Information Security Specialist

Infowave Systems Inc
Sacramento, CA, United States
2 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Technology

Job description

  • Develop and maintain Enterprise Risk Management (ERM) programs, including frameworks, governance structures, and alignment with organizational goals.
  • Design and manage Insider Threat programs, including policies, monitoring approaches, and risk assessment processes.
  • Define and track risk metrics, Key Risk Indicators (KRIs), and risk reporting to support leadership decision-making.
  • Maintain enterprise risk registers and risk tracking systems to identify, assess, and monitor organizational risks.
  • Perform qualitative and quantitative risk assessments using structured methodologies.
  • Identify and manage risks related to sensitive and regulated information, including personal and confidential data.
  • Support audit readiness activities by maintaining clear and accurate security documentation and evidence.
  • Contribute to privacy, supply chain risk, and security policy development and implementation.
  • Deliver training sessions and workshops to improve awareness and understanding of security and risk practices.

Requirements

  • Bachelor’’s degree in Information Technology, Engineering, or a related field, or equivalent experience.
  • Hands on experience in information security, risk management, privacy, insider threat, or related areas.

Preferred Experience:

  • Experience building or managing Enterprise Risk Management programs.
  • Experience developing and operating Insider Threat programs.
  • Experience defining risk metrics, reporting structures, and risk appetite frameworks.
  • Experience managing risk registers or enterprise risk tracking tools.
  • Experience performing structured risk assessments using established methods.
  • Experience supporting audits and compliance-related documentation.
  • Experience working with sensitive data protection and risk mitigation.
  • Experience delivering training, workshops, or knowledge-sharing sessions.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

Videos

See all

Related articles

See all