U.S. Securities And Exchange Commission - Washington, DC

posted 13 days ago

Full-time - Senior
Washington, DC
Administration of Economic Programs

About the position

The Senior Officer-Chief Information Security Officer (CISO) position at the Securities and Exchange Commission (SEC) is responsible for leading and managing the agency's Information Security Program. This role involves strategic oversight of IT security initiatives, risk assessment, policy development, and ensuring compliance with cybersecurity best practices. The CISO will work closely with agency management to enhance the security posture of the SEC's technology systems and data.

Responsibilities

  • Strategically lead, implement, monitor, report, and continuously improve the SEC's Information Security Program.
  • Evaluate and make recommendations regarding the adequacy of the Agency's IT general and security controls.
  • Establish security and privacy-related policies and processes for internal IT management functions.
  • Identify, assess, and prioritize IT risks to Agency data and systems.
  • Ensure CISO programs and initiatives are aligned and communicated throughout the agency.
  • Oversee the Commission's Security Operations Center to ensure compliance with best practices.
  • Conduct and support regular internal and external security assessments, penetration tests, and playbook development.
  • Prepare an annual budget report for the SEC's cybersecurity program.

Requirements

  • Must be a US Citizen.
  • At least one year of specialized experience equivalent to the GS/SK-14 level, overseeing a large-scale information security program.
  • Demonstrated competencies in attention to detail, customer service, oral communication, and problem solving.

Nice-to-haves

  • Experience in building and managing cyber security programs and information technology projects.

Benefits

  • Eligible for telework in accordance with SEC's telework policy.
  • Participation in the SEC's Remote Telework Program.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service