Talent.com
Chief Information Security Manager
Chief Information Security ManagerInterSources • Mesa, AZ, United States
serp_jobs.error_messages.no_longer_accepting
Chief Information Security Manager

Chief Information Security Manager

InterSources • Mesa, AZ, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Chief Information Security Manager

Address : Mesa, AZ (Hybrid)

Full Time Position

Scope of Work :

The vCISO shall provide expert virtual cybersecurity services during normal business hours except in the event of a security incident or breach.

HCC seeks a fresh perspective on its security measures and protocols to not only improve its posture, but also to identify new risks and opportunities. The vCISO will also be responsible for leading HCC's efforts to address the nine (9) elements of the Gramm-Leach-Bliley Act (GLBA) for compliance purposes.

  • Perform a detailed cyber risk assessment that includes the following, but not limited to :

Identifying, estimating, and prioritizing information cyber security risks at college;

  • Examining HCC's current technology, security controls, policies, and procedures to assess potential threats or attacks; and
  • Evaluating HCC's threat landscape, vulnerabilities, and cyber gaps that pose a risk to its assets.
  • Act as HCC's Qualified Individual (QI) to present quarterly reports to HCC Board of Trustees and leadership as required and specified by GLBA.
  • Develop an information security program using a framework such as National Institute of Standards and Technology (NIST) 800-53, Center of Internet Security (CIS) Critical
  • Security Controls, or CIS Implementation Group 1 (IG1) that protects HCC in accordance with GLBA security requirements.
  • Provide information security leadership, communication, investigation, mitigation, containment and post-incident analysis in the event of a cyber incident.
  • Update and enhance existing cybersecurity policies and procedures as required by GLBA.
  • The policies include but not limited to :

  • Vulnerability management
  • Data management
  • Incidence response
  • Software management
  • Hardware asset management
  • Provide guidance when analyzing real-time threat analysis identified by HCC's security operations center.
  • Perform third-party and partner evaluations Higher Education Community Vendor Assessment Toolkit (HECVAT).
  • Develop and implement the strategy to conduct regular security audits and assessments to identify vulnerabilities and ensure compliance with security policies.
  • Write a clear and concise incident response plan that meets industry standards.
  • CYBERSECURITY INCIDENT OR BREACH

    In the event of a cybersecurity incident or breach, the vCISO will :

  • Notify HCC within twenty-four (24) hours of the discovery of an incident or breach by telephone and in accordance with the agreed upon incident response plan unless a shorter notice time is required by law.
  • Implement the incident response plan, ensuring that all relevant teams are mobilized and aware of their roles and responsibilities.
  • Oversee the initial assessment to understand the scope and impact of the incident or breach.
  • Coordinate with internal stakeholders, including senior management and the board of directors, to keep them informed about the incident or breach and the steps being taken to address it.
  • Lead the investigation to determine the cause of the incident or breach, how it occurred, and what data or systems were affected.
  • Oversee the remediation efforts to fix vulnerabilities and restore affected systems.
  • Ensure that all actions taken during the incident or breach response are thoroughly documented.
  • Conduct a post-incident review to evaluate the response and identify lessons learned.
  • Provide a full written report of the incident, nature of the breach, compromised information, and correction actions taken to prevent future incidents or breaches.
  • All devices and equipment necessary to perform duties under this contract will be provided by HCC.

    EDUCATION

    At a minimum, the Contractor must possess a bachelor's degree in cybersecurity, computer science, information technology, or a related field from an accredited higher education institution in the United States. A master's degree is preferred.

