Adams County, Colorado
Division Director Security, Risk, and Compliance
Adams County, Colorado, Brighton, Colorado, United States, 80601
Overview
Division Director Security, Risk, and Compliance at Adams County Government. Responsible for providing strategic and operational leadership for the county's security architecture, information security, and risk & compliance functions. Base pay range:
$113,857.37/yr - $130,935.98/yr Note: The anticipated hiring range for this role is
$113,857.37 - $130,935.976
annually. The full salary range for this position is
$113,857.37 - $170,786.05
annually. What Success Looks Like In This Job
Under the direction of the Director, Information Technology and Innovation (ITi) and in collaboration with ITi Division Directors and Managers, lead the county's security, risk, and compliance efforts. Oversee development and implementation of security strategies to protect information assets and ensure compliance with regulations and standards. Guide managers and individual contributors to create a secure, compliant, and resilient service-oriented IT environment. Examples of Duties for Success
Collaborate with the ITi leadership team to develop and implement security, risk, and compliance strategies. Ensure comprehensive information security practices, including threat detection, incident response, and vulnerability management. Develop and implement risk management programs to identify, assess, and mitigate risks. Ensure compliance with relevant regulations, standards, and best practices. Monitor and analyze security metrics and performance indicators, providing regular reports to the Director and stakeholders. Coordinate with other departments to integrate security and compliance requirements into IT projects. Oversee the development and maintenance of security policies, standards, and procedures. Foster a culture of security awareness and compliance across the organization. Provide oversight for intrusion detection and response; coordinate security assessments and penetration testing. Design cost-effective security architectures that support county objectives and comply with policies, laws, and regulations; monitor external threat sources and communicate risks to key personnel. Attend conferences and training as required to maintain proficiency. Evaluate and manage the information security budget. Perform other related duties and responsibilities as required. Supervision
Provide direct supervision of staff. Qualifications for Success
Demonstrated ability to lead and manage diverse security, risk, and compliance functions. Strong decision-making skills and a proactive approach to problem-solving. Ability to coordinate and manage multiple projects in a fast-paced environment. Excellent customer service skills with the ability to communicate with both technical and non-technical users. Strong written and verbal communication skills. Proficiency with SIEM systems and risk management tools. Ability to work independently and within established guidelines with attention to detail. Ability to inspire and motivate team members, fostering collaboration and productivity. Computer skills: Proficient with Microsoft Windows and Linux operating systems. Strong technical background in enterprise networking and datacenter environments. Up-to-date knowledge of security threats and exploitation techniques. Experience conducting technical security assessments and penetration testing using open source and commercial tools. Experience with scripting and programming languages (Python, PowerShell, BASH, .NET) is a plus. More Qualifications for Success
Education
Bachelor's Degree from an accredited college in Computer Science, Information Systems, or a closely related field. Experience
Minimum of five (5) years of progressively responsible experience in security, risk and compliance. Minimum of four (4) years of leadership experience, including supervision of individual contributors, with evidence of making impactful change. Strong knowledge of compliance frameworks including HIPAA Security Rule, PCI compliance, IRS 1075, and CJIS. License and/or Certification
Possession of or the ability to obtain a valid Colorado Drivers License is required. ITIL Foundation Certification is desired. Possession of one or more of the following security certifications is preferred: SSCP, CISM, CISA, HISP, CISSP and/or NIST Cybersecurity Framework Practitioner. Must pass criminal (CBI) and (CJIS) fingerprint-based background check. Other
Per the County Mission statement, this position will own and pursue integrity and innovation. Must be able to work outside of regular business hours to respond to system outages. Job function
Information Technology Industries
Government Administration Note: This description excludes boilerplate listings and extraneous content not related to the role. EEO statements and other required disclosures should be retained as applicable. #J-18808-Ljbffr
Division Director Security, Risk, and Compliance at Adams County Government. Responsible for providing strategic and operational leadership for the county's security architecture, information security, and risk & compliance functions. Base pay range:
$113,857.37/yr - $130,935.98/yr Note: The anticipated hiring range for this role is
$113,857.37 - $130,935.976
annually. The full salary range for this position is
$113,857.37 - $170,786.05
annually. What Success Looks Like In This Job
Under the direction of the Director, Information Technology and Innovation (ITi) and in collaboration with ITi Division Directors and Managers, lead the county's security, risk, and compliance efforts. Oversee development and implementation of security strategies to protect information assets and ensure compliance with regulations and standards. Guide managers and individual contributors to create a secure, compliant, and resilient service-oriented IT environment. Examples of Duties for Success
Collaborate with the ITi leadership team to develop and implement security, risk, and compliance strategies. Ensure comprehensive information security practices, including threat detection, incident response, and vulnerability management. Develop and implement risk management programs to identify, assess, and mitigate risks. Ensure compliance with relevant regulations, standards, and best practices. Monitor and analyze security metrics and performance indicators, providing regular reports to the Director and stakeholders. Coordinate with other departments to integrate security and compliance requirements into IT projects. Oversee the development and maintenance of security policies, standards, and procedures. Foster a culture of security awareness and compliance across the organization. Provide oversight for intrusion detection and response; coordinate security assessments and penetration testing. Design cost-effective security architectures that support county objectives and comply with policies, laws, and regulations; monitor external threat sources and communicate risks to key personnel. Attend conferences and training as required to maintain proficiency. Evaluate and manage the information security budget. Perform other related duties and responsibilities as required. Supervision
Provide direct supervision of staff. Qualifications for Success
Demonstrated ability to lead and manage diverse security, risk, and compliance functions. Strong decision-making skills and a proactive approach to problem-solving. Ability to coordinate and manage multiple projects in a fast-paced environment. Excellent customer service skills with the ability to communicate with both technical and non-technical users. Strong written and verbal communication skills. Proficiency with SIEM systems and risk management tools. Ability to work independently and within established guidelines with attention to detail. Ability to inspire and motivate team members, fostering collaboration and productivity. Computer skills: Proficient with Microsoft Windows and Linux operating systems. Strong technical background in enterprise networking and datacenter environments. Up-to-date knowledge of security threats and exploitation techniques. Experience conducting technical security assessments and penetration testing using open source and commercial tools. Experience with scripting and programming languages (Python, PowerShell, BASH, .NET) is a plus. More Qualifications for Success
Education
Bachelor's Degree from an accredited college in Computer Science, Information Systems, or a closely related field. Experience
Minimum of five (5) years of progressively responsible experience in security, risk and compliance. Minimum of four (4) years of leadership experience, including supervision of individual contributors, with evidence of making impactful change. Strong knowledge of compliance frameworks including HIPAA Security Rule, PCI compliance, IRS 1075, and CJIS. License and/or Certification
Possession of or the ability to obtain a valid Colorado Drivers License is required. ITIL Foundation Certification is desired. Possession of one or more of the following security certifications is preferred: SSCP, CISM, CISA, HISP, CISSP and/or NIST Cybersecurity Framework Practitioner. Must pass criminal (CBI) and (CJIS) fingerprint-based background check. Other
Per the County Mission statement, this position will own and pursue integrity and innovation. Must be able to work outside of regular business hours to respond to system outages. Job function
Information Technology Industries
Government Administration Note: This description excludes boilerplate listings and extraneous content not related to the role. EEO statements and other required disclosures should be retained as applicable. #J-18808-Ljbffr