Chief Information Security Officer
Persistent Systems
- New York City, NY
- Permanent
- Full-time
- Building and driving a cybersecurity strategy and framework, with initiatives to secure the organization's cyber and technology assets
- Define and administer the strategies and polices associated with Information Security and Cybersecurity Compliance
- Ensure adequate security measures to protect the company’s information systems to meet business needs and satisfy regulatory requirements and guidelines
- Identify, assess, and mitigate information security risks, ensuring proactive approach to risk management.
- Routinely report the company’s cybersecurity posture to senior management and stakeholders.
- Ensure efficient allocation of company resources is balanced with sound risk management practices
- Develop and enforce security policies, ensuring compliance with relevant regulations and industry standards
- Lead efforts to achieve and maintain compliance with DOD’s CMMC mandates
- Continuously evaluating and managing the cyber and technology risk posture of the organization
- Leading cybersecurity operations and implementing disaster recovery protocols and business continuity plans
- Ensuring adequate training and awareness is developed and conducted to provide to support information security and IT risk objectives at various levels throughout the company
- Educating and managing technology risks in collaboration with business leaders
- Work closely with IT Management to ensure implementation of appropriate IT controls, processes, procedures, systems, and security technologies
- Implementing and managing the cyber governance, risk, and compliance (GRC) process
- Reporting to the most senior levels of the organization (the CEO and board of directors, or equivalent)
- Developing, justifying, and evaluating cybersecurity investments
- Assist in the preparation and maintenance of RMF authorization packages IAW the DoD RMF regulation
- Bachelor's degree – preferred disciplines: Information Security, Cyber Security, Computer Science, or another scientific field
- 10 years of experience in a combination of risk management, information security, and IT in the DoD market
- Possess an in-depth understanding of information security, business continuity planning, IT regulatory requirements, disaster recovery planning, access management, risk assessments, configuration management
- 10 years of supervisory experience; including managing professional groups
- Must possess strong verbal / written skills and the ability to effectively interface with internal business clients, operations teams, technical engineering teams, internal audit, regulators, senior management, executive management, and the board
- Strong understanding of security standards from NIST and ISO
- Highly recommended be Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM)
- Must be able to obtain/maintain a DoD security clearance
- Master's degree – preferred disciplines: Information Security, Cyber Security, Computer Science, or another scientific field
- Demonstrable understanding of Automated Information Systems and specifically chapter 8 of National Industrial Security Program Operating Manual (NISPOM)
- Current Top Secret/SCI eligibility