Logo
GovernmentJobs.com

Chief Information Security Officer

GovernmentJobs.com, Fremont, California, us, 94537

Save Job

Job Posting

Alameda County Water District is hiring for a cybersecurity position with a salary range of $179,420.80 - $218,088.00 annually. The job is located in Fremont, CA and is a regular, full-time position with job number 25-07 under the Engineering & Technology Services department. The opening date is July 11, 2025. The district participates in both an Alternative Work Schedule and Hybrid Work from Home Program. Under general direction from the Director of Engineering and Technology, the role involves planning, organizing, coordinating, and implementing district-wide cybersecurity compliance, activities, and operations to ensure the confidentiality, integrity, and availability of information technology systems. The incumbent serves as a subject matter expert and internal consultant on cybersecurity and information privacy matters to improve cybersecurity risk management and performs a variety of professional and technical level tasks relative to assigned area of responsibility. The ideal candidate will possess comprehensive knowledge of key information technology controls and risk frameworks applicable to both IT and OT environments. They should have broad working knowledge of compliance and regulatory requirements related to information security, integrity, and privacy. Extensive experience providing technical leadership in the areas of information privacy and security, including experience leading, managing, and evaluating technical teams, is required. The candidate should also have experience in development and adoption of information security policies, procedures, and standards. They should have broad knowledge of information security technologies, current and emerging information security trends, threats, tactics, and cyber defense mechanisms. Thorough understanding of security architectures and TCP/IP protocols including installation and configuration requirements for LANs, WANs, VPNs, routers, firewalls, and related network and security devices is necessary. Knowledge and experience with Windows, Active Directory, Group Policy, DNS, encryption, patch management, anti-virus, system configuration management are required. Extensive experience managing information security risk programs including developing and executing information security vulnerability assessments, audits, mitigations, and remediations is also necessary. The candidate should have evidenced experience ensuring the security of on-premises systems and cloud services. Expertise in partnering, communicating, and collaborating with a diverse audience of stakeholders is essential. Excellent analytical and problem-solving skills, ability to develop and maintain effective and cooperative working relationships, ability to change priorities, work under pressure and meet critical deadlines, ability to exercise a high degree of initiative, independence of action, tact and good judgment, and ability to make and provide sound recommendations and decisions are also required. Reputable industry-related certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), GIAC Security Leadership (GSLC), and Certified Ethical Hacker (CEH) are highly desirable. Examples of Duties

Typical examples of duties may include, but are not limited to the following: Coordinate the continuous development, implementation, and update of information security and privacy policies, standards, guidelines, baselines, processes, and procedures in compliance with best practices and any local, state, and federal regulations. Develop and implement a comprehensive cybersecurity program by researching, identifying, and analyzing existing and potential security threats; develop and manage the frameworks, processes, and tools necessary to properly manage risk and to make risk-based decisions related to Information Technology (IT) and Operational Technology (OT), including but not limited to Industrial Control System (ICS) and Supervisory Control and Data Acquisition (SCADA) activities. Implement processes to continuously monitor District software and systems for vulnerabilities; monitor logs and alerts for security events and assist IT and SCADA systems staff in patching and updating District systems on a continuous basis; monitor and assess success of patching and updating of District systems and infrastructure. Lead and participate in complex projects designed to provide for the protection of District information assets; recommend solutions and appropriate technology to meet District needs; design project and resource plans and schedules; develop proposals using cost/benefit analysis; evaluate proposed system hardware and software to ensure compatibility with existing systems; coordinate with vendors and contractors. Provide functional supervision to District staff involved in cybersecurity projects and activities. Proactively identify and mitigate cybersecurity risks and respond to observations identified by third party auditors/security service providers. Review cybersecurity vulnerabilities and conduct penetration testing on a periodic basis. Develop periodic reports and dashboards presenting the level of controls, compliance, and current IT and SCADA risk posture. Lead, implement, and maintain District-wide training related to cybersecurity. Represent information security and privacy function on committees and outside organizations as necessary; coordinate emergency preparedness activities and tabletop exercises related to cybersecurity. Assist IT and SCADA Administrators in creating, implementing, and testing emergency and disaster recovery measures that ensure continual operational readiness of District systems. Work closely and collaborate with other departments staff responsible for OT and SCADA systems. Serve as the Districts central point of contact for information security related incidents or violations; investigate and document cybersecurity incidents, lead and assist in remediation of cybersecurity incidents and vulnerabilities, make recommendations for improvements. Coordinate information security incident response and reporting for events or exploited vulnerabilities including unauthorized system or network access, denial of service, inappropriate data access, data corruption, and/or collection of private or confidential information. Work as a liaison with local, state, and federal authorities requiring information and reports on security incidents to FBI or other law enforcement agencies. Participate in budget preparation; prepare cost estimates for budget recommendations; submit justifications for program materials, equipment, supplies, and services. Stay abreast of new trends and developments in the areas of cybersecurity, networking, server and storage systems, disaster recovery; attend and participate in group meetings. Perform other related work as required. Typical Qualifications

Possession of a Bachelors degree from an accredited college or university with a major in information systems, computer science, or closely related field and five (5) years progressively responsible professional level work experience in Information Security. Additional requirements: Must possess a valid California drivers license upon hire and have a satisfactory driving record. Possession of information technology security certifications such as Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) are highly desirable. Selection Procedure

Application materials including a supplemental questionnaire must be submitted online at www.acwd.org/jobs. The first review of applications will be Friday, August 8, 2025. As soon as a candidate has been selected, the position will close. Candidates who present the best job-related qualifications will be invited to participate in a qualification appraisal as well as an interview by an appraisal panel. Candidates passing the qualifications appraisal process will be ranked on an employment list for further consideration. Top-ranking candidates will be invited to a personal interview with the hiring Supervisor. Benefits

Health Insurance: Coverage is provided through the CalPERS Health program. Under the Cafeteria Plan, employees will receive a flex dollar allowance to purchase healthcare coverage, and qualifying voluntary products. Dental and Vision: Coverage for the employee and eligible dependents is fully paid by the District. Retirement: California Public Employees Retirement System (CalPERS) benefit depends on whether the employee is a new member or classic member under state law. Classic member: Employee who is a member of PERS or reciprocal agency within six months of hire at ACWD. 2.5% @ 55 with 8% employee contribution. $5000 Retired Death Benefit, 3% Annual Cost-of-Living Allowance Increase, Post-Retirement Survivor Allowance to Continue After Remarriage, Pre-Retirement Death Benefits to Continue After Remarriage of Survivor, Additional Opportunity to Elect 1959 Survivor Benefits, 1959 Survivor Benefit Level 4, Unused Sick Leave Credit, Public Service Credit for Peace Corps, AmeriCorps VISTA, or AmeriCorps Service, Military Service Credit as Public Service, Final Compensation 1 Year, Post-Retirement Survivor Allowance, Prior Service. The District picks up 2.5% of the CalPERS retirement contribution. New member: Employees hired after 12/31/12 who were not members of PERS or a reciprocal agency within the last six months of hire at ACWD. 2% @ 62 with 7% employee contribution. Effective 7/1/23 PEPRA employee contributions will increase to 7.75%. $5000 Retired Death Benefit, 1959 Survivor Benefit Level 4, 3% Annual Cost-of-Living Allowance Increase, Additional Opportunity to Elect 1959 Survivor Benefits, Final Compensation 3 Years, Military Service Credit as Public Service, Post-Retirement Survivor Allowance, Post-Retirement Survivor Allowance to Continue After Remarriage, Pre-Retirement Death Benefits to Continue After Remarriage of Survivor, Pre-Retirement Option 2W Death Benefit, Prior Service, Public Service Credit for Peace Corps, AmeriCorps VISTA, or AmeriCorps Service, Unused Sick Leave Credit. Social Security/Medicare: The District does