Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Chief Information Security Officer image - Rise Careers
Job details

Chief Information Security Officer

Why Great Gray?

At Great Gray Group, we strive to set the bar for the retirement services industry. Our goal is to deliver advanced retirement solutions that combine our core fiduciary services with robust investment options, innovative technology, and dedicated client service. We focus on making choices clearer, transitions smoother, and the client experience more delightful. Complacency isn't in our vocabulary. Every day, we look for opportunities to better serve our clients, be an excellent business partner, and earn the trust of those who rely on us. 


The Role

Great Gray is looking to add a Chief Information Security Officer (CISO) to our Technology Team.  The CISO is both a strategic and tactical leader tasked with the critical responsibility of safeguarding the organization's information assets. This role encompasses a broad spectrum of duties that include establishing and maintaining the cybersecurity governance framework to ensure that policies and practices are aligned with business objectives and regulatory requirements. The individual in this role will be instrumental in identifying, evaluating, and mitigating cybersecurity risks, thereby ensuring the integrity, confidentiality, and availability of information. They will lead the development of risk management strategies and compliance activities, ensuring that the organization's cybersecurity posture is robust and resilient against emerging threats.

 

Location

This position will be remote. Candidate may work where they live anywhere in the United States.


Visa sponsorship or transfer of an existing visa is not available for this position. Applicants must be authorized to work directly for any employer in the United States without visa sponsorship or transfer.


Responsibilities
  • Act as a central point of contact for Great Gray’s Information Security Management
  • Work with the business and technology partners to achieve goals and objectives in a secure manner with a heavy forward lean on modern software and technology architectures.
  • Lead and execute proactive Information Security practices across the organization and within the technology team covering Infrastructure Platform Security, Application Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
  • Serve as an expert in Great Gray’s Information Security capabilities, architecture solutions, policies, procedures and standards
  • Partner with various functional leaders to provide technical and cybersecurity architectural leadership, where necessary to drive innovative solutions that help improve security
  • Escalate and manage cyber security risk
  • Provide ad hoc support on special Information Security hot topics for the business
  • Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
  • Complete other related duties as assigned
  • Manage 3rd party firms responsible for providing information security services to Great Gray
  • Manage the strategic client information security vendor risk management due diligence process
  • As needed, provide senior level information security acquisition due diligence
  • Provide information security subject matter expertise as it relates to data privacy regulatory compliance


Qualifications & Experience
  • Undergraduate degree in IT related field such as Computer Science, Information Systems, or Engineering
  • 12+ years of related IT process experience with a deep understanding of cybersecurity principles, risk management, and compliance frameworks
  • Previous internal audit experience, external audit experience or SOX and risk assessment experience
  • Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
  • 5+ years experience in the financial services industry
  • 5+ years experience with Application Security, Threat Modeling, Penetration Testing or Vulnerability Management
  • Ability to navigate complex regulatory landscapes, and a commitment to continuous improvement in the face of a rapidly evolving cybersecurity environment
  • Demonstrated strong problem-solving and analytical skills is critical
  • Strong leadership skills with the ability to work with and influence people at all levels across the enterprise
  • Great attention to details with the ability to understand impacts to the broader organization
  • Effective time management and prioritization
  • Ability to work within tight time constraints and multiple priorities
  • Excellent verbal and written communication skills
  • Excellent interpersonal skills, teamwork, and collaboration
  • Ability to thrive in a fast-paced, dynamic environment and manage multiple priorities effectively
  • Comfortable navigating ambiguity
  • Entrepreneurial mindset to bring best practice ideas to the team
  • Exhibits our Great Gray attributes: Results-Driven, Innovative, Resilient, and Decisive


Benefits

We have a comprehensive and competitive benefits package at Great Gray. Some of the highlights are:

·       Be an integral part of an early-stage, high-growth organization!

