Full-Time Chief Information Security Officer (CISO)
Job Description
HYBRID
Who we are: Groups360 is a booking engine for meeting space founded in 2014 by former Gaylord Entertainment executives Dave Kloeppel and Kemp Gallineau. Groups360 was created with a singular goal — to empower meeting planners by bringing innovation, transparency, and simplicity to the decades-old problem of booking groups. The company’s technology, GroupSyncTM, enables suppliers to distribute inventory, engage with planners, and optimize group revenue. GroupSync also equips planners to search and shop hotels worldwide and book rooms and space directly, online, or through a simplified RFP process. GroupSync is the first distribution channel to offer online booking for both group hotel rooms and meeting space. Groups360 has offices in Nashville, London, and Singapore.
Our Partners: In 2019, major hospitality players Accor, Hilton, IHG and Marriott, invested a combined $50 million in Groups360 to help fuel instant-booking development. In 2022, the world’s largest alternative asset manager Blackstone Innovations Partners, New York Hedge fund Fir Tree Partners, and property and technology investment firm, Zigg Capital invested a combined $35 million in Groups360 to help drive the industry wide transformation, making group travel simple.
Life at Groups360: Groups360 is an innovative, high-growth company with offices in Nashville, London and Singapore. Groups360 is an equal opportunity employer, and our dedication to promoting diversity, multiculturalism and inclusion is reflected in the foundation of all we do.
Who we’re looking for: The demand for Groups360 products and services is at an all-time high. So, we are looking for ambitious, self-starters who want to impact the $1 trillion meetings and events industry. Successful team members have been those with the desire to be a part of a high- growth team and organization that finds and solves problems individually and as part of a team. If you’re looking to be a part of a fast-paced, highly motivating and rewarding environment at the intersection of hospitality and technology, then your next career starts here!
The role: The Chief Information Security Officer (CISO) is key member of the Executive Leadership Team. The CISO will serve as the process owner for establishing the strategy and implementing the information security program for the Company. The CISO will partner with the Company’s business leaders to develop, implement, maintain, and continually improve the strategic and risk-based Information Security, Data Privacy, and Risk & Compliance programs.
What you will do:
- Develop, implement and enforce the enterprise-wide Information Security, Risk and Compliance strategy, policies and practices that protects the confidentiality, integrity, and availability of the company’s data and servers.
- Lead strategic planning to achieve business goals by identifying and prioritizing development metrics and setting timetables for the evaluation, development, and deployment of all cyber security initiatives.
- Manage and coordinate, internally and externally, responses to security incidents, providing timely reports during incidents and remediation, as well as proposing solutions to anticipate, prevent, or mitigate future incidents.
- Define and communicate corporate plans, procedures, policies, and standards for the organization for acquiring, implementing, and operating new security systems, equipment, software, and other technologies.
- Generate security strategy, risk, and posture statements and reports for Sr Leadership and Key Stakeholders.
- Partner with business stakeholders across the company to raise awareness of risk management concerns and to remediate security flaws in infrastructure, system design and application security.
- Manage the administration of all computer security systems and their corresponding or associated software, including firewalls and data encryption programs.
- Monitor access and systems logs for potential security issues and risks.
- Collaborate with business leader to assist in defining requirements of non-IT areas of security (e.g., physical building access, records management).
- Recommend and implement changes in security policies and practices in accordance with changes in local or federal law.
- Provide guidance for security tools and access rights for internal and external applications and utilities.
- Develop and oversee internal security training for Groups360 personnel.
- Conduct periodic risk assessments to proactively identify and remediate risks.
- Ensure compliance with any related legislation, such as the Data Protection Act, ISO standards or relevant government regulations (e.g., GDPR, SCCA, PDPA).
- Oversee and respond to compliance audits (e.g., SOC2, ISO 27001/27701).
- Monitor the latest technical security innovations and stay up to date with the latest cyber security technologies.
- Partner with SVP & CTO to plan budget allocations relating to IT, Data and Information security.
Education and experience:
- Bachelor’s degree in IT/Engineering related discipline or equivalent experience
- Professional security management certification
- 10+ years of experience in Information Security and risk management.
- Experience with cloud technology, security, platforms and services.
- Strong background in secure infrastructures and software development practices.
- Clear understanding of relevant information security governance, technical and security standards and regulations.
- Experienced with common security standards including, NIST, OWASP, PCI DSS, PSD2, ISO 27001/27701, SOC2, as well as current data privacy regulations, including GDPR.
Additional eligibility qualifications:
- Excellent verbal, written and group communication and presentation skills; ability to utilize communication skills to effectively influence across functions and business units as well as across different leadership levels.
- Excellent organizational & analytical skills and ability to multi-task in a fast-paced environment.
- Results-driven and execution-oriented personality, ready to take ownership and get results.
- Strong empathy for customers and a passion for revenue and growth.
- Proficiency in Microsoft Office 365 Suite: Word, Excel, PowerPoint, Project, SharePoint.
- Other qualification as required.
Core Business Hours: 8:00 a.m. to 5:00 p.m. M-F, Hybrid; these hours may vary depending upon your position and work requirements.
Status: Exempt
Location: Brentwood, TN, HYBRID (3 days in-office, 2 days remote)
(Company will not sponsor C2C or Work-related Visas)
Groups360 is proud to be an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law. All employment is decided on the basis of qualifications, merit, and business need.
NOT ACCEPTING AGENCY CALLS OR SUBMISSIONS
How to Apply
https://groups360.com/careers/?p=job%2Fox8unfwg170 total views, 0 today