Director of Information Security
4 weeks ago
JOB SUMMARY – The Director of Information Security (DIS) is responsible for developing, implementing and monitoring a strategic, comprehensive enterprise cybersecurity and IT risk management program for the Family of Funds. The DIS is responsible for implementing & enforcing security policies to protect the Funds’ assets, applications, systems, technology and critical data. This position will provide the vision and leadership necessary to manage the risk to the organization and will ensure business alignment, effective governance, system and product availability, integrity and confidentiality.
PRINCIPAL DUTIES AND RESPONSIBILITIES
- Strategic Planning: Develop and implement the organization's information security strategy, aligning it with business objectives and risk tolerance. Identify and prioritize security initiatives, establish security goals, and create a roadmap for their implementation.
- Risk Management: Conduct regular risk assessments to identify and evaluate potential security threats and vulnerabilities. Develop and implement risk mitigation strategies, including security controls, policies, and procedures. Monitor and manage security risks through ongoing assessments and the implementation of appropriate safeguards.
- Policy and Procedure Development: Establish and enforce information security policies, standards, guidelines, and procedures. Ensure that they align with industry best practices and regulatory requirements. Communicate and educate employees on security policies, promoting a culture of security awareness and compliance.
- Compliance and Regulatory Requirements: Stay abreast of relevant laws, regulations, and industry standards pertaining to information security. Ensure that the organization's security practices and controls are in compliance with applicable requirements. Liaise with regulatory bodies, auditors, and stakeholders to address compliance issues and maintain regulatory alignment.
- Incident Response and Management: Develop and maintain an incident response plan to address and manage security incidents effectively. Establish protocols for detecting, responding to, and recovering from security breaches or other security-related incidents. Coordinate with relevant teams to investigate incidents, implement remediation measures, and report on the outcomes.
- Security Awareness and Training: Develop and deliver security awareness and training programs for employees at all levels of the organization. Ensure that employees understand their role in maintaining information security and are equipped with the knowledge to identify and respond to security risks.
- Vendor Management: Assess and manage the security risks associated with third-party vendors and suppliers. Establish security requirements and standards for vendor contracts, conduct security assessments of vendors, and monitor ongoing compliance.
- Security Governance: Establish and maintain security governance frameworks and structures to ensure effective oversight and accountability. Participate in security committees and provide regular updates to executive leadership and the board of directors on the organization's security posture, risks, and compliance status.
- Security Incident Reporting and Communication: Develop and implement processes for reporting and communicating security incidents to appropriate stakeholders, including executives, legal counsel, and regulatory bodies. Ensure that incident reports are timely, accurate, and comprehensive.
- Continuous Improvement: Stay abreast of emerging threats, vulnerabilities, and technologies in the information security field. Continuously evaluate and enhance the organization's security posture, controls, and processes through regular reviews, audits, and testing.
- Other duties as assigned by the CIO.
REQUIRED AND PREFERRED KNOWLEDGE, SKILLS, AND ABILITIES
- 10+ years of information security experience
- Must have 5+ years of leadership experience and a proven track record of building highly effective teams
- Bachelor’s degree in Computer Science or relevant field or equivalent experience required
- Relevant cybersecurity certifications such as CISSP, CISM and CISA preferred
- Experience in establishing cybersecurity and risk metrics for reporting
- Excellent analytical and problem-solving skills
- Relationship building and team development skills
- Excellent communication and intrapersonal skills
- Skilled at strategic planning and goal-setting
- Presentation skills
- Solid understanding of data analysis, budgeting, and business operations
- Demonstrates ability to manage complex issues while maintaining a flexible, positive, and cooperative demeanor
- Responds promptly to operations leaders and stakeholders to facilitate informed decision-making
- Troubleshoots assigned issues, gathers evidence and investigates all relevant information with participants, vendors, and internal departments to resolve the problem in a cooperative and collaborative manner
- Excellent Verbal & Written Communication Skills
-
Security Operations Manager
2 months ago
Rockville, United States Sunstates Security Full timeOverviewJoin one of the fastest-growing and largest privately held security companies in the U.S.! Since 1998, Sunstates Security has established a reputation for providing excellent customer service and quality work environments for its team across the country. We're committed to hiring, developing, and retaining a diverse and exceptionally qualified...
-
Director, Campus Security
2 days ago
Rockville, United States Charles E Smith Life CommunitiesHebrew Home Full timeAre you interested in working for a mission-driven organization that continues to grow and is dedicated to providing quality services to its residents? Do you want your next job to offer you the opportunity to serve while allowing you to grow personally and professionally? Explore careers at Charles E. Smith Life Communities! ABOUT CHARLES E. SMITH LIFE...
-
Information Security Interns
7 days ago
Rockville, United States Westat Full time27901BR Job Title: Information Security Interns Location: MD - Rockville Job Description: Westat is an employee-owned corporation providing research services to agencies of the U.S. Government, as well as businesses, foundations, and state and local governments. Westat's research, technical, and administrative staff of more than 2,000 is located at our...
-
Information Security Interns
4 days ago
Rockville, United States Disability Solutions Full timeJob Description Westat is an employee-owned corporation providing research services to agencies of the U.S. Government, as well as businesses, foundations, and state and local governments. Westat's research, technical, and administrative staff of more than 2,000 is located at our headquarters in Rockville, Maryland, near Washington, DC.Job Summary:Westat is...
-
Information Security Specialist
2 weeks ago
Rockville, Maryland, United States TechnoGen Full timeAbout the Role:We are seeking a highly skilled Information Security Specialist to join our team at TechnoGen in Chantilly, VA. The ideal candidate will have 7+ years of experience in IT and cybersecurity, with a strong background in system hardening, firewalls, IDS/IPS, SIEMs, and vulnerability assessments.Key Responsibilities:Develop and maintain system...
