Information Security Officer (Onsite)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Under the direction of the Executive Director of Information Technology Services (ITS), the Information Security Officer (ISO) supports the development, implementation, and ongoing coordination of the College’s information security and privacy program.
The Information Security Officer (ISO) collaborates with ITS leadership, technical staff, and campus stakeholders to promote a secure, compliant, and resilient technology environment. The ISO supports the alignment of security practices with institutional priorities, regulatory requirements, and risk management principles while providing guidance on information security best practices, contributing to policy development, and advancing campus-wide security awareness, training, and continuous improvement through a collaborative, shared-responsibility approach.
TYPICAL WORK ACTIVITIES:
-
Assists the Executive Director of Information Technology Services in developing, reviewing, and maintaining information security policies, procedures, standards, and guidelines in alignment with best practices and applicable compliance requirements.
-
Supports periodic security risk assessments and helps identify areas of potential exposure, recommending practical mitigation strategies appropriate to institutional resources.
-
Monitors, investigates, and responds to security incidents and alerts-including managed detection and response (MDR) services, Security Information and Event Management (SIEM) systems, endpoint protection, and email security threats-while coordinating incident response,
documentation, communication, and follow-up activities.
-
Supports vulnerability management by reviewing security findings, coordinating remediation efforts, collaborating with ITS teams to maintain secure systems, and providing guidance on security controls, data protection, and the secure use of technology resources.
-
Contributes to the development and delivery of security awareness, education, and training programs for faculty, staff, and students.
-
Assists in preparing documentation and responses to support internal and external audits.
-
Monitors information security and privacy compliance requirements and communicates security updates, emerging threats, and risk information to ITS leadership and campus stakeholders.
KNOWLEDGE, SKILLS AND ABILITIES:
The Information Security Officer supports the College’s information security program by applying security best practices, monitoring and responding to security alerts and incidents, assessing risks and vulnerabilities, and coordinating mitigation efforts with ITS staff to maintain a secure and compliant technology environment.
The ISO assists in the development and maintenance of information security policies, standards, and procedures, and contributes to audit preparation and risk management activities. Familiarity with compliance expectations and audit processes is beneficial in supporting institutional requirements., SUNY Erie Community College does not discriminate in admission, employment, or in the administration of any of its policies and programs on the basis of race, color, religion, national origin, age, sex, gender, gender expression, gender identity, pregnancy, disability, sexual orientation, familial status, military status, domestic violence victim status, predisposing genetic characteristics, veteran status, criminal conviction, or any other characteristics protected by law. This applies to all students, applicants or other members of the College community (including, but not limited to, vendors and visitors). Grievance procedures are available to interested persons by contacting the office listed below. Retaliation against a person who files a complaint, serves as a witness, or assists or participates in the investigation of a complaint in any manner is strictly prohibited.
The following individual has been designated to handle inquiries regarding the College’s non-discrimination policies:
Civil Rights Compliance Officer, SUNY Erie Community College is an Equal Opportunity Employment / Affirmative Action employer, dedicated to maintaining an inclusive work environment at all three of our Western New York campuses. Ideal employees will be committed to facilitating the College’s student-first experience and career-focused education; and will embrace its mission to enrich its host communities through skill, service and partnership. Excellent health and benefits packages are comparable to offerings through similar county and New York State positions. Employees can take advantage of the College’s expansive Health & Wellness initiatives; and tuition-free college courses are available for both employees and their families.
Requirements
Effective written and verbal communication skills are essential, along with the ability to work collaboratively with ITS staff and campus stakeholders. The position requires strong organizational skills, the ability to manage multiple priorities, and a commitment to ongoing professional development to stay current with evolving security threats and technologies., Graduation from a regionally accredited college or university with a Master’s degree in Information Security, Cybersecurity, Information Technology, or a closely related field.
Minimum of five (5) years of experience in information security, cybersecurity, or a related information technology field, with demonstrated involvement in areas such as security operations, incident response, vulnerability management, or security monitoring.
Relevant security certifications (e.g., Security+, CISSP, CISM, or similar) are preferred.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.juju.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities
Best Paying Jobs in Technology
7 Important Tips That Every Software Developer Should Know