Workers Federal Credit Union
Littleton, MA
USA
Workers Federal Credit Union (Workers) is searching for an enthusiastic, dynamic, and strategic leader to join the team as Vice President, Senior Information Security Risk Officer. Workers is reinventing banking through innovation and technology in their branches, their approach to serving their members, and their commitment to “The Workers Way”. Your role will ensure the Worker’s compliance with all applicable federal/state laws, regulations, and guidelines while serving as the liaison with examiners and auditors.
As the Vice President, Senior Information Security Risk Officer, you will play a pivotal role in shaping Workers' risk culture and processes. Responsibilities include overseeing the day-to-day efforts to develop, implement, and maintain an effective Information and Physical Security Program, ensuring robust cybersecurity insurance, and leading risk assessments.
As a vital contributor to our risk management initiatives, you will provide regular updates to the Board, Enterprise Risk Management Committee, management, and Supervisory Committee, ensuring effective communication on the progress of the Information Security Risk Management Program. Additionally, you will lead the Information Security and Physical Security training program, ensuring employees are well-prepared to address security challenges, assess the impact of new products and vendors, and manage the onboarding of vendors.
Your contributions extend to overseeing independent testing of our information security infrastructure, developing metrics for risk analysis, and preparing comprehensive monthly and quarterly reports for various stakeholders. Collaboration with business unit leaders is essential to address complex risk scenarios.
Reporting directly to the Chief Risk Officer, this role provides leadership and oversight to several areas, including the Governance, Risk and Compliance (GRC) system and the Information Security Risk Assessments. We are seeking candidates with strong communication skills to articulate complex issues and solutions effectively. Regulatory experience, proficiency in ISO, fraud management, and IT technical expertise are essential qualifications.
This position offers a unique opportunity to lead and influence our Information Security Risk Management landscape, contributing to Workers' overall resilience and security posture.
Knowledge and Skills
- 8-10 years experience in information security risk management, third-party vendor risk management, IT analysis, and/or IT audits
- Experience with GRC software and vendor systems
- Certifications in ISO are strongly preferred
- Bachelor’s degree in information technology or related field is preferred
- Experience in executive leadership roles is preferred
- Strong experience with committee and Board reporting