-
Lead Information Security Engineer
2 weeks ago
Rockville, Maryland, United States TechnoGen Full timeJob OverviewWe are looking for a talented Lead Information Security Engineer to join our team at TechnoGen. As a key member of our team, you will lead our information security efforts, develop comprehensive security strategies, and ensure compliance with federal regulations.About the RoleIn this role, you will be responsible for leading our security team,...
-
Chief Information Security Officer
3 weeks ago
Rockville, Maryland, United States TechnoGen Full timeAbout the RoleWe are seeking an experienced Senior Cybersecurity Specialist to join our team at TechnoGen. This is a challenging and rewarding opportunity for a highly motivated individual with expertise in IT security, risk management, and compliance.Job SummaryThe successful candidate will have 7+ years of experience in IT and cybersecurity, including...
-
Information Security Compliance Engineer
7 days ago
Rockville, United States Axle Full timeJob DescriptionJob Description(ID: 2024-6871)Axle is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With experts in biomedical science, software engineering, and program management,...
-
Chief Information Security Officer
3 weeks ago
Rockville, Maryland, United States Rhythm USA Full timeAbout Rhythm USARhythm USA is a leading provider of remote monitoring solutions for implanted cardiac devices. Our innovative patient management platform enables healthcare providers to enhance patient outcomes and streamline their workflow. We are seeking an experienced IT Manager to build the IT foundation for reliable and secure patient care.The RoleWe...
-
Chief Information Security Architect
3 weeks ago
Rockville, Maryland, United States Diverse Lynx Full timeJob Title: Chief Information Security ArchitectAbout the Role: We are seeking a highly skilled and experienced Chief Information Security Architect to drive and support integration and adoption of MFA for system remote access functions at Diverse Lynx LLC, an Equal Employment Opportunity employer. Key Responsibilities: Drive and support integration and...
-
Part-time Security Officer
2 weeks ago
Rockville, United States Sunstates Security Part timeOverviewJoin one of the fastest-growing and largest privately-held security companies in the U.S.! Since 1998, Sunstates Security has established a reputation for providing excellent customer service and quality work environments while being recognized by Forbes as one of America’s Best Employers in 2021 and 2022.At Sunstates Security, we're committed to...
-
Part-time Security Officer
2 weeks ago
Rockville, United States Sunstates Security Part timeOverviewJoin one of the fastest-growing and largest privately-held security companies in the U.S.! Since 1998, Sunstates Security has established a reputation for providing excellent customer service and quality work environments while being recognized by Forbes as one of America’s Best Employers in 2021 and 2022.At Sunstates Security, we're committed to...
-
Rockville, United States Supernus Pharmaceuticals, Inc. Full timeAssociate Director Finance Information Systems and InnovationThe Associate Director of Finance IS (Information Systems) and Innovation is part of a team that assesses, implements and administers the Finance department’s suite of software and automation solutions. Reporting to the Director of Finance IS and Innovation, this role is responsible for advancing...
-
Rockville, United States Cyber Crime Full timeCSEngineering is looking to add an Information Systems Security Engineer to our growing team! This position will support the Federal Government Customer.JOB RESPONSIBILITIESOutlined below are the critical requirements for this position:Interpret the federal agency Assessment and Authorization Process Manual (AAPM) in determining technical Information...
-
Rockville, United States Supernus Pharmaceuticals Full timeJob Summary:The Associate Director of Finance IS (Information Systems) and Innovation is part of a team that assesses, implements and administers the Finance department's suite of software and automation solutions. Reporting to the Director of Finance IS and Innovation, this role is responsible for advancing the Company's information systems and processes to...
-
Rockville, United States PROTEK Consulting LLC Full timeJob Description Job Description This role is structured as an initial 6-month contract engagement. It requires an active Secret clearance and the ability to work on-site Monday-Friday. Please only apply if you meet these minimum requirements. This role is responsible for ensuring the security and integrity of the XE1-LAN environment and supporting the...
-
Information Systems Security Analyst
4 weeks ago
Rockville, United States Protek Consulting Full timeJob DescriptionJob DescriptionThis role is structured as an initial 6-month contract engagement. It requires an active Secret clearance and the ability to work on-site Monday-Friday. Please only apply if you meet these minimum requirements. This role is responsible for ensuring the security and integrity of the XE1-LAN environment and supporting the...
-
Project Director- Health Information Systems
5 days ago
Rockville, United States ICF Full timeICF is seeking candidates for the role of Project Director (PD) for the anticipated Centers for Disease Control (CDC)-funded headquarter (HQ)-supported transition of health information systems (HIS) to country ownership through the optimization of digital health strategies in policy, governance, workforce, and systems to achieve HIV/AIDS and TB epidemic...
-
Security Clearance Specialist
2 weeks ago
Rockville, Minnesota, United States TriSource Staffing Solutions Full timeJob DescriptionWe are seeking a highly skilled Facility Security Officer to join our team at TriSource Staffing Solutions. This role will serve as the technical expert on security and government clearances, specifically concerning classified projects for the Department of Defense (DoD), Special Access Programs (SAP), and other special projects.The ideal...
-
Facility Security Officer
2 weeks ago
Rockville, United States TriSource Full timeOur client has an exciting opportunity for a Facility Security Officer (FSO) This role will serve as the technical expert on security and government clearances, specifically concerning classified projects for the Department of Defense (DoD), Special Access Programs (SAP) and other special projects.Responsibilities:Implementation and administration all...