AVP Information Security Strategy, GRC & Data Privacy
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Overview
Remote
On-site
Compensation
$150,000-$150,000/year
Job Description
Title: AVP Information Security Strategy, GRC & Data PrivacyOffice Status: Hybrid New York, NYBase Salary: Up to $150k + BonusABOUT THE ROLE This AVP-level opportunity sits within the CISO function of a well-established global financial institution, offering broad ownership across information security strategy, program management, governance, risk assessments, compliance, data privacy, and identity and access management. The role serves as a multi-disciplinary anchor for the institution's information security program coordinating strategy execution, managing CISO programs, refreshing policies and controls, overseeing regulatory compliance, and driving data privacy initiatives across the branch. It's an ideal fit for a technically grounded IT/IS risk professional with 5+ years of experience who combines strong program management skills with deep familiarity with regulatory frameworks and the ability to engage credibly across senior management, technical teams, and regulatory stakeholders.RESPONSIBILITIES
- Coordinate Information Security strategy in alignment with broader branch goals;maintain strategic initiative tracking and KRIs;conduct quarterly CISO strategy reviews and adjust as necessary
- Provide end-to-end project management for all CISO-led initiatives;manage all CISO programs including the Information Security Program, Data Privacy Program, and Training & Culture Program covering security training, phishing campaigns, and tabletop exercises
- Establish and maintain Information Security policies and procedures;ensure CISO roles and responsibilities are clearly delineated across first and second lines;periodically refresh TISR controls guidance and track policy adherence measures and metrics
- Provide all administrative functions for the Information Security Committee and all sub-committees
- Establish and enhance a TISR framework;conduct risk assessments across projects, third-party engagements, new activities, and applications;develop and execute an annual TISR work plan covering risk identification, assessment, control evaluation, and testing
- Catalog and oversee remediation of TISR issues arising from audits, regulatory exams, root cause analyses, and control testing;track control gaps and annually refresh CISO policies to reflect new and enhanced controls
- Prepare and submit audit evidence packages;develop proactive audit readiness strategies;prepare regulatory exam response evidence and recommend policy changes to align with OCC and applicable federal guidelines
- Develop and implement data privacy strategies ensuring compliance with applicable privacy laws and regulations;oversee privacy risk assessments, maintain privacy policies and procedures, and deliver privacy training programs
- Manage all CISO metrics and reporting across operational, executive, board-level, budget, headcount, and dashboard formats
- Establish and periodically update policies, procedures, and guidelines related to identity and access management and access recertification;manage end-to-end user access reviews including planning, execution, tracking, and resolution;conduct periodic User Recertification and Access Reviews across all applications;collaborate with IT, OSD, and business units to align access governance with broader organizational goals
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.

FAQs About AVP Information Security Strategy, GRC & Data Privacy Jobs at Madison-Davis
What is the work location for this position at Madison-Davis?
This job at Madison-Davis is located in New York, NY, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Madison-Davis?
Candidates can expect a pay range of $150,000 and $150,000 per year.
What employment applies to this position at Madison-Davis?
The employer has not provided this information. This may be discussed during the hiring process.
What is the process to apply for this position at Madison-Davis?
You can apply for this role at Madison-Davis either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.