Description
Lead the agency-wide information security operations program, covering incident response, risk management, and continuous monitoring.
This role is on-site.
Responsibilities
- Create and maintain the IT security program aligned with regulations and best practices.
- Lead incident response efforts including detection, containment, and mitigation of security threats.
- Develop and enforce security policies and procedures to ensure compliance with IT directives.
- Assess risks to information systems and implement measures to reduce risk to acceptable levels.
- Oversee continuous monitoring of systems for vulnerabilities and emerging threats.
Required Skills
- Bachelor's degree in a relevant field.
- 10+ years of experience in information security or a related field, including leadership roles.
- Hands-on experience in risk management, incident response, vulnerability assessment, and security architecture.
- Familiarity with NIST standards and regulatory compliance.
- Experience managing cybersecurity teams or IT security professionals.
- Proficiency with Splunk, SolarWinds, and Azure.
- Knowledge of firewall operations and security policy development.
- Relevant certifications such as CISSP, CISM, or CISA.