Avnet

Business Information Security Officer (BISO)

Avnet$100K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of IT experience, including 4+ years in cybersecurity or IT risk.
  • Bachelor's degree or equivalent experience in a related field.
  • Relevant certifications such as CISSP, CISM, or CRISC preferred.
  • Proficiency in cybersecurity frameworks, governance, and risk management.
  • Understanding of regulatory requirements like PCI DSS and GDPR.

Responsibilities

  • Serve as the primary cybersecurity advisor to business units, fostering trust-based relationships.
  • Engage with business leaders to align security with business priorities and growth initiatives.
  • Translate technical risks into business impact for executives, enabling informed decision-making.
  • Establish governance touchpoints in business units for risk visibility and accountability.
  • Advocate for business-specific risks and needs during enterprise cybersecurity discussions.
  • Support vulnerability management and secure configuration across systems.
  • Provide security expertise for sales cycles and customer-facing functions.

Benefits

  • Generous Paid Time Off
  • 401K and Pension Plan
  • Family Support (Paid Leave, Surrogacy, Adoption)
  • Medical, Dental, Vision, and Life Insurance
  • Education Assistance and Development Resources
  • Employee Wellness Programs
Full Job Description
The Business Information Security Officer (BISO) serves as a strategic partner to Avnet's global business operations - enabling the business to operate securely, grow confidently, and deliver value to customers.

Acting as a trusted advisor and embedded security leader, the BISO works across business, technology, and cybersecurity teams to ensure security is seamlessly integrated into business processes, decision-making, and innovation. This role focuses on reducing friction, clarifying risk, and accelerating secure outcomes while aligning to enterprise cybersecurity strategy.

The BISO partners with the business to balance risk, speed, and opportunity, helping teams move forward with revenue growth opportunities.

Key Responsibilities:

1. Business Unit Alignment & Intake
  • Serve as the primary cybersecurity advisor to assigned business units, building strong, trust-based relationships.
  • Actively engage with business leaders to understand priorities, challenges, and growth initiatives.
  • Ensure security is embedded early in planning to enable faster, more informed decision-making.
  • Provide consistent, responsive, and business-aligned security support.

2. System Assessments, Categorization & Control Selection
  • Apply practical, risk-based assessment methodologies aligned to business context.
  • Recommend right-sized security controls based on operational context and regulatory requirements.
  • Prevent over- or under-engineering of controls, reducing friction for business teams.

3. Risk Translation, Prioritization & Action Planning
  • Translate complex technical risks into clear business-impact language (financial, operational, customer trust, and compliance) for executives.
  • Enable business leaders to make informed, risk-based decisions with confidence.
  • Partner with teams to define actionable remediation strategies, compensating controls, and acceptable risk positions.
  • Promote transparency so risks are clearly understood.

4. Local Governance & Risk Visibility
  • Establish recurring governance touchpoints within each business unit.
  • Provide transparency into security posture, risk hot spots, and upcoming compliance obligations.
  • Support clear ownership and drive accountability for managing risk.

5. Escalation of Business-Specific Risks & Project Needs
  • Represent business priorities within enterprise cybersecurity discussions.
  • Surface business-unit-specific risks and needs to enterprise cybersecurity leadership.
  • Advocate for solutions that align security expectations with business realities.
  • Help ensure enterprise priorities are informed by emerging risk and business needs.

6. Vulnerability Management & Secure Baseline Adoption
  • Support business units in meeting vulnerability remediation SLAs.
  • Help teams understand the business impact of exposures and coordinate remediation with IT Ops and Engineering.
  • Promote and monitor adoption of secure configuration baselines across all systems.

7. Representation of Business Interests in Security, Sales & Revenue Activities
  • Provide security expertise for customer-facing functions such as supply chain solutions, design services, and digital platforms.
  • Support sales cycles, customer trust discussions, and contract/audit responses.
  • Position cybersecurity investments as competitive differentiators for revenue-critical offerings.

8. Certification & Regulatory Compliance Support
  • Support business units in obtaining, maintaining, and preparing for security and compliance certifications-including CMMC, ISO 27001, UK Cyber Essentials, and NIS2-by guiding control implementation, evidence collection, readiness assessments, and audit interactions.
  • Assist the business in meeting ongoing regulatory and compliance requirements such as SOX, PCI, HIPAA, GDPR, and other regional or industry-specific mandates.
  • Ensure that certification and regulatory obligations are translated into clear, actionable business tasks, and that gaps are tracked and remediated.


Strategic Impact

The BISO plays a foundational role in Avnet's IT governance by:
  • Embedding security into business operations to support growth and innovation
  • Reducing friction between security requirements and business delivery
  • Improving clarity and ownership of risk across the organization
  • Strengthening customer trust and regulatory confidence
  • Aligning security investments with business priorities and outcomes
  • Driving uniform adoption of cybersecurity policies and controls.
  • Elevating vulnerability management execution and secure baseline consistency across decentralized environments.

Required Skills & Competencies

Executive Presence & Communication
  • Ability to converse fluently in English with senior business leaders, including global business unit Presidents.
  • Highly skilled at translating technical concepts into clear, business-relevant insights.
  • Ability to influence decisions through partnership and credibility
  • Adept at framing risk in terms of financial, operational, regulatory, and reputational impact.

