Logo
Infojini

Information Security Officer

Infojini, Raleigh, North Carolina, United States, 27601

Save Job

Infojini Consulting is a full service IT consulting, services, and staffing firm with offices in Secaucus, NJ. Infojini Consulting is recognized as one of the fastest growing IT services and software development Companies. With a partnership of all major technology vendors, Infojini Consulting has built a strong Government and commercial customer base including fortune 100 companies and most state and federal agencies such as State of North Carolina, State of South Carolina, State of Maryland, State of California, State of Pennsylvania, State of Virginia, State of Washington and many others. Infojini Consulting is an equal opportunity employer and considers all qualified individuals for employment irrespective of their race, gender, age, color, sexual orientation. We offer an excellent compensation package

Job Description

Perform a detailed security assessment and establish the current baseline.

Create an information security improvement plan and implement the plan by closely collaborating with other internal IT teams.

Create and maintain information security score card.

Establish Information Security and Risk Management programs. Some of the responsibilities include developing, implementing and maintaining DES information security enterprise standards, processes, procedures, regulations, and guidelines based on federal and state laws and mandates (e.g. NIST 800-53, IRS Publication 1075, FedRAMP, etc.).

Conducts system configuration and operations audits of discrete applications, network, and computing resources to identify potential vulnerabilities (e.g. Port Scans, Intrusion Detection and Prevention, Network Scans and Perimeter Security).

Provides leadership and guidance in information security and enterprise risks to business owners and agency staff. Required Skills:

Demonstrated work experience developing and implementing Information Security and Enterprise Risk management programs.

Experience developing, implementing and maintaining information security standards, processes, procedures, regulations, & guidelines

Experience developing and implementing security improvement plans with effective results that are tracked and reported

Experience configuring, implementing and managing all the various information security solutions

Knowledge of the latest cyber security frameworks, principles, application threats/vulnerabilities, and secure coding practices

Knowledge of cloud security best practices in the areas of Services, Infrastructure (IaaS), Platform (PaaS), and/or Software (SaaS).

Desired Skills:

Experience in the areas of NIST Risk Management Framework, IRS Publication 1075, FedRamp, Cloud Hosting, and FIPS

Experience in the areas of Siem and Identity Management (IDM) solution implementations

Ability to work with IT staff to transition knowledge as requested

Qualifications

One or more of the following certifications (current) CISSP, CISM, CISO, CEH, GIAC/SANS certified tracks, etc. Bachelor's degree in Computer Science/Engineering or equivalent with at least five years of progressive experience in the Security field

Additional Information

All your information will be kept confidential according to EEO guidelines. #J-18808-Ljbffr