Business Information Security Officer (Global Security)
Jersey City
Tuesday, 19 May 2026
Join RBC's newly established US Cyber Security & Resilience function as a strategic leader responsible for implementing corporate cyber security standards and initiatives across our US business units. As the Business Information Security Officer (BISO) (Global Security), you'll translate global security policies into regional execution, bridge business and security needs, and build the infrastructure and team capabilities to support RBC's cyber resilience mission. Reporting to the Head of US Cyber Security & Resilience, you'll have the autonomy to shape the security posture of our US operations and drive meaningful impact across the organization. What will you do? Lead the rollout and operationalization of RBC's global cyber security strategy, translating corporate policies and frameworks into actionable regional initiatives tailored to US business unit needs. Serve as the primary strategic liaison between senior business leadership, IT, and enterprise security teams to ensure alignment on cyber resilience priorities and identify opportunities to strengthen the overall security posture. Own compliance strategy for US regulatory requirements and industry frameworks (NIST CSF 2.0, ISO 27001, NYDFS, NFA standards); ensure business units understand and meet control requirements. Drive incident prevention and response capabilities by collaborating on risk assessments, control testing, tabletop exercises, and security control implementation across US entities. Direct the execution and monitoring of information and data security initiatives, including policy development, control implementation, and effectiveness assessment. Provide strategic counsel to senior leadership on emerging cyber threats, compliance challenges, and opportunities to enhance RBC's security architecture and defense mechanisms. Foster cross-functional collaboration and relationships with business, IT, Risk, and Business Continuity leadership to address complex security issues and drive continuous improvement. Contribute to training and awareness initiatives to elevate cybersecurity literacy across US business units. What do you need to succeed? Must-have 10 years of proven cyber security experience (ideally at a consulting or program/strategy delivery level)3 years'experience in strategic relationship management, delivery performance analysis, and negotiations 2-4 years in the financial services or other regulated industries, working at the management level, with demonstrated expertise in US regulatory compliance (NYDFS, NFA, or similar frameworks)Strong business and financial acumen plus operational mindset; ability to articulate security value to C-suite and executive stakeholders. Proven track record building and scaling security programs or teams; comfort operating in ambiguous environments and establishing structure in emerging functions. Nice-to-haveFinancial Services experience in: Wealth Management, Payments, Capital Markets, or similar lines of business. What’s in it for you?