BISO; Business Information Security Officer
Listed on 2026-03-12
-
IT/Tech
Cybersecurity, Information Security
Who are we?
Equinix is the world’s digital infrastructure company®, shortening the path to connectivity to enable the innovations that enrich our work, life and planet.
A place where tech thinkers and future builders turn bold ideas into breakthrough experiences, we welcome your unique perspective. Help us challenge assumptions, uncover bias, and remove barriers—because progress starts with fresh ideas. You’ll find belonging, purpose, and a team that welcomes you—because when you feel valued, you’re empowered to do your best work.
Job SummaryThe Business Information Security Officer (BISO) is a strategic leader who connects the security organization with business, operations, and technology teams. The role embeds security into everyday processes and initiatives, ensuring practices are practical, scalable, and support business objectives.
Acting as a business advisor, the BISO translates the CISO’s strategy into actionable programs while bringing business needs back into the security roadmap. The role strengthens security culture, drives risk reduction, improves resilience, and enables teams to deliver secure, innovative solutions. BISOs lead through influence, collaboration, and trusted relationships—advising leaders on security risks and guiding decisions across the organization.
Responsibilities Strategic Business Partnership & Security Integration- Partner with business unit leadership to advise on security decisions that enable business objectives, operational excellence, and competitive advantage
- Serve as primary security liaison for assigned business units, establishing strong relationships with operations, engineering, product, facilities, and technology teams
- Maintain and communicate business unit risk posture to leadership and teams, fostering proactive risk management and security culture
- Monitor compliance with security policies, standards, and regulatory requirements relevant to business operations
- Drive adoption and continuous improvement of security standards, policies, and best practices across business operations
- Build reusable artifacts, playbooks, and guidance materials to enable teams to integrate security seamlessly into daily operations
- Contribute to incident preparedness, response, and recovery activities, ensuring coordinated and timely mitigation while minimizing operational impact
- Serve as business unit security point of contact during security incidents, coordinating with central security operations and business stakeholders
- Conduct post-incident reviews and lead tabletop exercises to enhance preparedness and resilience
- Collaborate with information security, enterprise architecture, IT operations, legal, compliance, and other teams on security initiatives and projects
- Partner with other BISOs across the enterprise to share practices, standardize approaches, and drive consistency where appropriate
- 5+ years in cybersecurity, security engineering, risk management, or related technical roles
- Strong understanding of cybersecurity threats, security frameworks (NIST, ISO 27001, CIS Controls), risk management, and security architecture
- Experience with access control, monitoring, vulnerability management, and secure development practices
- Knowledge of security compliance standards such as ISO 27001, SOC2, NIST frameworks, and industry-specific regulations
- Background in information security operations, security engineering, or GRC functions
- Experience working with cloud platforms (AWS, Azure, GCP)
- Familiarity with security technologies including SIEM, vulnerability scanners, endpoint protection, identity and access management, and network security tools
- Bachelor's degree in technology field
- Exceptional communicator, able to translate complex security concepts, risks, and technical requirements for both technical and non-technical stakeholders at all organizational levels
- Collaborative influencer who effectively aligns teams and leadership to achieve security objectives without direct reporting authority
- Pragmatic…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).