{"21421288":{"jobPath":"/jobs/21421288/security-officer-full-time-college-safety-officer","source":"naylor","job":"21421288","jobTitle":"Security Officer, Full Time (College Safety Officer)"},"21423725":{"jobPath":"/jobs/21423725/director-data-governance-lead","source":"naylor","job":"21423725","jobTitle":"Director (Data Governance Lead)"},"21420075":{"jobPath":"/jobs/21420075/security-engineer-identity-and-access-management-iam-ping-federate","source":"naylor","job":"21420075","jobTitle":"Security Engineer, Identity and Access Management (IAM) - PING FEDERATE"},"21420073":{"jobPath":"/jobs/21420073/chapter-event-project-coordinator-isaca-los-angeles","source":"naylor","job":"21420073","jobTitle":"Chapter Event Project Coordinator -- ISACA Los Angeles "},"21400292":{"jobPath":"/jobs/21400292/compliance-and-risk-specialist-third-party-regulatory-oversight-issue-management-risk-and-control","source":"naylor","job":"21400292","jobTitle":"Compliance and Risk Specialist, Third Party Regulatory Oversight, Issue Management, Risk and Control"},"21424042":{"jobPath":"/jobs/21424042/ict-physical-security-senior-consultant","source":"naylor","job":"21424042","jobTitle":"ICT/Physical Security Senior Consultant"},"21388183":{"jobPath":"/jobs/21388183/chief-audit-executive-audit-and-consulting-services","source":"naylor","job":"21388183","jobTitle":"Chief Audit Executive, Audit and Consulting Services"},"21424144":{"jobPath":"/jobs/21424144/chief-information-security-officer-ciso","source":"naylor","job":"21424144","jobTitle":"Chief Information Security Officer - CISO"},"21423994":{"jobPath":"/jobs/21423994/it-manager-netsuite-specialist","source":"naylor","job":"21423994","jobTitle":"IT Manager - NetSuite Specialist"},"21424227":{"jobPath":"/jobs/21424227/director-government-affairs","source":"naylor","job":"21424227","jobTitle":"Director, Government Affairs"},"21421497":{"jobPath":"/jobs/21421497/manager-physical-security","source":"naylor","job":"21421497","jobTitle":"Manager, Physical Security "},"21365526":{"jobPath":"/jobs/21365526/it-internal-auditor","source":"naylor","job":"21365526","jobTitle":"IT Internal Auditor"},"21415113":{"jobPath":"/jobs/21415113/manager-of-information-security","source":"naylor","job":"21415113","jobTitle":"Manager of Information Security"},"21345612":{"jobPath":"/jobs/21345612/ict-physical-security-senior-design-consultant","source":"naylor","job":"21345612","jobTitle":"ICT/Physical Security Senior Design Consultant"},"21289422":{"jobPath":"/jobs/21289422/it-lead-auditor","source":"naylor","job":"21289422","jobTitle":"IT Lead Auditor"},"21421809":{"jobPath":"/jobs/21421809/computer-system-manager-level-4-office-of-information-technology","source":"naylor","job":"21421809","jobTitle":"Computer System Manager Level 4 - Office of Information Technology"},"21424092":{"jobPath":"/jobs/21424092/it-data-analyst","source":"naylor","job":"21424092","jobTitle":"IT DATA ANALYST"},"21423043":{"jobPath":"/jobs/21423043/shra-temporary-building-operations-security-assistant","source":"naylor","job":"21423043","jobTitle":"SHRA Temporary Building Operations Security Assistant"},"21421329":{"jobPath":"/jobs/21421329/adjunct-faculty-information-technology","source":"naylor","job":"21421329","jobTitle":"Adjunct Faculty, Information Technology"},"21365794":{"jobPath":"/jobs/21365794/senior-manager-it-audit","source":"naylor","job":"21365794","jobTitle":"Senior Manager IT Audit"},"21336877":{"jobPath":"/jobs/21336877/operations-manager","source":"naylor","job":"21336877","jobTitle":"Operations Manager"},"21421328":{"jobPath":"/jobs/21421328/security-officer-part-time","source":"naylor","job":"21421328","jobTitle":"Security Officer, Part Time"},"21421865":{"jobPath":"/jobs/21421865/security-guard","source":"naylor","job":"21421865","jobTitle":"Security Guard"},"21420851":{"jobPath":"/jobs/21420851/security-specialist-b","source":"naylor","job":"21420851","jobTitle":"Security Specialist B"},"21422950":{"jobPath":"/jobs/21422950/museum-security-guard-part-time","source":"naylor","job":"21422950","jobTitle":"Museum Security Guard (Part-Time)"}}
CISM
CISM - Certified Information Security Manager
CRISC
CRISC - Certified in Risk and Information Systems Control
Cybersecurity Fundamentals Certificate
Networks and Infrastructure Fundamentals Certificate
The University seeks highly qualified candidates for the role of Chief Information Security Officer.