Technical & Strategic Capabilities
  • Strong understanding of cybersecurity frameworks, governance, and risk management.
  • Proficiency in system assessment, control selection, and vulnerability management practices.
  • Experience balancing enterprise standards with local business needs.
  • Experience supporting compliance programs and audit processes.

Outcome of the Role

The BISO enables a scalable business-integrated security capability that:
  • Supports faster, more informed decision-making
  • Strengthens risk visibility and accountability
  • Enhances operational resilience without disrupting delivery
  • Enables secure growth and innovation
  • Positions security as a strategic advantage for Avnet


Experience:
  • Typically 8+ years of IT experience, with 4+ years in cybersecurity, IT risk, or information security.


Education and Certification(s):
  • Bachelor's degree or equivalent experience from which comparable knowledge and job skills can be obtained.
  • Relevant certifications such as CISSP, CISM, CRISC preferred.


Distinguishing Characteristics:
  • Broad understanding of enterprise technologies, including cloud, applications, infrastructure, and emerging trends
  • Strong knowledge of security principles, risk management, and control frameworks (e.g., NIST, CIS)
  • Experience translating security risks into business impact and decision-making guidance
  • Familiarity with Agile and DevSecOps delivery models
  • Working knowledge of regulatory requirements (e.g., PCI DSS, GDPR) and practical implementation
  • May require competency in all of the six Security competencies: Security Intelligence, Identity Management, Compliance, Secured Infrastructure, Secured Development and Security Education


What We Offer:

Our employees work hard to live our values and help us grow. Our total rewards strategy supports Avnet's ability to attract, engage, develop, and reward our employees, while promoting a diverse and inclusive environment. We offer competitive compensation and benefit programs - from time away and flexible working arrangements to programs supporting employee well-being and opportunities to give back to your community.

  • Generous Paid Time Off
  • 401K and Pension Plan
  • Paid Holidays
  • Family Support (Paid Leave, Surrogacy, Adoption)
  • Medical, Dental, Vision, and Life Insurance
  • Long-term and Short-term Disability Insurance
  • Health Savings Account / Flexible Spending Account
  • Education Assistance
  • Employee Development Resources
  • Employee Wellness, Leadership Development and Mentorship Programs


Benefits listed above may vary depending on the nature of your employment with Avnet.

This position will have access to ITAR product and therefore be authorized to access product. This position requires the employee to be a U.S. Citizen or National, or a lawful permanent resident as defined by 8 U.S.C. 1101(a)(20), or a protected individual as defined by 8 U.S.C. 1324b(a)(3).

The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills.

About Avnet

Avnet is a global technology solutions provider with an extensive ecosystem delivering design, product, marketing and supply chain expertise for customers at every stage of the product lifecycle. We transform ideas into intelligent solutions, reducing the time, cost and complexities of bringing products to market. For nearly a century, Avnet has helped its customers and suppliers around the world realize the transformative possibilities of technology. Learn more about Avnet at www.avnet.com.

Avnet Careers

Join Avnet, a global leader in electronic components and services, where innovation, leadership, and growth go hand in hand. We offer a world of opportunities for both seasoned professionals and those just beginning their careers. At Avnet, we believe in nurturing talent and providing our team members with the opportunities they need to become industry leaders.

Work You’ll Do

At Avnet, every job is a chance to grow and innovate. We are committed to helping the world's most ambitious companies achieve their digital transformation goals. Our team is at the forefront of the technological sector, driving innovation and excellence in everything from supply chain management to design and manufacturing solutions.

Join Our Market-Leading Team

Become part of a team that thrives on diversity, professional growth, and creativity. Avnet’s culture is built around the idea of expanding what’s possible, offering a variety of job opportunities across multiple fields. Our professionals enjoy a dynamic work environment where their skills are constantly sharpened, and their careers can flourish.

Innovative Work

Avnet encourages a culture of innovation and leadership, where your ideas can help shape the future of technology. Work alongside over 15,000 dedicated professionals globally, at the intersection of technology, industry expertise, and digital innovation.

Career Development

Future-proof your career with Avnet! We provide unmatched training, development, and certification support to help you reach your professional goals. Our leadership and diversity training ensure that you have the tools to succeed and lead in your field.

Explore Job Opportunities and Internships

Whether you’re looking for a full-time position or an internship, Avnet offers a range of options. Explore employment opportunities that match your skills and interests. We look for passionate, curious, creative, and solution-driven team players.

Benefits and Culture

At Avnet, we understand that job satisfaction extends beyond the office. That’s why we offer competitive benefits designed to promote health, well-being, and financial security. Our inclusive culture fosters an environment of open communication and mutual respect, where every team member’s contribution is valued.

Stay Connected

Join our team and be part of a company that values networking, professional growth, and employee satisfaction. Search open positions, read about our company culture, and find out how you can contribute to our success.

Keep Up to Date

Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here.

Job Alert Emails

Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Avnet.

Interview and Resume Tips

Prepare for your future with Avnet. Get valuable advice on how to craft your resume and ace your interviews. Our hiring process is designed to identify and attract professionals who are ready to lead and innovate. Join Avnet today and be part of a team that’s dedicated to making a difference in the world of technology.
Learn more about Avnet
Size
14,500 employees
Market Cap
$3.7 billion
Industry
Net Income
-$76.2 million
Founded
1921
5 Year Trend
+6.9%
Revenue
$17.8 billion
NASDAQ

Similar Jobs

More Jobs at Avnet

More Information Technology Jobs

Find similar Business Information Security Officer (BISO) jobs: