNew York, NY$160,000–$200,000 / yearFull timeThe ideal candidate has experience managing data classification and labeling programs, insider risk detection, identity governance platforms, and modern security tooling, and is comfortable working across IT, security, and compliance functions to enable the business securely. This role is responsible for protecting sensitive data across endpoints, cloud services, and SaaS platforms by designing, implementing, and operating security controls that identify, classify, monitor, and govern access to enterprise data.
Lead, Information Security Policy & Enablement Prudential FinancialLead, Information Security Policy & EnablementNewark, New JerseyPartnering with security advisors, Risk Management, Compliance, Legal, Internal Audit, Product, Engineering, and business stakeholders, you'll transform security requirements into practical guidance that helps teams confidently make security part of how they work every day. As part of Prudential's Global Technology & Operations organization, the Information Security team is strengthening its governance capabilities to improve visibility into security risk, policy adoption, and program execution across the enterprise.
Chief Information Security Office-Strategy, Programs & GRC AVP Bank of ChinaChief Information Security Office-Strategy, Programs & GRC AVPNew York, New York$65,000–$150,000 / yearFull timeOur long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments, Compliance, Data Privacy and Identity functions as detailed below.
Chief Information Security Office-Strategy, Programs & GRC AVP Bank of China Limited, New York BranchChief Information Security Office-Strategy, Programs & GRC AVPNew York, New York$65,000–$150,000 / yearFull timeOur long-term outlook, institutional weight and global breadth provide our clients with a stable and reliable financial partner, whether in Corporate or Personal Banking or our Trade Services, Commodities, Financial Institutions and Global Markets lines of business. This incumbent will provide Strategy Coordination, CISO Projects Management, Training & Culture, Metrics & Reporting, Governance, Risk Assessments, Compliance, Data Privacy and Identity functions as detailed below.
Chief Information Security Officer Lewis Brisbois Bisgaard & Smith LLPChief Information Security OfficerNew York, NYThe CISO will develop and execute a firm-wide security strategy encompassing cybersecurity, data protection, and operational resilience, establish governance frameworks aligned with industry best practices (e.g., NIST, ISO, SOC 2) and lead the design, implementation, and continuous improvement of the firm's information security program. The Chief Information Security Officer (CISO) is a senior executive responsible for developing, implementing, and overseeing a comprehensive, enterprise-wide security strategy to protect the firm's clients, information, and reputation.
Deputy Chief Information Security Officer Touro University New YorkDeputy Chief Information Security OfficerNew York, New YorkRemoteFull timeIn collaboration with the CISO, contribute to maintaining risk registers, control gap analysis, and mitigation strategies aligned with NIST CSF, NIST AI RMF and privacy frameworks; ensure risks, incorporate AI risks and all institutional risks are clearly mapped to HIPAA, FERPA, PCI DSS, and other regulatory obligations, with defensible documentation and audit-ready evidence. Demonstrate knowledge and experience across a broad range of information security management technologies and processes, including identity provisioning, life cycle management, governance, separation of duties analysis, role management, access request systems, privileged access management, entitlement reviews, data loss prevention, firewalls, privacy, and incident response.
Lead, Information Security Library & Standards Prudential FinancialLead, Information Security Library & StandardsNewark, New JerseyPartner with Information Security domain leaders across I dentity & Access Management (IAM), Attack Surface Management (ASM), Cyber Defense & Response (CDR), cloud security, data protection, vulnerability management, and other security control functions to ensure controls accurately reflect current risks, technologies, and operational requirements. This is a unique opportunity to help build and shape a growing Information Security Governance capability, with visibility across senior leadership and the ability to influence how security, risk, and governance are executed across the enterprise.
Information Security Analyst PSFCU CareersInformation Security AnalystFairfield, New JerseyWorking knowledge of network programming and configuration languages for Cisco, Extreme networks, Juniper, Fortinet and Palo Alto platforms. Works closely with vendors/software subcontractors for deployment of security software solutions, monitoring, triage and resolution of complex issues.
Chief Information Security Officer Lewis BrisboisChief Information Security OfficerNew York, New YorkFull timeThe CISO will develop and execute a firm-wide security strategy encompassing cybersecurity, data protection, and operational resilience, establish governance frameworks aligned with industry best practices (e.g., NIST, ISO, SOC 2) and lead the design, implementation, and continuous improvement of the firm’s information security program. The Chief Information Security Officer (CISO) is a senior executive responsible for developing, implementing, and overseeing a comprehensive, enterprise-wide security strategy to protect the firm’s clients, information, and reputation.
NewBISO (Business Information Security Officer) Phaxis LLCBISO (Business Information Security Officer)New York, NY$260,000 / yearLead and manage the cyber risk committee, presenting quarterly reports to CEO and other key stakeholders. Act as the primary security contact for technology, legal, finance, audit, compliance, news and product.
Sr Information Security Analyst Expert In Recruitment SolutionsSr Information Security AnalystJersey City, NJCloud Security (Azure, AWS, GCP) GCP: IAM, Security Command Center, Cloud Audit Logs, VPC Service Controls, CMEK/KMS, Cloud Armor, Workload Identity; container security (GKE). Azure: Defender for Cloud, Microsoft Sentinel, Entra ID (Azure AD), Conditional Access, Key Vault, NSGs/Azure Firewall, storage encryption, Defender for Endpoint integration.
Summer Analyst - Information Security Rockefeller Capital ManagementSummer Analyst - Information SecurityNew York, New YorkFull timeOriginally founded in 1882 as the family office of John D. Rockefeller, the Firm has evolved to offer strategic advice to ultra- and high-net-worth individuals and families, institutions, and corporations from offices in 35 markets throughout the United States, as well as an office in London. Our Summer Analyst program is a ten-week (June-August) internship program designed to provide an opportunity to experience the culture and atmosphere of Rockefeller Capital Management.
Deputy Chief Information Security Officer (Ciso), US OKXDeputy Chief Information Security Officer (Ciso), USNew York, NY$250,444–$375,666 / yearA security professional with solid GRC and risk grounding, ideally from a regulated industry - TradFi (bank, broker-dealer, payments) or regulated crypto is a strong plus, though direct crypto experience isn't required. A track record of genuine curiosity and self-directed learning over pure years-of-experience - we'd rather hire the sharp problem-solver who's two years light on paper than the person coasting on a long CV.
Information Security Engineer DoctronicInformation Security EngineerNew York City, New YorkYou'll combine hands-on technical work with strategic security leadership, ensuring Doctronic remains the most trusted AI diagnostic platform in healthcare. Join Doctronic and work with cutting-edge AI that's transforming healthcare and helping people make faster, smarter decisions.
Business Information Security Officer - Finance BloombergBusiness Information Security Officer - FinanceNew York, NY$215,000–$290,000 / yearLead and support risk assessments and security reviews for Finance systems, workflows, and third-party vendors, and effectively and succinctly communicate identified risks, recommended mitigation strategies, or formal risk acceptance requirements to business leadership for decision and implementation. You will identify and assess security risks and vulnerabilities, enforce security policies and controls, and partner with Finance leadership to ensure a secure posture that supports business needs and critical activities while aligning with the organization’s risk appetite and regulatory obligations.
Information Security Consultant Pyramid, IncInformation Security ConsultantBasking Ridge, NJFull timeImmediate need for a talented Information Security Consultant with experience in the Telecom Industry .This is a 12+ Months Contract opportunity with long-term potential and is located in Basking Ridge, NJ. Our client is a leading Telecom Industry and we are currently interviewing to fill this and other similar contract positions.
Enterprise Information Security Architect Integrated Resources, IncEnterprise Information Security ArchitectNewark, New JerseyFull timeBasic Qualifications: • Bachelor's degree in Information Technology or related discipline from an accredited college or university, advanced degree or other professional certification in Management Information Systems is preferred. • 10+ years of professional business experience in Security Architecture, including security with Applications, Infrastructure, external internet security, or Access and Identity Management.
Business Information Security Officer-Vp State Street CorporationBusiness Information Security Officer-VpClifton, NJ$120,000–$202,500 / yearThe VP BISO leads a small team focused on providing cyber advisory services, building application and service level threat models, executing a cyber book of work aligned to State Street business units, and delivering metrics and cyber-driven content that support the business's enhanced decision-making framework. For digital asset services, this includes understanding digital asset custody models, cryptographic key management, HSM and MPC based signing controls, wallet security, smart contract risks, blockchain infrastructure dependencies, and response readiness for suspicious or unauthorized digital asset activity.