Security Specialist

Intellibee Inc
$91,897 - $116,099 a year
Raleigh, North Carolina
1 day ago

Typical Experience: 36-60 months


The North Carolina Administrative Office of the Courts is seeking a self-motivated and strategic professional to oversee the ongoing re-engineering of the agency’s business processes to encourage an emphasis on data protection/security, and to factor data privacy into its long-term planning efforts including the day-to-day business practices. The incumbent will be responsible for regularly assessing the agency’s compliance with state and federal privacy law. Additionally, the Privacy Officer will develop and implements appropriate remediation steps if those assessments determine that such steps are necessary.


This position works closely with the Chief Information Security Officer, Risk Management Officer and other departments throughout the AOC. This role is one of a data strategist and adviser as well as a steward for protection of highly confidential information. The ideal candidate should possess a combination of business knowledge, technical skills, people skills, and the ability to guide data strategy and control standards. The Privacy Officer will report directly to the Risk Management Officer.


Duties and Responsibilities:

  • Develop and maintain a compliance program for the AOC Information Security Policies, Procedures, Guidelines, Privacy, state and federal laws
  • Analyze and evaluate the effectiveness of the Information Security and Privacy program in meeting its requirements and objectives
  • Participate in activities, including conducting analyses of current practices (program audits), and reporting level of compliance to the CTO and CISO.
  • Draft and maintain agency-wide policies, procedures/plans, and guidelines to ensure the workforce uses and accesses only the minimum necessary data and discloses the data within principal of least privilege.
  • Maintain data privacy, enforcing specific privacy requirements as it relates to agency mandates, and other legal requirements
  • Collaborate with agency staff including IT, Legal, Human Resources, and other State agencies in fostering information privacy awareness relevant to all programs and services.
  • Develop and oversee the implementation of corrective action plans that result from auditing and monitoring activities.
  • Implement training of agency staff on privacy issues.
  • Provide ongoing assessment of programs and services to ensure that the agency discloses only the minimum amount of data necessary to perform the 3rd party functions.
  • Performing periodic privacy risk assessments and related ongoing compliance audits
  • Participates in, investigating, and resolving privacy-related reports, including potential breach incidents
  • Participates in, inquiries and investigations into privacy-related questions and complaints from workforce members, government agencies, or other sources

Knowledge, Skills and Abilities / Competencies

  • B.A./B.S. in Policial Science, JDR, Communications, Computer Science, Engineering, Information Assurance, or equivalent experience
  • Experience using GRC (Governance Risk and Compliance) tools
  • Experience with Incident Response procedures
  • General understanding of HIPAA, NIST 800-53 r4 or greater, CJI state and federal guidelines regarding privacy, and concepts of other regulated data privacy laws/standards.
  • Knowledge of and experience with legal compliance of Cybersecurity and privacy laws.
  • Excellent written and oral communication skills, with demonstrated ability to distill and translate complex concepts into actionable information for a variety of audiences.
  • Experience working in the Information Technology auditing or other highly regulated environment.
  • Experience implementing compliance requirements in a matrixed environment utilizing complex information systems.
  • Comfortable in effectively presenting information one-on-one and in large groups.
  • Leadership skills and ability to coordinate and influence cross-functional teams.
  • Proven record of success in project management, with a particular focus on strategic planning.
  • Competence in resolving problems/conflicts in a diplomatic and tactful manner; exercising discretion in handling confidential information.
  • Proficient usage of Microsoft Office products including Word, Excel, PowerPoint and Outlook.
  • Technically savvy utilizing a variety of electronic data platforms.
  • Thorough knowledge of the Privacy Act of 1974 and related laws and regulations, Federal and State privacy policies and practices to advise Agency Privacy Officers, program managers, and agency counsel and to provide guidance and assistance relating to organizational privacy requirements, reviews, and analysis
  • Possess one or more of the following certifications:
    • Certified Information System Auditor (CISA)
    • Certified Information Privacy Manager (CIPM)
    • Certified Information Privacy Professional (CIPP)

Skill Matrix:

  • Experience using GRC (Governance Risk and Compliance) tools Required 3 Years
  • Experience with Incident Response procedures Required 3 Years
  • General understanding of HIPAA, NIST 800-53 r4 or greater, CJI state and federal guidelines regarding privacy Required 3 Years
  • Knowledge of and experience with legal compliance of Cybersecurity and privacy laws. Required 3 Years
  • Excellent written and oral communication skills Required 3 Years
  • Experience working in the Information Technology auditing or other highly regulated environment. Required 3 Years
  • Experience implementing compliance requirements in a matrixed environment utilizing complex information systems. Required 3 Years
  • Possess one or more of the following: CISA, CIPM, CIPP Nice to have 3 Years
Apply
Other Job Recommendations:

SCI Security Specialist

ManTech
Santa Barbara County, California
$74,000 - $123,100
  • Formulates plans, policies, procedures and other...
  • Maintain and update the SCI Billet Structure (SCIBS) for the...
2 weeks ago

Director of Security Operations

Ripple
New York, New York
$236,000 - $265,499
  • Maintain a continuous loop of monitoring and evaluation for...
  • Lead the collaboration with Security and Software...
1 week ago

Information System Security Officer

ManTech
Washington, District of Columbia
$112,400 - $186,500
  • Ensure the day-to-day implementation, oversight, continuous...
  • Develop Plan of Action and Milestones (POAMs) in response to...
1 week ago

Unarmed Security Officer

Enterprise Security Corporation
Hagerstown, Maryland
$34,073 - $39,243 a year
  • Must possess or obtain Security Guard Certification...
  • Possession of relevant certifications in security or law...
2 days ago

Assistant Director of Security - Manchester, NH

Securitas
Manchester, New Hampshire
$42,000 - $44,000
  • Under the direction of the Account Manager, this position...
  • First direct supervisory contact for Shift Supervisors or...
1 day ago

Business Information Security Officer

Corebridge Financial
Houston County, Texas
$144,612 - $198,732 a year
  • We are inclusive: We embrace different perspectives,...
  • Stakeholder Management: Collaborate with business leaders,...
1 day ago

Security Engineer

Spring Venture Group
Kansas City, Missouri
  • Engineering and optimizing our SIEM solution to ingest,...
  • Designing, developing, and continually refining SIEM rules,...
2 weeks ago

Security Systems Integration Engineer (onsite - DMV area)

Convergint Federal Solutions
Columbia, Maryland
$115,000 - $140,000
  • Collaborate with clients, project managers, and solution...
  • Train client personnel on the operation and maintenance of...
1 week ago

Principal Consultant, Offensive Security, Proactive Services (Unit 42) - Remote

Palo Alto Networks
Washington, District of Columbia
$151,000 - $208,000
  • Assist in the development of internal infrastructure design...
  • Conducts periodic scans of networks to find and detect...
1 week ago

Security Program Specialist (OHSS1) DOH8658

State of Washington
Thurston County, Washington
$4,865 - $6,539 a month
  • Assist in developing policies and procedures for secure...
  • Experience in providing law enforcement, building access or...
3 weeks ago