SALARY $ $72.54 Hourly $3, $5, Biweekly $8, $12, Monthly $103, $150, Annually

Similar documents
IT SECURITY OFFICER. Department: Information Technology. Pay Range: Professional 18

Applying for a Job. Step-by-Step Instructions

CITY OF MONTEBELLO SYSTEMS MANAGER

Plenary Session: Branch Cybersecurity Controls Thursday, February 22 1:15 p.m. 2:15 p.m.

Three Year Follow up Request to Grand Jury Updated March 2, 2018

Position Description IT Auditor

KENYA SCHOOL OF GOVERNMENT EMPLOYMENT OPORTUNITY (EXTERNAL ADVERTISEMENT)

BOARD OF COUNTY COMMISSIONERS

ISSMP is in compliance with the stringent requirements of ANSI/ISO/IEC Standard

FDIC InTREx What Documentation Are You Expected to Have?

SAVANNAH LAKES VILLAGE PROPERTY OWNERS ASSOCIATION, INC. JOB DESCRIPTION

CERTIFIED IN THE GOVERNANCE OF ENTERPRISE IT CGEIT AFFIRM YOUR STRATEGIC VALUE AND CAREER SUCCESS

Security and Privacy Governance Program Guidelines

Law Enforcement Commercial Price List ManTech International Corporation August 2017

Cyber Security Program

NORTH AMERICAN SECURITIES ADMINISTRATORS ASSOCIATION Cybersecurity Checklist for Investment Advisers

CURRENT EMPLOYMENT OPPORTUNITIES QUALIFICATION SHEET

Application for Certification

Certified Information Security Manager (CISM) Course Overview

A Global Look at IT Audit Best Practices

IMPORTANT INFORMATION

Information Technology General Control Review

General Dynamics Information Technology, Inc.

ACM Retreat - Today s Topics:

ITU CBS. Digital Security Capacity Building: Role of the University GLOBAL ICT CAPACITY BUILDING SYMPOSIUM SANTO DOMINGO 2018

Cybersecurity Guidance for Small Firms Thursday, November 8 9:00 a.m. 10:00 a.m.

SENIOR SYSTEMS ANALYST

Position Title: IT Security Specialist

Cybersecurity Panel: Cutting through Cybersecurity Hype with Practical Tips to Protect your Bank

2018 IT Priorities: Cybersecurity, Cloud Outsourcing & Risk Management. Follow Along

VACANCY NOTICE. Vacancy Notice No: CAT-6 (WRO-21)/SSA Date of Issue : 24 June Title: Assistant (ICT) Deadline for application : 10 July 2015

COURSE BROCHURE CISA TRAINING

Employment Page Frequently Asked Questions (FAQs) 1. Where can I find more information on employment opportunities with LASC?

INFORMATION TECHNOLOGY ANALYST I//II

SALARY: $101,275 $123,100 ANNUALLY DOE/DOQ Plus 5% for a Master s degree

POSITION DESCRIPTION

BRING EXPERT TRAINING TO YOUR WORKPLACE.

Oregon Board of Accountancy WHAT YOU NEED TO KNOW

Firefighter/Apparatus Operator

INTERNAL RECRUITMENT: SYSTEMS ADMINISTRATOR APPLICATION DEADLINE: JANUARY 7, 5 PM

Strengthening Capacity in Cyber Talent sans.org/cybertalent

Request for Qualifications for Audit Services March 25, 2015

**The Florida Lottery is not a State Personnel System Employer** TECHNICAL ANALYST II - POSITION NUMBER

Federal Acquisition Service Authorized Federal Supply Schedule Price List

CISA Training.

Hearing Voices: The Cybersecurity Pro s View of the Profession

THE INSTITUTE OF CERTIFIED MANAGERS.

INFORMATION TECHNOLOGY NETWORK ENGINEER I (7961) INFORMATION TECHNOLOGY NETWORK ENGINEER II (7962)

Job Specification & Recruiting Profile of Vacancy

New York Department of Financial Services Cybersecurity Regulation Compliance and Certification Deadlines

DATABASE ADMINISTRATOR

THE LIFE AND TIMES OF CYBERSECURITY PROFESSIONALS

CISA EXAM PREPARATION - Weekend Program

CASA External Peer Review Program Guidelines. Table of Contents

Professional Evaluation and Certification Board Frequently Asked Questions

ContinuingProfessionalEducation(CPE)Guide

Introduction to CPIP

Program Overview. Oregon Government Finance Officers Association Professional Finance Officer Certification Program

CERTIFICATION PROGRAM OF THE NORTH CAROLINA LOCAL GOVERNMENT BUDGET ASSOCIATION

Oregon Board of Accountancy

HPE DATA PRIVACY AND SECURITY

NATIONAL INFORMATION TECHNOLOGY AUTHORITY - UGANDA (NITA-U) REGIONAL COMMUNICATIONS INFRASTRUCTURE PROGRAM (RCIP) INFORMATION SECURITY SPECIALIST

Florida Government Finance Officers Association. Staying Secure when Transforming to a Digital Government

How NSFOCUS Protected the G20 Summit. Guy Rosefelt on the Strategy, Staff and Tools Needed to Ensure Cybersecurity

Keeping Your SOCs Full. May 26, Strengthening Capacity in Cyber Talent sans.org/cybertalent

WIRELESS DEVICES: ACCEPTABLE USE AND GUIDELINES

Training and Certifying Security Testers Beyond Penetration Testing

Must Have Items for Your Cybersecurity or IT Budget in 2018

Building the Cybersecurity Workforce. November 2017

79th OREGON LEGISLATIVE ASSEMBLY Regular Session. Senate Bill 90

Administrative Directive No. 4: 2011 Continuing Professional Education Requirements for All Certification Programs

The fast track to top skills and top jobs in cyber. Guaranteed.

LABOR CATEGORIES, EDUCATION AND YEARS OF EXPERIENCE Years No. Labor Categories Education Experience

Cell Phone Policy. 1. Purpose: Establish a policy for cell phone use and compensation allowance.

Continuing Professional Education Policy: Requirements for Certification and Qualification Programs. (formerly known as Administrative Directive #4)

PREPARING FOR SOC CHANGES. AN ARMANINO WHITE PAPER By Liam Collins, Partner-In-Charge, SOC Audit Practice

HRSD Position Description: UNIX Systems Administrator

1.2 Applicant An individual applying for initial, upgraded, reciprocity or renewal by submission of a standard application to the administrator.

DEPARTMENT OF HEALTH and HUMAN SERVICES. HANDBOOK for

Position Description - SYSTEMS ADMINISTRATOR III

Invest in TODAY. your future. Grow your professional skills and advance your career with GFOA s nationally recognized CPFO Program

Institute of Internal Auditors 2019 CONNECT WITH THE IIA CHICAGO #IIACHI

ISO STANDARD IMPLEMENTATION AND TECHNOLOGY CONSOLIDATION

Position Description - SYSTEMS ADMINISTRATOR II

Les joies et les peines de la transformation numérique

Database Administrator 2

Opening Doors to Cyber and Homeland Security Careers

Internal Audit Report. Electronic Bidding and Contract Letting TxDOT Office of Internal Audit

Department of Management Services REQUEST FOR INFORMATION

Invest in. ISACA-certified professionals, see the. rewards.

Manager, Infrastructure Services. Position Number Community Division/Region Yellowknife Technology Service Centre

AFC Compliance Careers

BENEFITS of MEMBERSHIP FOR YOUR INSTITUTION

POSITION DESCRIPTION

Kennesaw Scholarship. Please note: to AFP Atlanta with. Name: Work Address: Employer: Your Title: Work Fax Number: this position?

HCISPP HealthCare Information Security and Privacy Practitioner

Introduction to CPIP

BECOME TOMORROW S LEADER, TODAY. SEE WHAT S NEXT, NOW

ESSENTIAL DUTIES AND RESPONSIBILITIES include the following: Creates complex computer images Windows 7/10 and Mac OS X.

Introducing Maryville University s CYBER SECURITY ONLINE PROGRAMS. Bachelor of Science in Cyber Security & Master of Science in Cyber Security

Transcription:

SALARY $49.72 - $72.54 Hourly $3,977.88 - $5,803.27 Biweekly $8,618.75 - $12,573.75 Monthly $103,425.00 - $150,885.00 Annually ISSUE DATE: 03/21/18 THE POSITION DIRECTOR OF CYBER SECURITY OPEN TO THE PUBLIC This recruitment is being held to establish an Eligible List for the OCERS location ONLY. Applications will be accepted on a continual basis until the needs of OCERS are met; please apply immediately as the recruitment may close at any time. The first review of applications will be on April 2, 2018. RECRUITMENT INFORMATION Please note: The Director of Cyber Security works directly for OCERS and is not employed by the County of Orange. Limited travel reimbursement may be provided for on-site finalist interviews and for top candidates traveling more than three hours from their principal residence. Annual Salary Range: $103,425 - $150,885 starting salary is commiserate with experience. OCERS also offers a full benefit package which includes a defined benefit retirement plan, medical, dental and life insurance, paid holidays and paid annual leave. GENERAL DUTIES The Director of Cyber Security reports directly to the Assistant CEO of Finance and Internal Operations and acts as the agency's Information

Security Officer. The Director of Cyber Security is responsible for identifying, evaluating and reporting on security risks, leading agency-wide information security efforts that integrate all aspects of information assurance, providing protection of computer systems, networks and member, financial and confidential data from internal and external threats. The Director of Cyber Security also coordinates, investigates and reports on cyber security incidents should they occur. MINIMUM QUALIFICATIONS Bachelor's degree from an accredited college or university with a major in Computer Science or related field AND Eight years of increasingly responsible experience in cybersecurity application and infrastructure, technology management including five years of supervisory and project management experience AND Hands-on experience managing current IT security technologies. Please click here for details on the Director of Cyber Security classification. DESIRABLE QUALIFICATIONS Master of Business Administration or Master of Science degree in computer science or related field Professional information security certifications such as: Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA) Certified Information Security Manager (CISM) Similar industry certifications Demonstrated understanding of security standards and information security and compliance frameworks, controls and best practices. Knowledge of: Principles, concepts, practices, methods and techniques of effective leadership, information technology management and public administration pertaining to the planning, directing and monitoring of information and systems security; Risk management frameworks, processes and best practices related to the management of information and technology risks; Security protocols, concepts and best practices; Cloud and wireless security;

Remote access protocols; Anti-virus, anti-spam, internet filtering and patch management tools; Intrusion detection/prevention systems; System technology security testing (vulnerability scanning and penetration testing); Developing and documenting security architecture and plans, including strategic, tactical and project plans; Effective supervision, training and employee motivation principles, practices and techniques; Computer applications and hardware related to the performance of the essential functions of the job; Skills/Ability to: Strong leadership skills and the ability to lead cybersecurity operations designed to prevent, detect and respond to a wide range of threats both internally and externally Implement and utilize management theories and principles; project management best practices; work planning and scheduling practices; supervisory and motivation practices Prepare and present reports related to cyber security matters, policies or programs to OCERS Audit Committee and Board of Retirement, making recommendations as appropriate and following through with direction received Critical thinking with strong problem solving skills and ability to adapt to technological advancements within the industry Establish and maintain strong and effective working relationships with all levels of OCERS personnel, consultants, contractors, vendors, plan sponsors, board members and others regarding a variety of OCERS policies, procedures, and practices Communicate effectively both orally and in writing High level of personal integrity as well as the ability to professionally handle confidential matters and show an appropriate level of judgement Manage technical and professional staff by interviewing, selecting, training, evaluating, and communicating with employees Work with other employees, supervisors, managers and executives to move concepts, projects, and work assignments toward successful completion in a timely manner WHAT DOES THE ORANGE COUNTY EMPLOYEES RETIREMENT SYSTEM DO? OCERS provides retirement, death, disability, and cost-of living benefits to employees of the County of Orange and certain County districts. OCERS is governed by a ten-member Board of Retirement that is responsible for managing a $15 billion dollar trust fund. OCERS provides retirement, death, and disability benefits to retirees of the County of Orange and certain County districts. For more information on OCERS, please visit our website at www.ocers.org.

ADDITIONAL INFORMATION EMAIL NOTIFICATION: Email is the primary form of notification during the recruitment process. Please ensure your correct email address is included in our application and use only one email account. NOTE: User accounts are established for one person only and should not be shared with another person. Multiple applications with multiple users may jeopardize your status in the recruitment process for any positions for which you apply. Candidates will be notified regarding their status as the recruitment proceeds via email through the GovernmentJobs.com site. Please check your email folders, including spam/junk folders, and/or accept emails ending with "governmentjobs.com" and "ocgov.com." If your email address should change, please update your profile at here for additional Frequently Asked Questions. EEO INFORMATION Orange County, as an equal employment opportunity employer, encourages applicants from diverse backgrounds to apply. APPLICATIONS MAY BE OBTAINED AND FILED ONLINE AT: http://www.ocgov.com/hr OR 333 W. Santa Ana Blvd, Santa Ana, CA 92701 EXAM #8029MR-0318-157(O) DIRECTOR OF CYBER SECURITY MW

Director of Cyber Security Supplemental Questionnaire * 1. You are required to provide full and complete responses to the supplemental questions. The information you provide will be used as a rating device, so please be descriptive in your response. Incomplete information will result in a lower rating. Supplemental questions are designed to help you present your qualifications for this position and will be rated based on the information that you supply. Please provide concise, descriptive and detailed information and highlight all of the areas in which you have developed expertise, matching your professional experience with the specific qualifications and abilities for each question. Resumes will not be accepted in lieu of completing the supplemental questions. By selecting yes below, you acknowledge that you have read and understand this application requirement. Yes No 2. Do you have a Bachelor's degree from an accredited college or university with a major in Computer Science or related field* and eight years of increasingly responsible experience in cybersecurity application and infrastructure, technology management, including five years of supervisory and project management experience and hands-on experience managing current IT security technologies? * If you possess the required degree, please attach a copy to this application or email a copy to mwozniuk@ocers.org. Yes, I have attached a copy to my application. Yes, I have emailed a copy to mwozniuk@ocers.org. No * 3. What additional professional information security licenses, certifications or education do you have? Please include date received and expiration date if applicable. In addition, please provide a brief summary of why each item is relevant and valuable for being OCERS Director of Cyber Security. * 4. Please describe your experience in developing, implementing and maintaining information security programs. Include a discussion of the frameworks, security protocols, controls and resources used, governance model and method of assigning responsibilities, and metrics developed for measuring and reporting of the program's maturity and effectiveness. * 5. Please provide an example of a presentation on the topic of cyber security that you prepared and presented to either management/executives or a governing body. You may attach it to your application or email it to mwozniuk@ocers.org. I have attached my work sample to my application. I have emailed my work sample to mwozniuk@ocers.org. * 6. Please prepare and provide a sample project plan for developing an information security program for OCERS. You may attach it to your application or email it to mwozniuk@ocers.org. I have attached my work sample to my application.

I have emailed my work sample to mwozniuk@ocers.org. * 7. Please describe your experience with developing, implementing and maintaining an Information Security Incident Response Plan include a discussion of when you had to activate the plan and the steps used for conducting an investigation and remedying the situation. * 8. Please describe your experience with developing and managing an information security budget, discuss the process used to determine amounts to be requested and how you justified to executives the need for the budget requests. Also include a discussion on your experience in managing information security budgets throughout the year and the process you employed for procuring and purchasing hardware, software and services related to information security projects. * 9. Please provide additional information about yourself that you believe would be both important and relevant to evaluating your application for OCERS Director of Cyber Security. * Required Question