    EXPERIENCE

  • IT Security : The Contractor must possess at least 7-10 years of experience in IT security-related roles such as security analyst, network administrator, or similar positions.
  • Leadership : The Contractor must possess experience in management or leadership roles as CISOs need to lead teams and make strategic decisions.
  • CERTIFICATION(S)

    The Contractor must possess at least one of the following related certifications :

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • KNOWLEDGE & SKILLS

  • Technical Skills : Demonstrates a deep understanding of information security principles, practices, and technologies.
  • Leadership and Communication : Possess strong leadership, communication, and strategic planning skills are essential.
  • Compliance and Risk Management : Possess knowledge of regulatory requirements and risk management practices.
  • Skill Matrix :

  • Technical Expertise :
  • Knowledge of Security Frameworks : Demonstrate an understanding and application of industry-standard security frameworks, such as the National Institute of Standards and Technology (NIST) 800-53, Center of Internet Security (CIS) Critical Security Controls, and CIS Implementation Group 1

    (IG1).

    Cybersecurity Technologies : Demonstrate familiarity with current security technologies, especially any commonly used technologies in higher education.

    Threat Intelligence and Incident Response : Demonstrate experience in threat detection, vulnerability / risk assessments, and incident response.

  • Experience & Qualifications :
  • Education : Possess a bachelor's degree or higher in cybersecurity, computer science, information technology, or a related field from an accredited higher education institution in the United States.

    Experience : Demonstrate years of experience providing CISO-level services, specifically virtual or remote services. Prove the ability to convey complex security concepts to non-technical stakeholders. Demonstrate leadership experience, especially in advising executive teams and boards on cybersecurity.

    Certifications : Demonstrate relevant professional certifications such as CISSP, CISM, or CISA to validate skills and knowledge.

  • Compliance & Risk Management :
  • Demonstrate knowledge of regulatory requirements and risk management practices.

    About Us :

    InterSources Inc. is a Small, Woman, and Minority-Owned Business Enterprise, ISO / IEC 27001, SOC 2 Type 2 certified company with massive 18+ years of diversified experience in providing IT Consulting Services, Artificial Intelligence, Data Analysis, Application Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom Software Development, Web Development, UI / UX Design, System Integration, QA Support etc. We make reasonable accommodations for clients and employees, and we do not discriminate based on any protected attribute including race, religion, color, national origin, gender sexual orientation, gender identity, age, or marital status. We also are a Google Cloud and Oracle partner company.

    serp_jobs.job_alerts.create_a_job

    Information Security Manager • Mesa, AZ, United States

    Job_description.internal_linking.related_jobs
    Sales Manager (27804)

    Sales Manager (27804)

    Supermicro • Gilbert, AZ, United States
    serp_jobs.job_card.full_time
    Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise IT, Hadoop / Big Data, Hyperscale, HPC and IoT / Embedded customers...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Remote First-Line Supervisors of Police and Detectives - AI Trainer ($80-$120 per hour)

    Remote First-Line Supervisors of Police and Detectives - AI Trainer ($80-$120 per hour)

    Mercor • Casa Grande, Arizona, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    About the Role • • Mercor is seeking experienced • •First-Line Supervisors of Police and Detectives • • to support a leading AI lab in advancing research and infrastructure for next-generation machine l...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Infrastructure Delivery Manager I, ID-Install

    Infrastructure Delivery Manager I, ID-Install

    Arizona Staffing • Mesa, AZ, US
    serp_jobs.job_card.full_time
    Infrastructure Delivery Manager.Amazon Web Services (AWS) is a fast paced technology company and a leader in the world of data centers. We are currently expanding our infrastructure management team ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Director, Cyber Recovery - REMOTE

    Director, Cyber Recovery - REMOTE

    Molina Healthcare • Mesa, AZ, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    The Director of Cyber Recovery will oversee and manage Disaster Recovery related to the Information Technology (IT) organization's technology services to all customers working closely with the Netw...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    U.S. Customs and Border Protection Officer

    U.S. Customs and Border Protection Officer

    U.S. Customs and Border Protection • Sacaton, Arizona, US
    serp_jobs.job_card.full_time +1
    Customs and Border Protection Officer (CBPO).A high number of candidates may make applications for this position, so make sure to send your CV and application through as soon as possible.Customs an...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Unarmed Security Officer - Mesa, Arizona

    Unarmed Security Officer - Mesa, Arizona

    Diversified Protection Corporation • Mesa, AZ, United States
    serp_jobs.job_card.full_time +1
    Full Time and Part Time Shifts Available - Pay Rate : $23 / hr.The Unarmed Security Officer is responsible for day-to-day security operations at client facilities. Officers serve as the primary contact...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Area Director

    Area Director

    Enovis • Casa Grande, AZ, United States
    serp_jobs.job_card.full_time
    Enovis Corporation (NYSE : ENOV) is an innovation-driven medical technology growth company dedicated to developing clinically differentiated solutions that generate measurably better patient outcome...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Technical Director

    Technical Director

    TECHSTAFF OF ARIZONA • Coolidge, AZ, US
    serp_jobs.job_card.full_time
    The Technical Director is responsible for leading all scientific, technical, and innovation functions for a next generation contractor manufacturer specializing in clean, high-performance personal ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Associate Security & Fire Multi Operations Specialist

    Associate Security & Fire Multi Operations Specialist

    Boeing • Mesa, Arizona, USA
    serp_jobs.job_card.full_time +1
    Associate Security & Fire Multi Operations Specialist.The Boeing Company is currently seeking an.Associate Security & Fire Multi Operations Specialist. This team governs global enterprise re...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Manager, Strategic Analytics

    Manager, Strategic Analytics

    GEICO • Mesa, AZ, US
    serp_jobs.job_card.full_time
    The Government Employees Insurance Company (GEICO) is a private American auto insurance company with headquarters in Chevy Chase, Maryland. GEICO is a wholly owned subsidiary of Berkshire Hathaway a...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Chief Information Officer

    Chief Information Officer

    Confidential • Gilbert, AZ, United States
    serp_jobs.job_card.full_time
    The Company is in search of a Chief Information Officer to lead its Information Technology department, which includes a diverse team of over 60 employees across various IT divisions.The successful ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Side Hustle Project Lead

    Side Hustle Project Lead

    Finance Buzz • Fountain Hills, Arizona, US
    serp_jobs.job_card.full_time +1
    We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Chief of Staff

    Chief of Staff

    Trail of Bits • Mesa, AZ, US
    serp_jobs.job_card.full_time
    Founded in 2012 by 3 expert hackers with no investment capital, Trail of Bits is the premier place for security experts to boldly advance security and address technology's newest and most challengi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Senior Global Security Intelligence Analyst (Virtual)

    Senior Global Security Intelligence Analyst (Virtual)

    Boeing • Mesa, Arizona, USA
    serp_jobs.job_card.full_time +1
    Senior Global Security Intelligence Analyst (Virtual).The Boeing Companys Boeing Enterprise Security (BES) organization is currently seeking a. Senior Global Security Intelligence Analyst.As a Lead ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Infrastructure Delivery Manager I, ID-Install

    Infrastructure Delivery Manager I, ID-Install

    Amazon • Mesa, Arizona, USA
    serp_jobs.job_card.full_time
    Amazon Web Services (AWS) is a fast paced technology company and a leader in the world of data centers.We are currently expanding our infrastructure management team within Amazon Web Services an...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Manager, Enterprise Solutions Engineering (East Coast)

    Senior Manager, Enterprise Solutions Engineering (East Coast)

    Jobgether • Mesa, AZ, US
    serp_jobs.job_card.full_time
    Senior Manager, Enterprise Solutions Engineering (East Coast).This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Senior Manager, Enterprise Solutions...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Director of Consolidations and Reporting

    Director of Consolidations and Reporting

    Vaco by Highspring • Fountain Hills, Arizona, United States
    serp_jobs.job_card.permanent
    Director of Consolidations and Reporting.Vaco has partnered with a prestigious company to hire their next Director of Consolidations and Reporting. This high-visibility role puts you at the center o...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Analyst, Configuration Information Management- NetworX

    Senior Analyst, Configuration Information Management- NetworX

    Molina Healthcare • Mesa, AZ, United States
    serp_jobs.job_card.full_time
    Serves as a subject matter expert on system capabilities, conducting research and root cause analysis to resolve complex business and technical issues. Ensures system configuration aligns with busin...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted