Oracle Senior Director, Information Security and Regulatory Compliance in Washington, District Of Columbia
Work with a world class team to develop, implement, and support cutting edge Oracle technology.
Manages teams supporting and/or implementing large and/or complex multi-functional and/or multi-location projects and/or systems. Defines, documents and manages scope, expectations, implementation approach, deliverables and acceptance testing criteria. Develops and manages an effective risk mitigation strategy for the project(s).
Directs and ensures the implementation of operational policies through subordinate managers Interacts internally and externally with executive management involving negotiation of difficult matters to influence policy. Functional expertise and broad company knowledge. Successful track record in the specialism and as a manager. Detailed knowledge of technical and business concepts of a number of related applications areas. BA/BS degree preferred.
Oracle is an Affirmative Action-Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veterans status, age, or any other characteristic protected by law.
_General Job Description_
Reporting directly to the Vice President of Oracle Global Information Security (GIS), this senior management role leads the development, oversight and deployment of next generation regulatory compliance and obligation management activities throughout Oracle. This involves negotiating common approaches at the VP level across lines of business. You will lead a team of senior functional experts to ensure the efficient deployment and oversight of multiple strategic programs and processes. You will also interact and negotiate common approaches with Cloud compliance teams, Legal, Internal Audit, Business Practices, Sales, as well as others. Your goal is to engineer and define strategy, policies, programs and processes that will improve the speed at which Oracle conducts these activities while ensuring high-quality results, and to oversee the implementation of those programs and processes throughout Oracle.
Responsible for development and deployment next-generation regulatory compliance management strategy, policies, programs and processes throughout Oracle.
Responsible for development and deployment of strategy, programs and processes to improve Oracle’s obligation management in relation to information security requirements, including handling reponses to proposals, rfp’s and questionaires.
Responsible for negotiating corporate-wide strategy, program and process improvements at the VP level across Oracle lines of business.
Responsible for programs and processes that have significant long-term impact on Oracle’s regulatory compliance posture, customer obligations, and information security risk posture.
Make decisions that have a significant long-term impact on managing information security and regulatory compliance risk throughout Oracle.
Evaluate potential business impacts from decisions and provides strategic and tactical guidance to management.
Build, manage and develop world-class team of senior functional experts to ensure the efficient operation of the function across mutiplestrategic corporate programs and processes.
Build strong relationships with peers, stakeholders and executives (up to SVP) across relevant Oracle lines of business, including Cloud, legal, internal audit, global business practices, sales, etc.
Develop and provide input for reports to the Oracle Security Oversight Commitee (OSOC)
Review and contribute to Oracle information security policies.
Provide expert advice and direction to related to industry and regulatory standards, such as ISO-2700x, HIPAA, PCI, DSS, FedRAMP, GDPR, etc.
Represent and champion Oracle at industry events.
Work closely with GIS Leadership Team to ensure a coordinated approach to all aspects of information security risk management. Upon request, act as deputy to VP, Global Information Security.
- Minimum requirements
o 12 years experience in information security or related field
o Strong knowledge of one or more industry standards, such as ISO-2700x, PCI DSS, HIPAA, GDPR, NIST 800-series, etc.
o Expert understanding of the fundamentals of information security or regulatory compliance with the demonstrable ability of practical application in a Cloud services delivery environment
o Excellent verbal and written communications skills with strong affinity for public speaking, and ability to represent Oracle in security engagements with policymakers, customers and other third-parties
o Strategic, vision-based leadership with an ability to turn strategic thinking into effective tactical and operational activity
o Demonstrated success in managing a high-performing, cross-functional team managing multiple strategic initiatives across a variety of knowledge areas
o Strong business acumen along with a proven ability to negotiate, influence and gain buy-in at the executive level across Oracle’s divisions, regions and Lines of Business
o Ability to keep up with evolving technological changes relating to security and regulatory compliance
o Enthusiasm for involvement in new projects and initiatives
o Ability to effectively manage multiple strategic initiatives in a dynamic, fast-paced environment
- Preferred requirements
o Bachelor-level degree in Computer Science, Information Systems or other related field
o Industry certification such as CRISC, CISSP, CISM, etc.
o 8 or more years of successful team management experience, including experience managing multiple teams.
Job: *Information Technology
Title: Senior Director, Information Security and Regulatory Compliance
Location: United States
Requisition ID: 20000VSZ
- Oracle Jobs