Security Lead

Aquarius Staffing

Cincinnati (OH)

Presencial

USD 110 000 - 160 000

Tempo integral

Há 6 dias
Torna-te num dos primeiros candidatos
Gerador de candidaturas

Uma candidatura feita para esta oferta — um currículo e uma carta de apresentação personalizados que vão ao encontro do anúncio.

Ultrapassa os filtros ATS

Resumo da oferta

CMSNet in Cincinnati seeks a Security Specialist / Lead to develop and implement cybersecurity policies, standards, and governance across participating agencies. You will drive risk assessments, incident response planning, and vulnerability management while coordinating with county partners and vendors.

The role requires a Bachelor's degree in IT/cybersecurity, 5+ years of hands-on cybersecurity experience in government environments, and AWS experience.

Qualificações

  • Bachelor’s degree or equivalent experience in IT, cybersecurity, or computer science.
  • 5+ years of hands-on cybersecurity experience in enterprise or government environments.
  • System implementation experience, ideally ERP.
  • AWS experience.
  • Ability to work independently.
  • Broad understanding of security protocols and policies.
  • Experience advising senior leadership on IT security best practices.

Responsabilidades

  • Develop and maintain CMSNet cybersecurity policies, standards, procedures, and governance practices.
  • Assist agencies in implementing agency-specific security procedures aligned with CMSNet requirements.
  • Maintain alignment with CIS Controls, NIST CSF, CJIS Security Policy, and related rules.
  • Establish cybersecurity maturity objectives, metrics, and reporting structures.
  • Lead CMSNet incident response activities across the lifecycle and post-incident review.
  • Maintain the CMSNet Incident Response Plan, runbooks, and escalation procedures.
  • Coordinate multi-agency incident response with partners and leadership.
  • Oversee CMSNet vulnerability management, including scans and remediation tracking.
  • Manage identity and access governance including MFA and privileged access.
  • Advise CMSNet agencies on governance, policies, and security practices.
  • Coordinate annual cybersecurity awareness and training programs.
  • Oversee vendor security reviews and third-party requirements.

Conhecimentos

AWS experience
Independent work
Security policies
Governance
Incident response

Formação académica

Bachelor's degree in IT/Cybersecurity/CS

Descrição da oferta de emprego

Are you a dedicated Security Specialist / Lead looking to be a vital asset to a very well known organization based in the downtown Cincinnati area? Don't miss your chance

