
Security Business Partner Manager – Business Information Security Office
PNC
full-time
Posted on:
Location Type: Hybrid
Location: Pittsburgh • Pennsylvania • Virginia • United States
Visit company websiteExplore more
Salary
💰 $100,000 - $261,300 per year
Tech Stack
About the role
- Senior leader responsible for the client relationship with all PNC Lines of Business to ensure successful outcomes on the integrated delivery of cybersecurity services including cybersecurity technology, security risk management, business demand management, and client feedback.
- Participate in key executive initiatives and program meetings to provide ongoing input to improve PNC’s security and risk posture while supporting product strategies and revenue generation / cost reduction.
- Manages the team responsible for Line of Business security relationships and participates in Line of Business leader meetings providing relevant security input and topics for discussion.
- Lead the coordination and scheduling of Security topics for executive updates and committee presentations.
- Manages team responsible ensuring security requirements and standards are identified and incorporated across the business and technology lifecycle, including RFP activities, technology due diligence, and security approvals.
- Engage with Line of Business leaders to promote adoption, accountability, and sustainability of security requirements and controls for Line of Business initiatives.
- Serve as escalation point within the team for ad hoc or high priority security situations within the Lines of Business, including coordination of communications and remediation planning.
- Manage and provide guidance to the team for Line of Business risk assessments, security reviews, and governance activities for initiatives with material technology, data, or business impact.
- Partner with Line of Business Risk organizations to improve Security posture through the reduction of Policy Exceptions, open vulnerabilities, and implementation of automated identity access controls.
- Translate information security requirements and risk considerations into relevant guidance to support informed decision making by Line of Business stakeholders.
Requirements
- CISSP, CRISC, or CISA certification.
- 5 years’ experience in information security, risk, or audit.
- Management experience in information security, technology risk, or related technology roles within large, complex enterprise environments.
- Expertise with one or more enterprise security domains such as Identity Access Management, Data Protection, Cloud Security, and Risk Management.
- Demonstrated ability to work effectively with business, technology, and risk stakeholders.
Benefits
- medical/prescription drug coverage (with a Health Savings Account feature)
- dental and vision options
- employee and spouse/child life insurance
- short and long-term disability protection
- 401(k) with PNC match
- pension and stock purchase plans
- dependent care reimbursement account
- back-up child/elder care
- adoption, surrogacy, and doula reimbursement
- educational assistance, including select programs fully paid
- a robust wellness program with financial incentives
- maternity and/or parental leave
- up to 11 paid holidays each year
- 9 occasional absence days each year, unless otherwise required by law
- between 15 to 25 vacation days each year, depending on career level; and years of service
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
information securityrisk managementidentity access managementdata protectioncloud securitysecurity risk managementbusiness demand managementsecurity reviewsgovernance activitiesautomated identity access controls
Soft Skills
leadershipcommunicationcollaborationstakeholder engagementproblem-solvingstrategic thinkingteam managementdecision makingrelationship managementpresentation skills
Certifications
CISSPCRISCCISA