{"21404948":{"jobPath":"/jobs/21404948/it-specialist","source":"naylor","job":"21404948","jobTitle":"IT Specialist"},"21401833":{"jobPath":"/jobs/21401833/senior-security-engineer","source":"naylor","job":"21401833","jobTitle":"Senior Security Engineer"},"21402427":{"jobPath":"/jobs/21402427/program-manager-for-it-service-management","source":"naylor","job":"21402427","jobTitle":"Program Manager for IT Service Management"},"21403979":{"jobPath":"/jobs/21403979/assistant-professor-of-operations-and-it-management","source":"naylor","job":"21403979","jobTitle":"Assistant Professor of Operations and IT Management"},"21407542":{"jobPath":"/jobs/21407542/vice-president-for-government-relations-and-community-engagement-office-of-the-senior-vice-president-and-coo-georgetown-university","source":"naylor","job":"21407542","jobTitle":"Vice President for Government Relations and Community Engagement Office of the Senior Vice President and COO Georgetown University"},"21404130":{"jobPath":"/jobs/21404130/senior-it-engineer-cdi","source":"naylor","job":"21404130","jobTitle":"Senior IT Engineer - CDI"},"21399961":{"jobPath":"/jobs/21399961/library-assistant-security-supervisor","source":"naylor","job":"21399961","jobTitle":"Library Assistant Security Supervisor"},"21405300":{"jobPath":"/jobs/21405300/it-security-specialist-l1-department-of-instructional-computing-and-information-technology-icit","source":"naylor","job":"21405300","jobTitle":"IT Security Specialist L1- Department of Instructional Computing and Information Technology (ICIT)"},"21402551":{"jobPath":"/jobs/21402551/governance-administrator","source":"naylor","job":"21402551","jobTitle":"Governance Administrator"},"21405704":{"jobPath":"/jobs/21405704/staff-associate-cumc-decision-risk-and-operations","source":"naylor","job":"21405704","jobTitle":"Staff Associate - CUMC/Decision, Risk, and Operations"},"21401727":{"jobPath":"/jobs/21401727/it-network-support-specialist-i","source":"naylor","job":"21401727","jobTitle":"IT Network Support Specialist I"},"21407290":{"jobPath":"/jobs/21407290/security-analyst-compliance","source":"naylor","job":"21407290","jobTitle":"Security Analyst (Compliance)"},"21398451":{"jobPath":"/jobs/21398451/school-security-officer-sso-2pm-10pm-shift","source":"naylor","job":"21398451","jobTitle":"School Security Officer (SSO) - 2pm-10pm Shift"},"21408041":{"jobPath":"/jobs/21408041/director-risk","source":"naylor","job":"21408041","jobTitle":"Director, Risk"},"21408580":{"jobPath":"/jobs/21408580/student-government-accounting-assistant-manager","source":"naylor","job":"21408580","jobTitle":"Student Government Accounting Assistant Manager"},"21408460":{"jobPath":"/jobs/21408460/director-it-pmo","source":"naylor","job":"21408460","jobTitle":"Director IT PMO"},"21403270":{"jobPath":"/jobs/21403270/data-governance-specialist","source":"naylor","job":"21403270","jobTitle":"Data Governance Specialist"},"21402784":{"jobPath":"/jobs/21402784/information-security-policy-compliance-and-risk-analyst","source":"naylor","job":"21402784","jobTitle":"Information Security Policy, Compliance and Risk Analyst"},"21405977":{"jobPath":"/jobs/21405977/manager-global-security","source":"naylor","job":"21405977","jobTitle":"Manager, Global Security"},"21404188":{"jobPath":"/jobs/21404188/med-center-security-dispatcher-1","source":"naylor","job":"21404188","jobTitle":"Med Center Security Dispatcher-1"},"21402202":{"jobPath":"/jobs/21402202/capital-markets-securities-associate","source":"naylor","job":"21402202","jobTitle":"Capital Markets/Securities Associate"},"21403970":{"jobPath":"/jobs/21403970/systems-security-analyst-71101","source":"naylor","job":"21403970","jobTitle":"Systems Security Analyst (71101)"},"21407477":{"jobPath":"/jobs/21407477/it-systems-administrator-ii","source":"naylor","job":"21407477","jobTitle":"IT Systems Administrator II"},"21405279":{"jobPath":"/jobs/21405279/eoc-it-associate-level-3-brooklyn-educational-opportunity-center","source":"naylor","job":"21405279","jobTitle":"EOC IT Associate Level 3 - Brooklyn Educational Opportunity Center"},"21404147":{"jobPath":"/jobs/21404147/campus-security-advisor","source":"naylor","job":"21404147","jobTitle":"Campus Security Advisor"}}
CISM
CISM - Certified Information Security Manager
CRISC
CRISC - Certified in Risk and Information Systems Control
Cybersecurity Fundamentals Certificate
Networks and Infrastructure Fundamentals Certificate
The University seeks highly qualified candidates for the role of Chief Information Security Officer.
