Home
/
Comprehensive
/
BISO Director
BISO Director-March 2024
Bloomfield
Mar 28, 2026
About BISO Director

  Evernorth Information Protection Business Information Security Officer (Director / BISO):

  Role Summary

  Evernorth BISO roles are key leadership Technology roles aligning with our business functions to acts as a conduit between the Cigna Information Protection cybersecurity service delivery and business Technology. Acting as the primary delegate for the business line Chief Information Security Officer, the BISO is responsible for maintaining a strategic relationship with the business function to ensure that ongoing continuity of cybersecurity the evolving organization.

  Strategically you will be responsible for ensuring delivery of the ‘last mile execution’ of global Cigna Information Protection Shared Services, developing and measuring capabilities whilst leading risk management activities for a portion of our Evernorth business.

  Key Responsibilities

  Understand the business unit and accompanying strategy to continuously monitor threat trends and business change to anticipate and plan for future impact of cyber risk on each business function.

  Leverage Shared Service Integrated Cyber Risk Management Framework to help the business effectively manage business risk. This includes partnering with business line CIOs and technology stakeholders to educate and integrate risk management activities in first and second line of defense governance.

  Develop organizational wide Cyber / Information Security risk views by collaborating with internal control groups e.g. Audit, Compliance, Enterprise Risk Management, Legal and Privacy.

  Coordinate with Shared Services to provide localized risk and vulnerability management information and reporting and embed Cyber / Information Security into business operational governance forums enabling data driven decision making.

  Provide oversight and coordination of delivery of global Cyber & Privacy portfolio risk mitigation projects and programs into business line. Conversely feed the portfolio by registering local business line residual risk outputs driving controls mitigation activity.

  Partner with the Security Assurance team to evolve Cigna Information Protection security policies and processes, aligning to local business requirements and operate the policy exceptions management process. Coordinate security education & awareness initiatives in line with policy framework, integrate with the Shared Service overall thematic awareness program.

  Embed secure development practices, working with local business and technology teams to implement enterprise tooling and processes to ensure secure code implementation. Embed risk management practices into Agile / DevSecOps pipelines to minimize production vulnerabilities.

  Champion local incident responses & handling processes, provide business context and local expertise in incident scenarios. Coordinate with Shared Service owner to manage local incident management postmortem activities and track residual findings to resolution. Maintain and manage local regulatory incident response reporting requirements. Engage with Shared Services to carry out forensics security investigations work integrating processes with business and legal / compliance stakeholders.

  Partner with Global Architecture Shared Services organizations to implement standard security solutions and capabilities, providing expert change solution design in local business line. Conversely feed global Architecture roadmaps by capturing local requirements.

  Support business line mergers, acquisitions, and divestiture activities in line with the Shared Services playbook designed to reduce change risk.

  Lead local business Cigna Information Protection teams as well as matrix manage Shared Services peers. Ensure in person employee engagement by motivating team, running personalized development programs, and creating an empowering culture aligned with Cigna values.

  Qualifications and Experience

  A BA/BS in business or technical related field. MBSs are an added benefit, but not required.

  Proven track record of successfully influencing and leading peer and matrix teams where direct and in-direct reporting relationships exists. Strong leadership qualities and business acumen able to deal with all levels of the organization. Demonstrable experience developing and leading organizations autonomously. Appreciation of global organizational culture variances.

  Minimum 10+ years of Information Security / Cyber experience. Ability to translate information security and technical controls into business terms that are easily understood. CISSP or other security related certification preferred (CISM, etc.).

  Minimum 5+ years of Cyber leadership experience with Fortune 500 company in areas of Cyber Operations (preferred), Audit, Risk, Program Management.

  Implementation level knowledge of information security standards and frameworks (e.g. ISO/IEC 27001/27002, PCI-DSS, NIST Cybersecurity Framework, Fedramp, etc.) and attestation reports (e.g. SOC 1/2). Awareness of Governance, Risk and Compliance and workflow management tools.

  Experience within the Insurance, Financial Services, and/or Healthcare industry preferred.

  If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload.

  For this position, we anticipate offering an annual salary of 152,000 - 253,400 USD / yearly, depending on relevant factors, including experience and geographic location.

  This role is also anticipated to be eligible to participate in an annual bonus and long term incentive plan.

  We want you to be healthy, balanced, and feel secure. That’s why you’ll enjoy a comprehensive range of benefits, with a focus on supporting your whole health. Starting on day one of your employment, you’ll be offered several health-related benefits including medical, vision, dental, and well-being and behavioral health programs. We also offer 401(k) with company match, company paid life insurance, tuition reimbursement, a minimum of 18 days of paid time off per year and paid holidays. For more details on our employee benefits programs, visit Life at Cigna Group .

  About Cigna Healthcare

  Cigna Healthcare, a division of The Cigna Group, is an advocate for better health through every stage of life. We guide our customers through the health care system, empowering them with the information and insight they need to make the best choices for improving their health and vitality. Join us in driving growth and improving lives.

  Qualified applicants will be considered without regard to race, color, age, disability, sex, childbirth (including pregnancy) or related medical conditions including but not limited to lactation, sexual orientation, gender identity or expression, veteran or military status, religion, national origin, ancestry, marital or familial status, genetic information, status with regard to public assistance, citizenship status or any other characteristic protected by applicable equal employment opportunity laws.

  If you require reasonable accommodation in completing the online application process, please email: [email protected] for support. Do not email [email protected] for an update on your application or to provide your resume as you will not receive a response.

  The Cigna Group has a tobacco-free policy and reserves the right not to hire tobacco/nicotine users in states where that is legally permissible. Candidates in such states who use tobacco/nicotine will not be considered for employment unless they enter a qualifying smoking cessation program prior to the start of their employment. These states include: Alabama, Alaska, Arizona, Arkansas, Delaware, Florida, Georgia, Hawaii, Idaho, Iowa, Kansas, Maryland, Massachusetts, Michigan, Nebraska, Ohio, Pennsylvania, Texas, Utah, Vermont, and Washington State.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Firefighter/ EMT
Summary The Firefighter/EMT is primarily responsible to perform fire suppression and rescue activities. This position will work as part of a response team dedicated to saving lives and protecting pro
Claim Rep Trainee Inside Auto
Who Are We? Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casu
Senior Associate Application Engineer (Back End)
Discover. A brighter future. With us, you’ll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Togeth
CT Tech II Full Time 2nd Shift
Employment Type: Full time Shift: Description: Position Purpose: Performs multiple imaging procedures in accordance with established parameters. Provides continuity of patient care. Assists Radiologi
Pediatric Private Duty Nurse | Trach & Vent | Enhanced Pay Rate
Pediatric Private Duty Nurse | Trach & Vent | Enhanced Pay Rate Job Ref: 192876 Location: Glenshaw, PA 15116 Category: Nursing Line of Business: PDS Pay Rate: Starting at $33.00 per hour ApplyRef
Shift Leader
The Wolak Group is currently hiring for a Shift Leader to join our network! We are an established Dunkin’ Franchise with 90+ locations and growing. Nothing makes us happier than providing our guests
Senior Retirement Compliance Consultant
Job Family Regulatory Compliance About Us At Transamerica, hard work, innovative thinking , and personal accountability are qualities we honor and reward. We understand the potential unleashed by lev
Certified Surgical Tech II OR
Job SummaryFacilitates the safe and efficient performance of surgical procedures. COMPANY DESCRIPTIONFrye Regional Medical Center, located in the beautiful foothills of North Carolina is a 355-bed ac
Temporary Seasonal Production - 1st Shift
Temporary Seasonal Production - 1st Shift Last Updated Date: Feb 2, 2024 Location: Wahpeton, ND, US, 58075 Company: Doosan Bobcat NA US Job Information This position is responsible for assembling met
Grant Writer
This employer will be on-site conducting interviews at our Multi-Industry Job Fair which will be held on Thursday, January 25, 2024, at the PA CareerLink Bucks County, 4800 E. Street Rd., Trevose, PA
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved