We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

VP Corporate Information Security Manager

First Financial Bank
United States, Texas, Abilene
400 Pine Street (Show on map)
Jul 21, 2025

Address

We're always looking for bright individuals to join our growing organization. As a part of the First Financial Family, we will invest in your development and provide a dynamic work environment where you're challenged, valued and empowered every day. We strive to be the best destination for the industry's top talent, creating a diverse, collaborative workplace that celebrates innovation and change. We are one team, working together to get things done.

Job Description:

Office Location:

Abilene, Texas, United States

SCOPE/CONTACTS:

The Corporate Information Security Manager (CISM) is responsible for leading, and/or participating in, high-profile information risk management initiatives, including risk program transformation activities and supporting other critical deliverables. The CISM plays an active role in providing thorough leadership, strategic thinking, and providing hands-on training to less experienced team members and First Financial employees.

The CISM will partner with key stakeholders across all lines of defense, all business lines, and support functions, including IT, Risk, Compliance, Legal, Audit, Human Resources, and Finance, to support the identification, assessment, management and reporting of information risks. The CISM will help manage operational risk, including the vendor risk management and business continuity management, to ensure close coordination, integration, transparency and awareness of information risks across all risk management.

ESSENTIAL FUNCTIONS:

The incumbent will be responsible for the following:

  • Lead information security implementations and provide influence across the functional business areas to enhance security controls.
  • Support CISO in implementation of strategic goals for the program.
  • Integrate security controls to support business objectives, working closely with Senior Leadership and Business Analysts.
  • Develop security testing program to evaluate information security risks throughout the organization.
  • Conduct periodic assessments and generate written reports on cyber risks associated with First Financials' use of technology systems, cloud computing applications, and business process outsourcing.
  • Research and develop written assessment reports of current cyber threats to IT infrastructure, workstations, application systems, and sensitive business information.
  • Provide Information Security subject matter expertise to business units and the IT department to ensure that the organization's Information Security objectives are implemented as part of IT infrastructure, application development, and software-as-a-service initiatives.
  • Partner with key stakeholders to identify information asset owners to classify data and systems as part of a control framework implementation. Ensure security is factored into the evaluation, selection, installation and configuration of hardware, applications and software.
  • Regularly interact with Senior Leadership to report on information security program and risks in the industry as it relates to First Financial.
  • Develop domain knowledge of First Financial businesses and IT applications.
  • Develop reporting metrics (KPI, KRI) that can be provided to functional business leaders, Senior Executives, and Boards of Directors.
  • Support of the Vendor Risk Management program.
  • Participate in Security Incident Response processes - planning and investigation.
  • Develop and participate in the delivery of Information Security awareness and education materials, presentations and classes.
  • Support information security audit activities related to the implementation of Information Security controls.
  • Analyze and respond to Security Operations Center (SOC) Customer Security Incidents
  • Research and Education on Current Threats and Detection Methodologies
  • Assist with troubleshooting network and system issues within SOC
  • Write and update information security policies, standards and procedures.
  • Actively participate in the Customer Service First program and support the values of the organization and follow established policies and procedures.

MINIMUM QUALIFICATIONS:

  • Bachelor's degree from an accredited university preferability in computer science or related field or, equivalent combination of professional development training and experience.
  • Required CISSP, CISM or CISA certification
  • 5 years Information Security experience in the Financial or related industry.
  • 5 years of IT Risk Compliance, IT Risk Assessment, or similar experience.
  • Excellent understanding of information security principles, standards, tools and methodologies.
  • Strong written, oral communication and presentation skills.
  • Good interpersonal, organizational, facilitation, negotiation and time management skills.
  • Experience with Business Continuity Planning and Vendor Management
  • Ability to translate between business and technology needs.
  • Ability to build relationships and resolve conflicts.
  • Technical knowledge required in areas that intersect with Information Security (networking, infrastructure, VPN, encryption, firewall, etc.)
  • Possess experience in policy development and implementation based on established framework (ISO, NIST, etc.)

The above statements reflect the general details considered necessary to decide the principal functions of the job identified and shall not be construed as a detailed description of all work requirements that may be inherent in the job.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)

Applied = 0

(web-6886664d94-nm6rc)