Data Security Consultant

2 weeks ago


St Paul, United States IRIS Consulting Corporation Full time

The Minnesota Department of Information Technology Services (MNIT) partnering with the Department of Public Safety (DPS), Driver and Vehicle Services (DVS) is seeking a resource to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets or exceeds federal Criminal Justice Information Services (CJIS) security guidelines; 2) are Payment Card Industry (PCI) compliant; and 3) meet or exceed current "best practices” regarding driver's license and motor vehicle data security; and to serve as a Local Agency Security Officer (LASO) for DVS's use of CJIS.

At a high level, the resource will act as the primary information security contact between DVS and the CJIS System Agency (CSA) under which DVS interfaces with the Federal Bureau of Investigation (FBI) CJIS Division and the Minnesota Bureau of Criminal Apprehension (BCA). The Local Agency Security Officer (LASO) actively represents DVS in all matters pertaining to information security, disseminates information security alerts and other material to constituents, and maintains information security documentation to include system configuration files. The LASO will assist with information security audits or hardware and procedures, and keeps the CSA informed as to any information security needs and problems.

Assist with evaluation of architecture interfacing with other state/federal/local systems.

Assist with assessing the security of any equipment needed.

Assist with the evaluation of data integrity and data security.

Assist with ensuring all background check compliance is met for all project team members.

Assist with creating procedures to ensure the proper access rights are granted.

Assist in building User Acceptance Testing (UAT) scenarios to ensure security requirements are properly tested and documented.

Assist with architecture reviews of all environments.

Assist with the evaluation and testing of disaster recovery plans.

Assist with the development of change management processes and procedure projects.

Provide written documentation and recommendations.

Review agency network diagrams and access control lists (ACL) for compliance with FBI CJIS Security Policy and BCA CJDN Security Policy.

Work with DVS staff, review IT security audit documentation from local agencies which access DVS systems and data to determine compliance with FBI CJIS Security Policy and BCA CJDN Security Policy requirements.

Provide technical guidance, principles, standards, and best practices to guide criminal justice agency infrastructure design and system implementations to comply with FBI CJIS Security Policy and BCA CJDN Security Policy.

Perform technical analysis of vendor solutions to assess compliance with FBI CJIS Security Policy and BCA CJDN Security Policy.

Audit identity and access management to assure they are properly managed and maintained for all systems utilized to access driver's license and motor vehicle registration data; and recommend remedial action when required.

Audit the driver's license and motor vehicle systems for PCI compliance; and recommend remedial action when required.

Work with DPS agencies and other government entities to ensure driver and vehicle data is accessible for utilization for mission critical functions while maintaining all security requirements.

Access public government data to the extent allowable by law, including data in the State's possession that would otherwise be classified as not public under Minnesota Statutes section 13.82.

Analyze security needs for all DVS projects, DVS systems, and systems that interface with DVS systems.

Transition and train new DVS security staff for duties including:

Deputy Registrar Security

Identity Access Management (AIM)

PCI Compliance

Policy Auditing

DVS securities and LASO duties

DVS Securities duties will include:

Deputy Registrar Security

IAM

PCI Compliance

Policy Auditing

Physical Security of Facilities

Fraud and Investigations

ADLMV Management

Technical Review/Architect

The LASO duties will include:

Identify who is using the CSA approved hardware, software, and firmware and ensure no unauthorized individuals or processes have access to the same.

Identify and document how the equipment is connected to the state system.

Ensure that personnel security screening procedures are being followed as stated in FBI CJIS Security Policy and the MNJIS 5002 policy

Ensure the approved and appropriate security measures are in place and working as expected.

Support policy compliance and ensure the CSA ISO is promptly informed of security incidents.

Conduct an annual audit of CJIS compliance and track remediation efforts on any items found

Maintaining CJIS compliant network architecture

Properly vetting all individuals with access to DVS physical and logical resources through the access control systems and best IAM practices

Properly vetting all software and hardware vendors for CJIS compliance

Working closely with MN.IT to utilize enterprise resources when possible and involving MN.IT on all technical projects

Active involvement in all data access requests that may contain CJI to ensure CJI is protected accordingly

Work through vendor agreements to ensure all security requirements are met or exceeded

Reviewing MN.IT scans of DVS resources and monitoring identified vulnerabilities and remediation efforts

Provide knowledge transfer.

