Merchants Bank has an opening for a Information Security Officer. This on-site position can work from any of our Merchants Bank branch locations in Minnesota or Wisconsin. The Information Security Officer (ISO) is responsible for leading and maintaining the Bank’s information security program. This role oversees cybersecurity, regulatory compliance, risk evaluation, and reporting while supporting business objectives. The ISO serves as the Board‑approved leader and works with the Chief Risk Officer and Executive Leadership to align security controls with acceptable risk levels. Requires 5 years of experience in information security management including specific experience in the following areas: audit and exam response, incident response, reporting and information security program development. 5 years of general IT experience or 3 years of general IT experience and at least a 2-year degree in information security and 2 years of supervisory experience desired. Must have excellent communication skills, proficiency in the Microsoft Office Suite, be highly organized and willing to investigate and research. Merchants Bank offers competitive wages and benefits for our full-time employees including health, dental, life, disability and vision insurance; flexible spending accounts, 401(k) and ESOP retirement plans; bonus plan; paid time off; tuition reimbursement; and a variety of voluntary supplemental insurance options. Please click on Apply Now or apply in person at any Merchants Bank location. Questions can be emailed to hr@merchantsbank.com. Merchants Bank is an Equal Opportunity Employer of women, minorities, protected veterans and individuals with disabilities. General Summary: This role will be responsible for implementing and managing the information security program for the Bank. The Information Security Officer is responsible for identifying, evaluating, and mitigating information security risk, and reporting on legal and regulatory, and IT Security (including cybersecurity), while supporting and advancing business objectives for the Company in alignment with growth and financial performance expectations. Must possess a sound knowledge of business management and a working knowledge of cybersecurity and systems covering the Company network and branch footprint as well as the broader digital ecosystem. This position is responsible for establishing and maintaining the information security program to ensure that information assets and associated technology, applications, systems, infrastructure, processes are protected in the environment in which we operate. This role will be the board-designated/approved Information Security Officer for the Company. A key element of the role is working with the Chief Risk Officer, the Chief Information Officer and the Executive Leadership Team to determine acceptable levels of risk for the organization. Will proactively work with business units and managers to implement practices that meet agreed-on policies and standards for security. The Information Security Officer should understand and articulate the impact of all security systems on the business and be able to communicate this to the Board of Directors and other senior stakeholders. The Information Security Officer must be knowledgeable about both internal and external business environments and ensure that systems are maintained in a fully functional and secure mode and are compliant with legal, regulatory, and contractual obligations. Serves as the process owner of the appropriate second-line assurance activities not only related to confidentiality, integrity, and availability, but also to the safety, privacy and recovery of information owned or processed by the business in compliance with regulatory requirements. This position understands that securing physical and information assets, associated technology, applications, systems and processes in the wider ecosystem in which the organization operates is as important as protecting information within the organization's perimeter. Ultimately, is a business leader expected to maintain objectivity and a strong understanding that security and risk management are foundational but must be managed with balanced perspective about the ability of the business to deliver on its growth and performance goals and objectives.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
Associate degree