As a prospective candidate, you are expected to carefully read this job description and eliminate yourself from the candidate pool if the duties and responsibilities are not a good match for you.
POSITION SUMMARY
The Chief Information Security Officer (CISO) provides strategic leadership and operational oversight for the University’s information security program. This role is responsible for safeguarding digital assets, ensuring regulatory compliance, and fostering a culture of cybersecurity awareness across the University. Reporting to the Chief Information Officer (CIO) and as a member of the leadership team of Information Technology Services (ITS), the CISO works collaboratively with University leadership to align information security initiatives with academic and administrative goals.The CISO develops and leads outreach, communication, and education efforts to raise campus-wide awareness of information security risks, requirements, and solutions; provides strategic and technical guidance and assistance in the design and implementation of appropriate security processes for campus-wide information systems; creates and keeps current information security policies and incident response protocols to help ensure the confidentiality, availability and integrity of all information assets; and leads the University’s monitoring, detection, and mitigation of potential security threats.
DUTIES AND RESPONSIBILITIES
Develop, maintain, and enforce cybersecurity policies, standards, and procedures that ensure confidentiality, integrity, and availability of information systems.
Develop security architecture and maintain a risk-mitigation approach to securing ITS assets.
Collaborate with ITS leadership, legal, audit, and academic units to ensure alignment between security and institutional priorities, aligned with the principles of academic freedom that remain core to a national doctoral and professional University.
Conduct security awareness education and training programs that promote a security-conscious culture across the University.
Serve as the primary advisor to University leadership on information security risks and mitigation strategies. Partner with campus stakeholders to integrate information security into the lifecycle of all technology projects.
Direct incident response activities and collaboration with other ITS units in the development of disaster recovery and business continuity plans.
Coordinate with law enforcement, governmental agencies, and insurance providers on cybersecurity matters.
Monitor emerging threats and coordinate proactive responses to potential vulnerabilities.
Provide oversight of, in collaboration with the School of Engineering and Computing, the internal student-run security operations center and external threat detection and response services.
Lead cybersecurity risk assessments and oversee internal/external audits, cybersecurity maturity assessments, and penetration tests.
Stay current with information security issues and regulatory changes affecting higher education at the state and national level, participate in national policy and practice discussions, and communicate to campus on a regular basis about those topics.
Engage in professional development to maintain continual growth in professional skills and knowledge essential to the position.
Performs other related duties as required or dictated by responsibilities.
QUALIFICATIONS AND EXPERIENCE
8-10 years of progressive information security experience with 3+ years in a leadership or managerial role.
Experience in higher education or a research environment is preferred.
A strategic grasp of information security at both institutional and operational levels.
Capability to articulate a vision for information security that engages all constituents, satisfies internal and external requirements, and enables the University’s ongoing pursuit of excellence and innovation in its academic and research fields.
Proven experience managing a small team of technology associates. This role has management responsibility for an Information Security Architect and a Senior Network Security Specialist.
Professional certifications such as CISSP, CISM, or CRISC.
Familiarity with NIST, ISO 27001, and EDUCAUSE security frameworks.
Strong understanding of compliance standards such as FERPA, HIPAA, GDPR, and GLBA.
Excellent interpersonal and communication skills, with the ability to present complex security topics to diverse audiences.