Desired Skills

Six (6) years' experience in a security architect or engineer role.

Three (3) years' experience in network engineering, including firewall management.

Four (4) or more engagements, within the last ten (10) years, in a security architect or engineer role where the engagement was longer than three months each.

Experience with the design and implementation of information systems, in organizations with more than 50 people, with an emphasis on data, network, and infrastructure security.

CISSP or GIAC certification.

Comprehensive knowledge of hardware, software, application, and systems engineering.

Broad knowledge of database systems, web-based technologies, and network security.

Systems thinking – the ability to see how parts interact with the whole ( "big picture” thinking).

Knowledge of IT governance and operations.

Interpersonal and leadership skills – servant leadership, collaboration, facilitation, and negotiation skills.

Communication skills – both written and verbal.

Ability to explain complex technical issues in a way that non-technical people may understand.

Time management and prioritization.

Equal opportunity employer including disability/veterans. #J-18808-Ljbffr



  • St Paul, United States Quetica LLC Full time

    Quetica is seeking a part-time Data Security Consultant and Local Agency Security Officer resource to work with the Minnesota Department of Public Safety (DPS) and Driver and Vehicle Services (DVS) to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets or exceeds federal Criminal...


  • St Paul, United States IO Datasphere Full time

    If you are interested in this position: Download the skills matrix using the button below and fill it out. Email us and attach the completed skills form and your most recent resume to us at: jobs@iodatasphere.com Please include ' 9595MN Skills Form ' and your name in the subject line. For Minnesota positions you must follow the format in the Sample Skills...


  • St Paul, United States The Methodical Group Full time

    Job Description Job Description Sample Tasks: Assist with evaluation of architecture interfacing with other state/federal/local systems. Assist with assessing the security of any equipment needed. Assist with the evaluation of data integrity and data security. Assist with ensuring all background check compliance is met for all project team members. Assist...


  • Saint Paul, United States Quetica, LLC Full time

    Job DescriptionJob DescriptionQuetica is seeking a part-time Data Security Consultant and Local Agency Security Officer resource to work with the Minnesota Department of Public Safety (DPS) and Driver and Vehicle Services (DVS) to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets...


  • Saint Paul, United States NextRow Digital Full time

    Job DescriptionJob DescriptionResource Title: Data Security ConsultantLocation: St Paul, MN Duration: Long Term ContractSample TasksAssist with evaluation of architecture interfacing with other state/federal/local systems.Assist with assessing the security of any equipment needed.Assist with the evaluation of data integrity and data security.Assist with...


  • Saint Paul, United States The Methodical Group Full time

    Job DescriptionJob DescriptionSample Tasks:Assist with evaluation of architecture interfacing with other state/federal/local systems.Assist with assessing the security of any equipment needed.Assist with the evaluation of data integrity and data security.Assist with ensuring all background check compliance is met for all project team members.Assist with...


  • Saint Paul, Minnesota, United States Genesis10 Full time

    Genesis10 is seeking a Data Security Consultant and Local Agency Security Officer (LASO) for a contract with our client in St. Paul, MN. 100% Remote.Key Responsibilities: Assist with evaluation of architecture interfacing with other state/federal/local systems. Assist with assessing the security of any equipment needed. Assist with the evaluation of data...


  • Saint Paul, United States NextRow Digital Full time

    Job DescriptionJob DescriptionResource Title: Data Security ConsultantLocation: St Paul, MN (Remote) Duration: Long Term ContractSample TasksAssist with evaluation of architecture interfacing with other state/federal/local systems.Assist with assessing the security of any equipment needed.Assist with the evaluation of data integrity and data security.Assist...


  • St Paul, United States Securian Financial Full time

    At Securian Financial the internal title for this position is Info Security Consultant or Info Security Sr Con. The title and salary will be determined based on experience and applied skills. Position Overview The Cybersecurity Risk Consultant operates within the Cybersecurity Risk Team in close partnership with Cybersecurity Governance, Cybersecurity...


  • St Paul, United States THE EVOLVERS GROUP Full time

    We are seeking a resource to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: all data meets or exceeds federal Criminal Justice Information Services (CJIS) security guidelines; are Payment Card Industry (PCI) compliant; and meet or excee...


  • St Paul, United States Health Management Associates Full time

    Overview Cirdan Health Systems and Consulting, an HMA company, is seeking a Senior Business Development Consultant. This search is being conducted on a national basis with a strong preference for this hire to be within driving distance of St. Paul, MN. Job Summary The Senior Business Development Consultant -Encounter Data Submissions (BD Consultant) leads...

  • Business Consultant

    6 days ago


    St Paul, United States Infinite Campus Full time

    Job Description The Business Consultant plays a critical role in the overall success of Infinite Campus customers. The Business Consultant provides consulting services to school districts during the pre-sale, implementation and ongoing operations phases of the customer lifecycle. The Business Consultant will be a highly motivated self-starter capable of...

  • Business Consultant

    5 days ago


    St. Paul, United States Infinite Campus Full time

    Job Description The Business Consultant plays a critical role in the overall success of Infinite Campus customers. The Business Consultant provides consulting services to school districts during the pre-sale, implementation and ongoing operations phases of the customer lifecycle. The Business Consultant will be a highly motivated self-starter capable of...

  • Business Consultant

    5 days ago


    St Paul, United States Infinite Campus Full time

    Job Description The Business Consultant plays a critical role in the overall success of Infinite Campus customers. The Business Consultant provides consulting services to school districts during the pre-sale, implementation and ongoing operations phases of the customer lifecycle. The Business Consultant will be a highly motivated self-starter capable of...


  • Saint Paul, United States RICEFW Technologies Inc Full time

    Description of Project The Minnesota Department of Information Technology Services (MNIT) partnering with the Department of Public Safety (DPS), Driver and Vehicle Services (DVS) is seeking a resource to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets or exceeds federal Criminal...


  • Saint Paul, Minnesota, United States Securian Full time

    At Securian Financial the internal title for this position is Info Security Consultant or Info Security Sr Con. The title and salary will be determined based on experience and applied skills. Position OverviewThe Cybersecurity Risk Consultant operates within the Cybersecurity Risk Team in close partnership with Cybersecurity Governance, Cybersecurity...


  • Saint Paul, Minnesota, United States Securian Full time

    At Securian Financial the internal title for this position is Info Security Consultant or Info Security Sr Con. The title and salary will be determined based on experience and applied skills. Position OverviewThe Cybersecurity Risk Consultant operates within the Cybersecurity Risk Team in close partnership with Cybersecurity Governance, Cybersecurity...

  • Security Engineer

    2 weeks ago


    St Paul, United States Talent Software Services Full time

    Sample Tasks ssist with evaluation of architecture interfacing with other state/federal/local systems. ssist with assessing the security of any equipment needed. ssist with the evaluation of data integrity and data security. ssist with ensuring all background check compliance is met for all project team members. ssist with creating procedures to...


  • St Louis, Missouri, United States GardaWorld Security Services Full time

    Job Summary Job Title: Financial Data SpecialistLocation: St. Louis, MOEnvironment: Corporate OfficePay-Rate: $23 - $25 Who is GardaWorld?GardaWorld is the world's largest privately-owned security services company. We protect our clients' staff and assets, wherever they are in the world. We offer career advancement opportunities. We encourage diversity and...


  • St Paul, United States HCL Technologies Full time

    IT Senior Security Incident Response Engineer - Telecommute - Grade 28 (Contractor) Please note this will be shift work - Monday to Friday 3pm 12am CT Purpose of Job: This role is an individual contributor for the Security Incident Response Team. As the team has developed into a 24/7 365 operation, we require strong individual contributors that...