Information Security Architect

MSYS Inc.
United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security PCI Data Security Standards Information Security Management System

Job description

This position will be perform duties as part of DIS execution of its responsibilities under the statewide information security program. DIS Responsibilities include:

  • Supporting agencies during their development of the information security program with direct tactical implementation assistance.
  • Developing and tracking agency information security implementation plans.
  • Interview administrators, managers and third parties to aid in development of program artifacts.
  • Ensuring high-level assessments of agencies’’ infosec work to ensure progress is made.
  • Providing high-level analysis of process and procedures work to ensure compliance with state standards

Daily duties / responsibilities

Duties include, but are not limited to:

  • Interviewing business and technical owners to determine policies and procedures used for each agency process.
  • Developing and tracking infosec implementation plan progress.
  • Documenting information gathered during both interviews and document reviews to assist with developing formal process and procedures.
  • Assessing agency documentation to ensure adequate approaches are used to comply with controls.

Requirements

  • 10+ Years of Experience in Information Security and Compliance.
  • 2+ Years of Experience with security audits based on a standard control set as an auditor or responding information system security officer
  • Must Have a Strong Working Knowledge of NIST 800-53 (2 Years of Experience)
  • Prior Experience POA&M or CAP.
  • Strong Communication Experience.
  • Experience With Using A GRC Tool (Archer or Similar) (3 Years of Experience)
  • Ability to identify, map and re-engineer business processes.
  • Strong schedule management and resource planning skills.
  • Ability to work at a high-volume and fast pace.
  • Strong collaborator and strong ability to meet deadlines

Required education

  • Bachelor’’s Degree

Preferred skills

  • Have completed an information security plan or system security plan notebook.
  • Simultaneously, manage multiple infosec work efforts.
  • Knowledge of IRS 1075, HIPAA, CJIS, MARS-E and/or PCI-DSS.
  • Government sector experience

Preferred certifications

  • CISA, GSLC, or equivalent certification

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · WWC 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all