> Markdown version of [/jobs/ext/1143945-chief-information-security-officer](https://www.wearedevelopers.com/jobs/ext/1143945-chief-information-security-officer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Chief Information Security Officer - **Company:** The State University of New York - **Location:** New York, NY, United States - **Experience:** Expert - **Salary:** $160,000.0 - $192,000.0 - **Contract:** Permanent contract - **Skills:** Big Data, Cloud Computing Security, Cyber Security, Identity and Access Management, Information Security Management, Intrusion Detection and Prevention, Network Security, Software Vulnerability Management, Data Logging, Cyber Threat Analysis, Information Technology, Data Analytics - **Published:** July 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=116c7b858d2c76ec ## About the Role Bachelor's degree in computer science, information technology, public administration, or a related field. Minimum of 10 years of progressive experience in information security, cybersecurity, or IT risk management, including at least 5 years in a leadership role. Demonstrated ability to lead and mentor security teams effectively. Excellent communication, collaboration, and problem-solving skills. Demonstrated experience developing and implementing enterprise-wide cybersecurity or information security programs within a complex, decentralized organization. In-depth knowledge of cybersecurity best practices, standards, frameworks, and regulations (e.g., NIST, ISO, FERPA, HIPAA). Strong understanding of information security technologies and tools, including network security, identity management, endpoint security, and cloud security. Demonstrated experience in incident response management and handling security breaches. Excellent communication, leadership, and collaboration skills, with the ability to influence and build strong relationships at all levels of the organization. Strong analytical and problem-solving skills, with the ability to make data-driven decisions and effectively manage risks., Advanced degrees and multiple relevant certifications (e.g., CISSP, CISM, GSOM, CRISC, CGEIT, CISA, etc.) Experience in leading information security initiatives in large, multifaceted government organizations or academic institutions. Comprehensive knowledge of cybersecurity practices, standards, and regulations. Demonstrated proficiency in managing security technologies and tools, incident response, and risk assessment. ## Description The Chief Information Security Officer (CISO) serves as the leading authority on information security within the State University of New York (SUNY) System. The CISO establishes and advances systemwide information security governance by translating Board-approved policies into actionable standards, procedures, and guidance that are implementable across diverse campus environments. This includes aligning SUNY's cybersecurity program with recognized frameworks (e.g., NIST), and developing and maintaining core governance functions such as compliance attestation, standards management, third-party risk oversight, incident coordination, and campus support. Collectively, these activities form an integrated approach to managing shared cybersecurity risk across institutions with varied operations, resources, and technical environments. The CISO also plays a central role in shaping SUNY's long-term cybersecurity strategy. This includes evaluating and defining the appropriate balance between centralized services and campus-level responsibilities; guiding the development of a sustainable security operations model; and ensuring coordination across key capabilities such as identity and access management, logging, threat detection, and incident response. In addition, the CISO serves as a senior advisor to system leadership on emerging and enterprise-level risks, including artificial intelligence governance, large-scale data initiatives, identity management, and third-party/vendor risk. The role emphasizes strategic coordination across policy, funding, and operational domains to ensure that cybersecurity capabilities are scalable, sustainable, and aligned with systemwide priorities., Develop and execute a comprehensive cybersecurity strategy aligned with SUNY's mission, goals, and risk tolerance while providing strategic guidance to SUNY leadership on emerging cybersecurity threats, trends, and industry best practices. Direct and implement a comprehensive cybersecurity risk management framework that quantitatively assesses potential impacts on SUNY's mission and operations. Advise on security-affecting decisions and initiatives to align with SUNY's overall strategic objectives. Provide leadership and direction to IT and Security Operations teams to administer security operations effectively, including monitoring, threat intelligence, incident response, vulnerability management and collaboration & intelligence sharing with New York State and other partners. Establish strong and trusting relationships with leadership at SUNY campuses and SUNY affiliated entities. Maintain consistent engagement with leadership at SUNY campuses and SUNY affiliated entities that will foster collaboration and cooperation for SUNY cybersecurity priorities and strategies. Oversee incident response activities, ensuring timely notifications and effective response to security incidents and breaches. Collaborate with the SUNY Risk and Compliance Office to ensure risk assessments are performed and recommend measures to mitigate information security risks. Oversee the SUNY Information Security Working Group, a cybersecurity group comprising internal and external stakeholders to gain diverse insights on security strategies. Advise on University-wide initiative on matters related to Information Security. Provide guidance and advice around risk assessment and management processes across academic and administrative programs, ensuring alignment with organizational objectives. Engage with key functional programs and stakeholders to advocate for the uniform application of SUNY information security policies and standards across all technology-based projects, systems, and services, while ensuring SUNY's compliance with relevant laws, regulations, and industry standards through enhancing and adapting the information security management framework. Foster awareness of information security threats and risks while promoting adherence to applicable laws and regulations. Coordinate with SUNY Counsel and functional office experts to ensure that clear guidance is provided. Promote a security-conscious culture across SUNY and provide training to faculty, staff, and students on cybersecurity best practices. Manage and assess security risks related to external vendors and partners, ensuring compliance with contractual security requirements. Develop and manage the CISO office budget, optimizing resource allocation to support security projects and initiatives aligned with SUNY's goals and priorities. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Alibaba Big Data and Machine Learning Technology](https://www.wearedevelopers.com/videos/37-alibaba-big-data-and-machine-learning-technology) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [PySpark - Combining Machine Learning & Big Data](https://www.wearedevelopers.com/videos/44-pyspark-combining-machine-learning-big-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Top Big Data Technologies That You Need to Know](https://www.wearedevelopers.com/magazine/108-top-big-data-technologies-that-you-need-to-know)