Job Description
Job Title:  Business Information Security Officer
Req Id:  2526
Work Model:  Remote
Company:  Altria Client Services
State/Province: 
Job Description: 

Together We Innovate. Together We Change.

 

Interested in partnering with technology leaders and business partners to provide thought leadership and information security guidance across a broad variety of business strategy initiatives for a Fortune 500 company? If you have a bachelor's degree along with 8 plus years of experience in information security or IT risk management, we want to speak with you! We are currently seeking a Business Information Security Officer (BISO) to join our IT Risk Management (ITRM) team in Richmond, VA, but are open to a remote work arrangement.

 

This role will serve as a trusted security advisor to supported business services and operating companies, helping to identify, assess, and manage information security risks while enabling business objectives.

What you will be doing:

  • Acting as the primary information security partner to assigned business lines and operating companies, providing risk insights and practical mitigation guidance to strengthen the enterprise cybersecurity posture.
  • Coordinating and supporting the delivery of cybersecurity services, helping improve enterprise‑wide risk awareness and inform cyber strategy.
  • Communicating cybersecurity threats, initiatives, and open risks to business and technology leaders, while partnering closely to understand and influence technology decisions.
  • Applying information security policies, standards, and frameworks (e.g., NIST, CIS, OWASP) to systems and business initiatives, supporting consistent and effective implementation.
  • Providing clear, business‑focused and technical guidance on IT risk, ensuring security controls are coordinated into business processes, projects, and solutions.
  • Defining and communicating security and compliance requirements with technology owners, system owners, and business partners, and advising on secure solution selection, implementation, and continuous improvement.
  • Evaluating and handling third‑party risk, supporting supplier risk management activities, remediation efforts, and contract discussions.
  • Perform and support risk assessments, threat and vulnerability management, audits, and incident response activities, serving as a domain expert in coordination with the Computer Security Incident Response Team (CSIRT).

We want you to have:

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related subject area.
  • 8+ years in information security, IT risk management, or closely related IT discipline.
  • Broad understanding of IT environments, including operating systems, application platforms, cloud technologies, and new technologies.
  • Solid understanding of information security principles, risk assessment and management practices, defense‑in‑depth strategies, and security controls.
  • Experience working with modern development and delivery practices, including agile and secure development approaches (e.g., DevSecOps).
  • Familiarity with industry standards and frameworks, including the NIST Cybersecurity Framework and PCI DSS.
  • Demonstrable ability to communicate clearly and effectively with both technical and non‑technical business partners through written, verbal, and interpersonal interactions.
  • Professional security certifications (e.g., CISSP, CISM, CRISC, or similar) are preferred.

Compensation and Benefits

Additional Information

 

 

 

The starting salary is based on but not limited to experience, knowledge, and qualifications in determining compensation decisions. The Salary Range for this position is: $131,600.00 - $190,850.00.    

 

Why You’ll Love Building Your Career at Altria

 

At Altria, we believe a great career starts with feeling supported — both at work and in life. Here’s what you’ll find here:

  • Work where life works for you — with flexible and remote options that fit your world, not the other way around.
  • Own your time — start with 15 days of paid time off, 13 paid holidays, 2 floating holiday days, and a 37.5-hour workweek so you can recharge and live fully
  • A place where you belong — where your ideas are welcomed, your growth is encouraged, and your impact is real
  • Get recognized for your work – annual merit increases and performance bonus
  • A future you can count on — 401(k) matching from day one; plus Deferred Profit Sharing, an annual company contribution in an amount equal to 13%-17% of your base salary
  • Help with your goals — get help with student loan repayment assistance, attend a conference, or gain a new certification with professional development stipends
  • Support for what matters most — comprehensive medical, dental, and vision coverage for you and your family
  • Celebrating your milestones — paid parental and bonding leave for life’s biggest moments.
  • Wellness that goes beyond work — programs that care for your whole well-being at whatever stage you are in your life
  • A culture that gives back — paid volunteer days and a shared commitment to making a difference

 

At Altria, we offer more than benefits — we offer a career that fits your life, rewards your ambition, and celebrates your impact.

 

This position is not eligible for sponsorship.

 

Altria is a Fortune 500 company that has a leading portfolio of products for U.S. adult tobacco and nicotine consumers 21+. For decades we’ve been leaders in the tobacco industry, but the industry is evolving - and so are we. Our Vision is Moving Beyond Smoking™.

At Altria, we celebrate the power of diverse teams working together to shape our future. Each Altria company is an equal opportunity employer. We are committed to providing individuals with criminal records, including formerly incarcerated individuals and individuals with conviction records, a fair chance at employment. Join us as we work together to shape a better future for adult tobacco consumers, our employees, and our shareholders.

Altria is the parent company of Philip Morris USA, John Middleton, U.S. Smokeless Tobacco, Helix Innovations, and NJOY. Altria complements its tobacco portfolio with equity investments in Anheuser-Busch InBev and Cronos Group.

Learn more about Altria at www.altria.com and follow us on LinkedIn.