Are you ready to embed security by design and influence risk decisions at enterprise scale?
Can you partner with senior leaders to turn cyber risk into trusted business outcomes?
About Our Team
The Business Information Security Office (BISO) team partners with business, product, and technology leaders to deliver measurable security outcomes that support enterprise objectives. We focus on managing complex risk, embedding secure‑by‑design practices, and driving long‑term cybersecurity maturity. Our work enables trusted innovation, operational resilience, and informed risk decision‑making across the organization.
About the Role
As a Business Information Security Officer (BISO), you act as the primary security partner for assigned business units, bridging business strategy and enterprise cybersecurity. You are accountable for planning and executing security initiatives that reduce risk, strengthen cyber defenses, and enable delivery at scale.
The role is highly collaborative, advisory, and outcome‑focused—ensuring security is embedded early and pragmatically across products, platforms, and major initiatives.
Responsibilities:
Act as the primary security partner for assigned business units, building trusted senior stakeholder relationships.
Embed security early into business initiatives, product development, and technology delivery.
Sponsor and support enterprise and business‑aligned security initiatives end‑to‑end.
Provide expert security guidance across concurrent IT, engineering, and business projects.
Oversee security assessments including vulnerability management, penetration testing, and third‑party risk.
Translate security findings into prioritized, actionable remediation plans with clear ownership.
Provide security input into solution architecture and major technology decisions.
Serve as the security point of contact for customer‑facing inquiries, audits, and due‑diligence.
Identify, document, and govern cyber risks, supporting risk acceptance and escalation processes.
Develop and report meaningful security metrics to inform leadership decisions and continuous improvement.
Requirements:
Several years’ experience in a BISO or senior security leadership / advisory role.
Strong cloud and application security experience (AWS, Azure, GCP; secure SDLC).
Hands‑on knowledge of security tooling (SIEM, SOAR, EDR/XDR, CSPM, SAST/DAST).
Experience embedding security into CI/CD pipelines and DevSecOps practices.
Proven capability in risk assessments, threat modeling, and control gap analysis.
Experience collaborating with SOC and Incident Response teams during security events.
Working knowledge of security frameworks and regulations (NIST, ISO 27001, CIS, GDPR, etc.).
Ability to translate technical risk into clear, business‑relevant language.
Strong stakeholder management skills with the ability to influence without authority.
Bachelor’s degree in Engineering, Computer Science, or equivalent experience, plus relevant certifications (CISSP, CISM, GIAC, or similar).
We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.
We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.
Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.
Please read our Candidate Privacy Policy.
We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
USA Job Seekers:
EEO Know Your Rights.
Skills Required
- Several years' experience in a BISO or senior security leadership/advisory role
- Strong cloud and application security experience (AWS, Azure, GCP; secure SDLC)
- Hands-on knowledge of security tooling (SIEM, SOAR, EDR/XDR, CSPM, SAST/DAST)
- Experience embedding security into CI/CD pipelines and DevSecOps practices
- Proven capability in risk assessments, threat modeling, and control gap analysis
- Experience collaborating with SOC and Incident Response teams during security events
- Working knowledge of security frameworks and regulations (NIST, ISO 27001, CIS, GDPR, etc.)
- Ability to translate technical risk into clear, business-relevant language
- Strong stakeholder management skills with ability to influence without authority
- Bachelor's degree in Engineering, Computer Science, or equivalent experience
- Relevant certifications (CISSP, CISM, GIAC, or similar)
RELX Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about RELX and has not been reviewed or approved by RELX.
-
Retirement Support — Retirement support is positioned as a meaningful part of total rewards through a 401(k) plan with matching contributions, alongside other financial protections such as life and disability coverage. Tuition reimbursement and share purchase access further broaden the financial value of the package beyond base salary.
-
Leave & Time Off Breadth — Leave and time off breadth appears strong, with generous vacation allowances, mental health days, and options like sabbaticals and tiered PTO by tenure. Parental and caregiving leaves are described in detail, reinforcing time-away benefits as a standout component of the overall package.
-
Wellbeing & Lifestyle Benefits — Wellbeing and lifestyle benefits are supported by offerings such as mental health support (e.g., app access), EAP resources, gym-related perks, and wellness incentives. Flexible working hours and related work-life supports add to the perceived day-to-day value of benefits.
RELX Insights
What We Do
RELX is a global provider of information-based analytics for professional and business customers across industries. We help scientists make new discoveries, doctors and nurses improve the lives of patients and lawyers win cases. We prevent online fraud and money laundering, and help insurance companies evaluate and predict risk. Our events enable customers to learn about markets, source products and complete transactions. In short, we enable our customers to make better decisions, get better results and be more productive. We do this by leveraging a deep understanding of our customers to create innovative solutions which combine content and data with analytics and technology in global platforms. RELX serves customers in more than 180 countries and has offices in about 40 countries. It employs approximately 30,000 people of whom almost half are in North America. We operate in four major market segments: Scientific, Technical & Medical; Risk & Business Analytics; Legal; and Exhibitions.