As a prospective candidate, you are expected to carefully read this job description and eliminate yourself from the candidate pool if the duties and responsibilities are not a good match for you.
POSITION SUMMARY
The Chief Information Security Officer (CISO) provides strategic leadership and operational oversight for the University’s information security program. This role is responsible for safeguarding digital assets, ensuring regulatory compliance, and fostering a culture of cybersecurity awareness across the University. Reporting to the Chief Information Officer (CIO) and as a member of the leadership team of Information Technology Services (ITS), the CISO works collaboratively with University leadership to align information security initiatives with academic and administrative goals.The CISO develops and leads outreach, communication, and education efforts to raise campus-wide awareness of information security risks, requirements, and solutions; provides strategic and technical guidance and assistance in the design and implementation of appropriate security processes for campus-wide information systems; creates and keeps current information security policies and incident response protocols to help ensure the confidentiality, availability and integrity of all information assets; and leads the University’s monitoring, detection, and mitigation of potential security threats.
DUTIES AND RESPONSIBILITIES
Develop, maintain, and enforce cybersecurity policies, standards, and procedures that ensure confidentiality, integrity, and availability of information systems.
Develop security architecture and maintain a risk-mitigation approach to securing ITS assets.
Collaborate with ITS leadership, legal, audit, and academic units to ensure alignment between security and institutional priorities, aligned with the principles of academic freedom that remain core to a national doctoral and professional University.
Conduct security awareness education and training programs that promote a security-conscious culture across the University.
Serve as the primary advisor to University leadership on information security risks and mitigation strategies. Partner with campus stakeholders to integrate information security into the lifecycle of all technology projects.
Direct incident response activities and collaboration with other ITS units in the development of disaster recovery and business continuity plans.
Coordinate with law enforcement, governmental agencies, and insurance providers on cybersecurity matters.
Monitor emerging threats and coordinate proactive responses to potential vulnerabilities.
Provide oversight of, in collaboration with the School of Engineering and Computing, the internal student-run security operations center and external threat detection and response services.
Lead cybersecurity risk assessments and oversee internal/external audits, cybersecurity maturity assessments, and penetration tests.
Stay current with information security issues and regulatory changes affecting higher education at the state and national level, participate in national policy and practice discussions, and communicate to campus on a regular basis about those topics.
Engage in professional development to maintain continual growth in professional skills and knowledge essential to the position.
Performs other related duties as required or dictated by responsibilities.
QUALIFICATIONS AND EXPERIENCE
8-10 years of progressive information security experience with 3+ years in a leadership or managerial role.
Experience in higher education or a research environment is preferred.
A strategic grasp of information security at both institutional and operational levels.
Capability to articulate a vision for information security that engages all constituents, satisfies internal and external requirements, and enables the University’s ongoing pursuit of excellence and innovation in its academic and research fields.
Proven experience managing a small team of technology associates. This role has management responsibility for an Information Security Architect and a Senior Network Security Specialist.
Professional certifications such as CISSP, CISM, or CRISC.
Familiarity with NIST, ISO 27001, and EDUCAUSE security frameworks.
Strong understanding of compliance standards such as FERPA, HIPAA, GDPR, and GLBA.
Excellent interpersonal and communication skills, with the ability to present complex security topics to diverse audiences.