> Markdown version of [/jobs/ext/3003739-information-security-officers-isos](https://www.wearedevelopers.com/jobs/ext/3003739-information-security-officers-isos). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Officers (ISOs) - **Company:** AllSTEM Connections - **Location:** Ontario, CA, United States - **Experience:** Experienced - **Contract:** Temporary contract - **Skills:** CompTIA Security+, Cyber Security, Information Technology - **Published:** September 19, 2026 - **Apply:** https://www.dice.com/job-detail/65fb532b-adce-4f9e-8b49-d4f120e98455 ## About the Role * General Experience: 11+ years of total direct experience relative to the field of information technology, with at least 3+ years of dedicated, direct experience specifically in information security. * Framework & Regulatory Expertise: Strong working knowledge of security frameworks (NIST CSF, NIST 800-53) and government/public sector regulations (CJIS, HIPAA, IRS Pub 1075). * Certifications: Must possess one or more recognized cybersecurity certifications (such as CISSP, CISM, or CISA)-or secure the required certification within one year of start. * Location & Availability: Must be local to the region and able to work onsite as required. * Core Competencies: Exceptional communication skills to translate complex security concepts for technical and non-technical stakeholders, coupled with strong project management and analytical abilities. ## Description We are seeking 5 Information Security Officers (ISOs) to join a collaborative multi-agency initiative on a 6-month contract engagement (with options for conversion or extension). Embedded within public sector agencies, you will balance agency-specific operational needs with statewide cybersecurity objectives, policies, and strategic directives. In this role, you will lead the implementation of security frameworks, policies, risk management, and third-party risk assessments, ensuring strict compliance with state, federal, and contractual security regulations., * Policy & Framework Implementation: Develop, implement, and maintain agency-specific information security policies and procedures aligned with state security strategies and frameworks like NIST CSF and NIST 800-53. * Risk & Vendor Management: Lead comprehensive risk assessments, mitigation planning, and third-party/vendor risk evaluations to protect agency data, systems, and infrastructure. * Agency Liaison & Governance: Serve as the primary security liaison between the agency and state security authorities, communicating and executing statewide cybersecurity initiatives. * Compliance & Auditing: Conduct compliance assessments and support audits for federal, state, and contractual regulations, including CJIS, HIPAA, and IRS Pub 1075. * Incident Response & Training: Coordinate security incident investigations, containment, and recovery while driving security awareness training and a strong internal security culture. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [It's not easy being green](https://www.wearedevelopers.com/videos/558-it-s-not-easy-being-green) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk)