Search jobs > Wilmington, DE > Information security

Information Security and Compliance Officer

State of Delaware
Wilmington, DE
$66.5K-$83.1K a year
Full-time

Summary Statement

This class is responsible for optimizing and maintaining operational Information Technology (IT) security for an information security / risk management policy program for one or more state agencies to ensure information systems, IT security policies, standards and procedures are established and followed in compliance with department, state and federal mandates for properly securing electronic information.

Essential Functions

Essential functions are fundamental, core functions common to all positions in the class series and are not intended to be an exhaustive list of all job duties for any one position in the class.

Since class specifications are descriptive and not restrictive, incumbents can complete job duties of similar kind not specifically listed here.

  • Develops, implements, and enforces information security policies, standards, best practices and procedures for complex systems and data including that which requires compliance with federal and state regulations department-wide.
  • Conducts IT security risk assessments and gap analysis on systems and operational requirements to evaluate effectiveness and identify vulnerabilities and non-compliance.
  • Makes recommendations on corrective action to IT security requirements and system designs to resolve issues; evaluates IT security solutions to confirm they meet department, state and federal IT security requirements for processing confidential and sensitive information.
  • Develops IT security policies and procedures for reviewing and approving new requirements and specifications for procurement of major systems.
  • Develops and updates systems IT security plans and reports such as but not limited to the Corrective Action Plan (CAP), System Security Plans (SSP), Safeguards Procedures Report (SPR) and / or the Safeguard Security Report (SSR).
  • Performs IT security and internal control reviews on sensitive systems and develops unique security tools and techniques for assessment of complex / non-standard systems and operational requirements.
  • Completes IT security authorization packages for systems users to include security plans, assessment reports and a continuous monitoring plan / assessment schedule.
  • Assists department staff on IT security policy and conducts IT security related training.
  • Ensures compliance of department IT security operations with external entities such as but not limited to, the Center for Medicare and Medicaid Services, Internal Revenue Service (IRS), Payment Card Industry Data Security Standards (PCIDSS), Social Security Administration (SSA), State of Delaware Information Security Policy (DISP), and Delaware State Personally Identifiable Information (PII) data security requirements.

Prepares policies and procedures to ensure the secure transmission of State data to external entities.

  • Prepares and coordinates IT security audits, investigations and incident management.
  • Supports a 24x7 operational environment. The operating environment will require extended hours, including engagement outside normal working hours.
  • May complete the Primary Information Security Officer (ISO) or Alternate Information Security Officer (ISO) duties, as outlined by DTI.
  • Ensures effective, stable and reliable information systems and business operations, while remaining in compliance with department, state and federal laws, rules and regulations, as well as the DTI defined strategic direction, including keeping all components of systems under vendor warranty, support / service plans, backup, Continuity of Operations Planning (COOP).
  • Performs other duties of equal or lower complexity as assigned.

Job Requirements

JOB REQUIREMENTS for Information Security and Compliance Officer

Applicants must have education, training and / or experience demonstrating competence in each of the following areas :

  • Three years' experience in developing, implementing, and enforcing Federal and State IT security policies, standards, best practices and procedures.
  • Three years' experience in maintaining information security by conducting assessments / audits and analysis of information systems to identify security risks, changes / upgrades, evaluating IT security measures along with performing internal security control reviews;

developing security reports; preparing corrective actions to audit and other findings; and recommending improvements to security solutions.

Additional Posting Information

The State of Delaware recognizes the value of telework and flexible working schedules. This position is eligible for Telework and Alternative Work Schedules according to the State of Delaware’s .

More information will be shared at the time of interview.

Conditions of Hire

Applicants must be legally authorized to work in the United States. The State of Delaware Executive Branch participates in the Federal E-Verify system where the State will provide the federal government with each new hires Form I-9 information to confirm that you are authorized to work in the U.S.

Benefits

11 days ago
Related jobs
DelDOT
Wilmington, Delaware

This class is responsible for optimizing and maintaining operational Information Technology (IT) security for an information security/risk management policy program for one or more state agencies to ensure information systems, IT security policies, standards and procedures are established and follow...

Promoted
DuPont de Nemours, Inc.
Wilmington, Delaware

At DuPont, we are working on things that matter; whether its providing clean water to more than a billion people on the planet, producing materials that are essential in everyday technology devices from smartphones to electric vehicles, or protectin Security Officer, Security, Officer, Deputy, Infor...

BDO
Wilmington, Delaware

The President and Chief Compliance Officer, for BDO Capital Advisors, LLC will serve dual roles in leading the organization’s investment banking subsidiary and managing its operational and compliance functions. The President and Chief Compliance Officer will work on building, implementing, and overs...

Sunstates Security
Newark, Delaware

The Security Officer will read and become extremely knowledgeable of Post Orders and SOP and will be able to act quickly and efficiently according to such directives. A Security Officer may perform a multitude of duties as specified by the Post Orders and Standard Operating Procedures (SOP). Only ca...

University of Delaware
Newark, Delaware

Under limited direction from the Vice President for Information Technologies and the Chief Information Officer, the Chief Information Security Officer (CISO) is responsible for information security governance, including strategy and program administration, policy development, enforcement and complia...

United Security, Inc.
Wilmington, Delaware

Escort prisoners to and from the holding cells to the courtrooms utilizing handcuffs, shackles, and other restraints. Are you looking to be part of a company where teamwork is encouraged? A company with plenty of growth and career advancement opportunities? Do you want a flexible schedule? Look no f...

Sunstates Security
Kent County, Delaware

The Security Officer will read and become extremely knowledgeable of Post Orders and SOP, and will be able to act quickly and efficiently according to such directives. A Security Officer may perform a multitude of duties as specified by the Post Orders and Standard Operating Procedures (SOP). Only c...

Delaware Park Casino & Racing
Wilmington, Delaware

JOB RESPONSIBILITIES: Creates and ensures a fun-filled, entertaining, and exciting environment where the flawless delivery and execution of service excellence is paramount. Knowledgeable and actively promotes company marketing and promotional events and is proficient in answering guest questions. Co...

Sunstates Security
New Castle, Delaware

The Security Officer must read and become extremely knowledgeable of Post Orders and SOP, and will be able to act quickly and efficiently according to such directives. A Security Officer may perform a multitude of duties as specified by the Post Orders and Standard Operating Procedures (SOP). Only c...

United Security
Wilmington, Delaware

Escort prisoners to and from the holding cells to the courtrooms utilizing handcuffs, shackles, and other restraints. Are you looking to be part of a company where teamwork is encouraged? A company with plenty of growth and career advancement opportunities? Do you want a flexible schedule? Look no f...