Information Security Officer

AllSTEM Connections

Topeka (KS)

On-site

USD 95,000 - 140,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

AllSTEM Connections is seeking a seasoned information security leader to develop and implement agency-wide security policies aligned with statewide standards. The role leads risk management and third-party evaluations and serves as the primary liaison with the Kansas Information Security Office.

You will conduct compliance assessments for CJIS, HIPAA, IRS Pub 1075 and guide IT projects with security best practices, coordinating incident response and staff training.

Qualifications

  • Eleven (11) years of direct experience in information security.
  • At least three (3) years of direct information security experience.
  • Certifications or ability to obtain within one year.
  • Familiarity with government/public sector environments.
  • Knowledge of CJIS, HIPAA, IRS Pub 1075 and related regs.

Responsibilities

  • Develop, implement, and maintain agency security policies and procedures aligned with KISO strategy.
  • Lead risk assessments, mitigation planning, and third-party risk evaluations.
  • Liaise between agency and KISO to implement statewide cybersecurity initiatives.
  • Conduct compliance assessments and support audits for CJIS, HIPAA, IRS Pub 1075, etc.
  • Collaborate with leadership and IT teams to integrate security into operations and projects.
  • Coordinate incident response, containment, and root cause analysis.
  • Provide security awareness training to agency staff.

Skills

NIST CSF knowledge
Policy development
Security strategy presentation
Leadership & PM
Regulatory assessment
Technical documentation reading

Education

CISSP/CISM/CISA certification
Public sector familiarity
Regulatory knowledge (CJIS/HIPAA/IRS Pub 1075)

Job description

  • Develop, implement, and maintain agency-specific information security policies and procedures to ensure alignment with the Kansas Information Security Office (KISO) strategy and applicable laws, regulations, and frameworks (e.g., NIST CSF, NIST 800-53).
  • Lead risk management activities including risk assessments, mitigation planning, and third-party/vendor risk evaluations to protect agency data, systems, and infrastructure.
  • Serve as the primary liaison between the agency and KISO, communicating and implementing statewide cybersecurity initiatives while balancing agency-specific operational needs.
  • Conduct compliance assessments and support audits related to federal, state, and contractual security requirements, including CJIS, HIPAA, IRS Pub 1075, and others.
  • Collaborate with agency leadership and technical teams to provide strategic guidance and ensure security is integrated into all business operations and IT projects.
  • Respond to security incidents by coordinating with internal and external stakeholders to manage investigation, containment, and recovery, followed by root cause analysis and improvement plans.
  • Provide security awareness training and consultation to agency staff to promote a strong security culture and ensure understanding of security policies and practices.
Skills required:
  • Strong working knowledge of security frameworks such as NIST CSF or NIST 800-53.
  • Ability to develop and implement policies and procedures, and to present security strategies to both technical and non-technical audiences.
  • Effective communication skills, with the ability to convey complex security concepts in simple terms to technical and business stakeholders.
  • Strong leadership and project management skills, with the ability to prioritize tasks in a fast-paced environment.
  • Ability to assess regulatory requirements and determine whether existing controls meet those requirements.
  • Proficient in reading and comprehending technical information related to software, hardware, and telecommunications systems.
Experience required:

Eleven (11) years’ direct experience relative to the field of work, with at least three (3) years of direct experience in information security.

Education required:
  • One or more cybersecurity certifications (CISSP, CISM, CISA) or must obtain within one year.
  • Familiarity with government and public sector environments
  • Knowledge of state and federal regulations such as CJIS, HIPAA, and IRS Pub 1075.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Assistant Vice President, Chief Information Security Officer
Assistant Vice President, Chief Information Security Officer

Kansas State University • Manhattan (KS)

On-site
USD 150,000 - 230,000
Chief Information Security Officer CISO
Chief Information Security Officer CISO

Ryde Technologies, LLC • Phoenix (AZ)

On-site
USD 180,000 - 260,000
Security Analyst III
Security Analyst III

Johnson County Government • Olathe (KS)

Hybrid
USD 147,913,000 - 221,868,000
Security Analyst III
Security Analyst III

Johnson County Kansas • Olathe (KS)

Hybrid
USD 90,000 - 120,000
Chief Information Security Officer
Chief Information Security Officer

Private Company • Arlington (VA)

On-site
USD 150,000 - 200,000
Senior Information Security Strategist – Governance & Risk
Senior Information Security Strategist – Governance & Risk

AllSTEM Connections • Topeka (KS)

On-site
USD 95,000 - 140,000
Senior Information Systems Security Officer
Senior Information Systems Security Officer

APTNEXUS • Virginia (MN)

On-site
USD 135,000 - 165,000
Information Security Architect
Information Security Architect

InfoStride • Columbia (SC)

On-site
USD 60,000 - 100,000
Information Security Officer
Information Security Officer

Fortis Bank • Denver (CO)

On-site
USD 180,000 - 240,000
IT Security/Compliance Analyst
IT Security/Compliance Analyst

US IT Solutions Inc • Columbia (SC)

On-site
USD 80,000 - 100,000