What you will be doing as the Security Specialist / Lead:
  • Develop, implement, maintain, and continuously improve CMSNet-wide cybersecurity policies, standards, procedures, and governance practices.
  • Assist participating agencies in developing and implementing agency-specific security procedures that align with CMSNet requirements while recognizing individual agency governance authority and operational needs.
  • Maintain alignment with applicable cybersecurity frameworks and requirements, including CIS Controls, the NIST Cybersecurity Framework, CJIS Security Policy, and relevant county and state requirements.
  • Establish cybersecurity maturity objectives, performance measures, assessment methods, and reporting structures to evaluate and communicate the effectiveness of the cybersecurity program.
  • Maintain a CMSNet-wide cybersecurity risk register and lead periodic, structured risk assessments across participating agencies.
  • Assist agencies in interpreting and applying security obligations established through CJIS, Local Rules, Supreme Court Rules of Superintendence, and other applicable judicial, county, or regulatory requirements.
  • Participate in CMSNet Steering Committee activities and provide cybersecurity expertise regarding policies, governance matters, risk considerations, and multi-agency security initiatives.
  • Monitor emerging cybersecurity risks, regulatory developments, and industry practices and recommend appropriate changes to policies, procedures, and security controls.
  • Lead cybersecurity incident response activities throughout the incident lifecycle, including preparation, detection, analysis, containment, eradication, recovery, and post-incident review.
  • Maintain and regularly update the CMSNet Incident Response Plan, including defined responsibilities, communication protocols, escalation procedures, severity criteria, and notification requirements.
  • Maintain incident response documentation and resources, including service-level expectations, response runbooks, contact information, notification trees, system references, and architecture documentation necessary to support an effective response.
  • Coordinate multi-agency incident response activities with Network Support, Application Support, County Technical Services, LASOs, agency leadership, vendors, and other appropriate partners.
  • Establish and maintain procedures for preserving cybersecurity evidence, including log retention, system imaging, documentation, and chain-of-custody requirements.
  • Oversee CMSNet enterprise vulnerability management processes, including authenticated and unauthenticated internal and external vulnerability scanning.
  • Review identified vulnerabilities, assess risk and remediation priorities, and coordinate corrective actions with Technical Services, agency information technology teams, system owners, and contracted vendors.
  • Track vulnerability remediation efforts and communicate significant risks, unresolved vulnerabilities, and remediation progress to appropriate leadership and stakeholders.
  • Oversee security governance related to service accounts, multifactor authentication, password requirements, privileged access, and other identity and access management practices.
  • Serve as a primary cybersecurity advisor and resource for participating CMSNet agencies and agency leadership.
  • Build and maintain productive working relationships with agency information technology teams, County Technical Services, LASOs, leadership, and other stakeholders to promote coordinated cybersecurity practices.
  • Assist agencies with adopting or adapting CMSNet cybersecurity policies, standards, and practices while respecting individual agency governance and operational authority.
  • Coordinate annual cybersecurity awareness and training programs across CMSNet agencies.
  • Manage and monitor cybersecurity requirements applicable to vendors and third-party service providers, including CJIS background requirements, required security training, data protection obligations, and other contractual security requirements.
  • Coordinate periodic vendor security reviews, risk assessments, compliance verification, and documentation requirements.
  • Evaluate cybersecurity considerations associated with proposed technology acquisitions, hosted services, cloud environments, third-party integrations, and other external technology solutions.
What you will need as the Security Specialist / Lead:
  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or equivalent experience.
  • 5+ years of hands-on cybersecurity experience in enterprise or government environments.
  • System Implementation experience, ideally ERP.
  • AWS experience
  • Ability to work independently
  • Broad understanding of security protocols and policies.
  • Experience advising senior leadership on best practices for IT Security.
Obtém a tua avaliação gratuita e confidencial do currículo.

ou arrasta e larga o ficheiro aqui.

Similar jobs

Ofertas semelhantes que vale a pena comparar

Security Lead: Cyber Governance & Incident Response
Security Lead: Cyber Governance & Incident Response

Aquarius Staffing • Cincinnati (OH)

Presencial
USD 110 000 - 160 000
Senior Administrator, Cybersecurity
Senior Administrator, Cybersecurity

FALL CREEK FARM & NURSERY • Charlotte (NC)

Presencial
USD 110 000 - 160 000
Chief Information Security Officer CISO
Chief Information Security Officer CISO

Ryde Technologies, LLC • Phoenix (AZ)

Presencial
USD 180 000 - 260 000
Cyber Security Specialist
Cyber Security Specialist

X-Bow Systems Inc. • Luling (TX)

Presencial
USD 70 000 - 110 000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

Presencial
USD 90 000 - 120 000
Security Engineering and Operations Manager
Security Engineering and Operations Manager

Assetliving • Dallas (TX)

Presencial
USD 120 000 - 180 000
Cybersecurity Manager
Cybersecurity Manager

Ingenium Talent • Louisville (KY)

Presencial
USD 100 000 - 130 000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

Presencial
USD 120 000 - 150 000
Cybersecurity Lead
Cybersecurity Lead

Leader Communications Inc. (LCI) • Alexandria (VA)

Presencial
USD 90 000 - 120 000
Lead Cyber Security Analysis SME
Lead Cyber Security Analysis SME

Xtremesolutions Inc • Washington

Presencial
USD 120 000 - 160 000