·       Hybrid work environment

·       Competitive compensation package including 401(k) with elective and non-elective match opportunities

·       Lifestyle spending allowance program

·       Medical, Dental, Vision Insurance

·       Employer-paid life and disability insurance

·       Generous paid time off program


Company Background 

Great Gray is the leading independent provider of trustee and administrative services to Collective Investment Trusts (“CITs”), with over $185 billion in CIT assets, across more than 700 funds. We proudly work with 75 subadvisors, including leading firms such as Alliance Bernstein, American Funds, BlackRock, Franklin Templeton, MetLife, Neuberger Berman, PGIM, PIMCO and Raymond James. 


CITs are more than just an investment vehicle. They represent a forward-thinking approach to retirement planning. These tax-exempt, pooled investment vehicles are offered to employer-sponsored retirement plans, like 401Ks. CITs are comparable to mutual funds, but, because they are tailored for the institutional retirement market, they can offer distinct advantages, including efficient administration and cost-effectiveness. CITs have a history dating back over 90 years; but they have gained favor over the past decade, driven by innovations, and Great Gray has been at the forefront.


Great Gray has consistently delivered year-over-year growth at an above market rate and is investing in the continued development of its core CIT business as well as complementary administrative services and technology solutions for the retirement market.


Madison Dearborn Partners (“MDP”) purchased Great Gray from Wilmington Trust in April 2023. As a result, Great Gray is an independent company owned by funds affiliated with MDP.


Investor Background 

MDP is a leading private equity investment firm based in Chicago. Since MDP's formation in 1992, the firm has raised aggregate capital of over $28 billion and has completed over 150 platform investments. MDP invests across five dedicated industry verticals, including basic industries; business and government software and services; financial and transaction services; health care; and telecom, media, and technology services.


Equal Employment Opportunity Policy

Great Gray, LLC is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status or other non-merit factor.

Average salary estimate

$175000 / YEARLY (est.)
min
max
$150000K
$200000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Chief Information Security Officer, Great Gray

Welcome to Great Gray Group! We’re on the lookout for a forward-thinking Chief Information Security Officer (CISO) to elevate our Technology Team while working remotely from anywhere in the USA. At Great Gray, our mission is to redefine the retirement services industry by delivering cutting-edge retirement solutions paired with exceptional client service. As the CISO, you'll play a crucial role in fortifying our organization’s information assets. Your responsibilities will range from establishing a cybersecurity governance framework to ensuring compliance with regulatory standards. You'll be at the forefront of identifying and mitigating cybersecurity risks while leading proactive information security practices across our operations. You’ll work closely with business and technology partners, driving strategies in areas like Data Security, Network Architecture, and User Access Management. Your leadership will be integral in maintaining a resilient cybersecurity posture against emerging threats, and you’ll regularly update executive leadership on our security health. If you have a solid background in cybersecurity, risk management, and experience particularly in the financial services industry, we want you. Join us in creating secure and innovative solutions that benefit our clients and redefine how retirement planning is approached!

Frequently Asked Questions (FAQs) for Chief Information Security Officer Role at Great Gray
What are the key responsibilities of a Chief Information Security Officer at Great Gray?

As a Chief Information Security Officer at Great Gray, your responsibilities will include establishing cybersecurity governance frameworks, managing cyber risk, leading proactive information security practices, and collaborating with various functional leaders to enhance organizational security. You will act as a central contact point for information security initiatives and develop strategies to protect client information.

Join Rise to see the full answer
What qualifications are required for the Chief Information Security Officer position at Great Gray?

To qualify for the Chief Information Security Officer role at Great Gray, you should possess an undergraduate degree in an IT-related field, 12+ years of relevant experience in IT and cybersecurity, and professional certifications like CISSP. Additionally, a deep understanding of risk management and experience in the financial services industry is crucial.

Join Rise to see the full answer
How can a Chief Information Security Officer contribute to Great Gray's mission?

The Chief Information Security Officer at Great Gray contributes significantly by safeguarding the organization’s critical information assets, ensuring compliance with regulations, and providing expert cybersecurity leadership. By actively mitigating risks, the CISO promotes a secure environment that supports Great Gray’s mission of delivering advanced retirement solutions.

