{bc}
company_site

Director, BISO - Enterprise Security

Salesforce
New York City, USA
Full-time
Director · 12+ years experience
Discovered Today
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan
Smart Apply

Full Job Posting

  • Own the end-to-end security relationship for your assigned Business Unit (BU), serving as the primary point of contact and credible voice between BU leadership and Enterprise Security.
  • Own the risk register for your portfolio — setting severity, prioritization, and remediation sequencing, and building resourced plans with named owners and dates.
  • Lead security engagement on design reviews, threat models, and architecture decisions, shaping secure-by-design patterns early in the development lifecycle.
  • Lead the customer's side of active security incidents, coordinating with the Cybersecurity Operations Center (CSOC) and executive stakeholders, while managing and developing a team of Security Partner professionals.
  • You have 12+ years of experience in cybersecurity, IT risk, or a related discipline, including significant time in a large, complex enterprise, with prior experience as a BISO, Security Partner, or equivalent senior security leadership role.
  • You have deep technical fluency across cloud, identity, application, and AI/ML security, with the ability to hold a substantive technical point of view in design reviews and threat models.
  • You have a track record of prioritizing and communicating risk with executive-grade written and verbal communication, including experience representing security to CISO, CIO, GM, and Board-level audiences.
  • You have experience managing and developing security professionals, and operating effectively under ambiguity in a fast-moving, cross-functional environment.
  • You hold a CISSP, CISA, CISM, or equivalent certification.
  • You have experience in regulated industries or product lines, such as financial services, public sector, or healthcare.
  • You have prior experience integrating acquired entities or divestitures into enterprise security programs.
  • You have working knowledge of regulatory frameworks such as FedRAMP, SOX, or regional data-protection regimes, and control frameworks such as NIST CSF or NIST SP 800-53.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Salesforce