Information Security Officer/Subject Matter Expert-Baltimore, MD

Georgia Tek Systems
  • Baltimore, MD
    30+ days ago

    Job Description

    Information Security Officer/Subject Matter Expert
    Location: Baltimore, MD
    Anticipated Start Date - July 2024
    Duration: 12 Months contract

    Interview Model: In person/Virtual interview
    Rate: DOE

    We are looking for strong Subject Matter Experts to support OSM (Office of Security Management) in coordinating the adoption and implementation of centrally provided cyber security services. The ISO SME will play an active role in identifying and addressing vulnerabilities, working closely with engineers to devise solutions and formulate Implementation Guides. Additionally, they will assist in managing cybersecurity risks within state agencies, aligning efforts with the Cybersecurity Framework (CSF). Tasked with prioritizing these risks, the ISO SME will effectively communicate them to senior leadership, ensuring a comprehensive approach to safeguarding organizational assets and maintaining operational resilience against emerging cyber threats.
    The primary duties involve overseeing the daily operations of ISO-related projects and processes, planning and scheduling service delivery and adoption, identifying opportunities for the development of new services within their assigned organizations. Detailed responsibilities include, but are not limited to:
    Duties/Responsibilities:
    • Develop and maintain metrics to track adoption rates and regularly assess and enhance security controls, conducting assessments and evaluations to ensure effectiveness and compliance with established standards.
    • Review and implement security policies to ensure compliance with regulatory requirements and
    organizational standards.
    • Conduct thorough reviews of vulnerability data, coordinating with stakeholders to prioritize and address identified vulnerabilities effectively.
    • Actively participate in Authorization to Operate (ATO) assessments, contributing expertise to ensure systems meet security requirements for operation.
    • Collaborate with cross-functional teams to develop and enhance security protocols and procedures for seamless integration and utilization.
    • Regularly report on adoption rates and identify areas for improvement.
    • Monitor security systems to detect and respond to potential threats.
    • Act as the primary point of contact for ISO agency-related inquiries and engagements.
    • Monitor progress against established plans and adjust as necessary.
    • Develop strategic plans and roadmaps for service delivery.
    Core Experience:
    • Minimum of 5 years' experience in information security management.
    • Analytical and problem-solving skills, with the ability to analyze complex security issues and develop effective solutions.
    • Specific experience in implementing ISO plans, procedures, and cyber defense operations.
    • Experience tracking adoption rates and implementing centrally managed cyber services.
    • Experience in developing strategic plans, roadmaps, and business cases for new cybersecurity initiatives.
    Education and Qualifications:
    • Bachelor's degree in computer science, information technology, cybersecurity, or a related field. Advanced degrees or certifications such as CISSP, CISM, or CISA are preferred.
    • Graduate degree or
    • Strong knowledge of industry standards, regulations, and best practices related to information security, including ISO 27001, NIST Cybersecurity Framework, and General Data Protection Regulation (GDPR).
    • Excellent communication and collaboration skills, with the ability to effectively communicate technical concepts.
    • Project management skills, with experience in planning, scheduling, and monitoring the delivery of cybersecurity services.

    Numbers & Facts

    LocationBaltimore, MD

    Skills

    • Adoptionunmatched
    • Analysis Skillsunmatched
    • Best Practicesunmatched
    • Business Caseunmatched
    • CISA - Certified Information Systems Auditorunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Calendar Managementunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Cross-Functionalunmatched
    • Establish Prioritiesunmatched
    • ISO (International Organization for Standardization)unmatched
    • Industry Standardsunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Maintain Complianceunmatched
    • Metricsunmatched
    • Operationsunmatched
    • Operations Security (OPSEC)unmatched
    • Policy Implementationunmatched
    • Problem Solving Skillsunmatched
    • Project Trackingunmatched
    • Project/Program Managementunmatched
    • Protective Servicesunmatched
    • Regulationsunmatched
    • Regulatory Complianceunmatched
    • Regulatory Requirementsunmatched
    • Risk Managementunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Monitoringunmatched
    • Security Protocolsunmatched
    • Service Deliveryunmatched
    • Strategic Planningunmatched
    • Team Playerunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder