At Landmark Credit Union, we succeed by putting people first - and that starts with you. Our culture of inclusion and collaboration enables us to support our members' financial wellbeing, positively impact the communities we serve, and help our associates grow their careers. Bring your authentic self to work as part of an organization where you'll feel valued for your unique qualities, are enabled to reach your full potential, and are recognized for your contributions to our success. We strive to ensure you feel empowered to grow and succeed, while also feeling valued and taken care of, as we all do our part to put people first. We invite you to learn more about this and other opportunities at Landmark Credit Union.
NATURE AND SCOPE
The Chief Information Security Officer (CISO) provides strategic leadership for Landmark's enterprisewide information security and cyber risk management program. Reporting to the CIO, this role is accountable for developing and executing a security vision and strategy that protects member data, ensures regulatory compliance, and supports organizational objectives. The CISO establishes and promotes strong security practices across the organization, oversees risk assessments, and partners with senior leadership to mitigate threats and safeguard information assets. This position also leads a team of security professionals, driving performance, coaching, and professional development.
REQUIREMENTS
1. Bachelor's degree in computer science, Information Systems, Cybersecurity, or related field; advanced degree preferred.
2. Minimum 10 + years of progressive experience in information security, cybersecurity, risk management, including at least 5 years in a senior leadership role.
3. Proven ability to lead and develop high-performing teams, building a culture of accountability and continuous improvement.
4. Demonstrated knowledge, experience, and use of common information security management frameworks, e.g. NIST CSF
5. Extensive experience with information security technologies, markets, and vendors (e.g., firewalls, intrusion detection/prevention, SIEM, encryption, identity and access management).
6. Proven experience in information security strategy, governance, and incident response within a regulated environment.
7. Experience with regulatory compliance frameworks (NCUA, FFIEC, GLBA, PCI DSS) and audit processes.
8. Excellent communication and influencing skills, with the ability to engage executive leadership and the board on risk and security matters.
9. Ability to use independent judgment and discretion in various situations while maintaining a high degree of confidentiality.
10. Ability to manage multiple priorities in a dynamic environment, exercising sound judgment and maintaining confidentiality.
11. Must develop a thorough understanding of credit union policies and procedures as they relate to information security; must understand and comply with all job-related state and federal laws and regulations.
PRINCIPAL ACCOUNTABILITIES
1. Develop and execute an enterprise-wide information security vision and strategy aligned with organizational priorities and IT roadmap.
2. Establish and maintain an enterprise information security governance program, including policies, standards, risk management practices, and internal controls.
3. Provide regular reporting to executive leadership and the board of directors on security posture, risks; and key performance indicators.
4. Partner with Enterprise Risk Management, IT, and Compliance to establish and govern information security policies, standards, and third-party security requirements to protect member data and internal resources.
5. Provide executive oversight of security incident response and cyber event management, ensuring effective escalation, communication, and resolution.
6. Oversee vulnerability management, business continuity, and disaster recovery planning to ensure organizational resilience.
7. Monitor emerging threats and advise on proactive risk mitigation strategies.
8. Lead and develop the Information Security team driving performance, coaching, and professional growth.
9. Oversee internal and external penetration testing, vulnerability assessments, and regular scheduling of technology audits/exams conducted by third parties.
10. Serve as the primary liaison with regulatory agencies, auditors, and external partners on matters related to information security.
11. Performs other duties as assigned.
EEO/Veterans/Disabled