Join Rise to see the full answer
What are the benefits of working as a CISO at Great Gray?

Working as a Chief Information Security Officer at Great Gray comes with numerous benefits, including a competitive compensation package, flexible remote work options, a lifestyle spending allowance, and comprehensive health benefits. Plus, you’ll take part in an innovative, rapidly growing organization dedicated to transforming the retirement services industry.

Join Rise to see the full answer
What is the company culture like at Great Gray for a Chief Information Security Officer?

Great Gray prides itself on a results-driven and innovative culture. As a Chief Information Security Officer, you will work in a collaborative environment where creativity and great attention to detail are valued, and you’ll have the opportunity to influence various levels across the organization while adapting to a fast-paced, dynamic landscape.

Join Rise to see the full answer
Common Interview Questions for Chief Information Security Officer
What motivated you to apply for the Chief Information Security Officer position at Great Gray?

When answering this question, highlight your passion for information security and how it aligns with Great Gray's mission. Discuss your commitment to safeguarding information in the retirement services industry and your desire to make a meaningful impact through innovative solutions.

Join Rise to see the full answer
Can you describe your experience with risk management and compliance frameworks?

Use this opportunity to detail your past experiences managing risk in the financial services industry. Explain specific frameworks you’ve worked with, how you navigated complex regulations, and the outcomes you've achieved in your successful management of risk and compliance activities.

Join Rise to see the full answer
How do you stay updated on emerging cybersecurity threats?

Discuss the various resources and networks you engage with to keep your knowledge current. Mention attending industry conferences, following relevant news outlets, and engaging with professional bodies that focus on cybersecurity trends.

Join Rise to see the full answer
What strategies do you employ for effective communication of cybersecurity issues to executive leadership?

Emphasize the importance of translating technical jargon into business language. Discuss how you prioritize critical risks, present actionable insights and statistics, and ensure transparency while discussing the overall information security health of the organization.

Join Rise to see the full answer
Describe a time you successfully managed a cybersecurity crisis.

Give a specific example where you led efforts to address a cybersecurity threat. Highlight your decision-making process, the actions taken, and the role collaboration played in resolving the issue successfully.

Join Rise to see the full answer
How do you approach building a cybersecurity governance framework?

Outline your methodical approach to developing comprehensive frameworks. Discuss your techniques for assessing organizational needs, aligning security policies with business objectives, and facilitating a culture of security within the organization.

Join Rise to see the full answer
What tools and technologies do you find essential for information security?

Share your familiarity with various security tools, such as firewalls, encryption technologies, and threat detection systems. Emphasize how you selectively choose tools based on the organization’s specific needs and demonstrate their efficacy in enhancing overall security.

Join Rise to see the full answer
How do you handle disagreements with stakeholders regarding security policies?

Explain your collaborative approach to resolving conflicts. Discuss how you focus on mutual understanding, providing evidence-based rationale for security policies, and fostering a cooperative environment to achieve a resolution.

Join Rise to see the full answer
In your opinion, what does a resilient cybersecurity posture look like?

Articulate your view on resilience as a combination of proactive measures, rapid incident response capabilities, regular training, and continuous improvement efforts in adapting to emerging threats and vulnerabilities.

Join Rise to see the full answer
What steps do you take to manage third-party risk in cybersecurity?

Outline your process for evaluating third-party vendors. Discuss due diligence, continuous monitoring, and how you incorporate cybersecurity requirements into contracts to protect organizational data.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Posted 8 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Accellor Remote No location specified
Posted 3 days ago
Photo of the Rise User
Posted yesterday
Photo of the Rise User
Posted 3 days ago

great gray is a leader in the collective investment trust (cit) market with over $179 billion in fund assets. these assets are spread across funds that are overseen by 80 sub-advisors. additionally, great gray maintains trading agreements with 38 ...

18 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
January 12, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!