Information Security Officer

1 week ago


India Performix Full time
Job Description

· Assist with evaluation of architecture interfacing with other state/federal/local systems.

· Assist with assessing the security of any equipment needed.

· Assist with the evaluation of data integrity and data security.

· Assist with ensuring all background check compliance is met for all project team members.

· Assist with creating procedures to ensure the proper access rights are granted.

· Assist in building User Acceptance Testing (UAT) scenarios to ensure security requirements are properly tested and documented.

· Assist with architecture reviews of all environments.

· Assist with the evaluation and testing of disaster recovery plans.

· Assist with the development of change management processes and procedure projects.

· Provide written documentation and recommendations.

· Review agency network diagrams and access control lists (ACL) for compliance with FBI CJIS Security Policy and client's CJDN Security Policy.

· Work with DVS staff, review IT security audit documentation from local agencies which access DVS systems and data to determine compliance with FBI CJIS Security Policy and client's CJDN Security Policy requirements.

· Provide technical guidance, principles, standards, and best practices to guide criminal justice agency infrastructure design and system implementations to comply with FBI CJIS Security Policy and client's CJDN Security Policy.

· Perform technical analysis of vendor solutions to assess compliance with FBI CJIS Security Policy and client's CJDN Security Policy.

· Audit identity and access management to assure they are properly managed and maintained for all systems utilized to access driver's license and motor vehicle registration data; and recommend remedial action when required.

· Audit the driver's license and motor vehicle systems for PCI compliance; and recommend remedial action when required.

· Work with client agencies and other government entities to ensure driver and vehicle data is accessible for utilization for mission critical functions while maintaining all security requirements.

· Access public government data to the extent allowable by law, including data in the State's possession that would otherwise be classified as not public under Minnesota Statutes section 13.82.

· Analyze security needs for all DVS projects, DVS systems, and systems that interface with DVS systems.

Transition and train new DVS security staff for duties including:

· Deputy Registrar Security

· Identity Access Management (AIM)

· PCI Compliance

· Policy Auditing

· DVS securities and LASO duties

DVS Securities duties will include:

· Deputy Registrar Security

· IAM

· PCI Compliance

· Policy Auditing

· Physical Security of Facilities

· Fraud and Investigations

· ADLMV Management

· Technical Review/Architect

The LASO duties will include:

Identify who is using the CSA approved hardware, software, and firmware and ensure no unauthorized individuals or processes have access to the same.

Identify and document how the equipment is connected to the state system.

Ensure that personnel security screening procedures are being followed as stated in FBI CJIS Security Policy and the client's 5002 policy

Ensure the approved and appropriate security measures are in place and working as expected.

Support policy compliance and ensure the CSA ISO is promptly informed of security incidents.

Conduct an annual audit of CJIS compliance and track remediation efforts on any items found

Maintaining CJIS compliant network architecture

Properly vetting all individuals with access to DVS physical and logical resources through the access control systems and best IAM practices

Properly vetting all software and hardware vendors for CJIS compliance

Working closely with client IT to utilize enterprise resources when possible and involving MN.IT on all technical projects

Active involvement in all data access requests that may contain CJI to ensure CJI is protected accordingly

Work through vendor agreements to ensure all security requirements are met or exceeded

Reviewing client's IT scans of DVS resources and monitoring identified vulnerabilities and remediation efforts

Provide knowledge transfer.

Desired Skills

· Six (6) years' experience in a security architect or engineer role.

· Three (3) years' experience in network engineering, including firewall management.

· Four (4) or more engagements, within the last ten (10) years, in a security architect or engineer role where the engagement was longer than three months each.

· Experience with the design and implementation of information systems, in organizations with more than 50 people, with an emphasis on data, network, and infrastructure security.

· CISSP or GIAC certification.

· Comprehensive knowledge of hardware, software, application, and systems engineering.

· Broad knowledge of database systems, web-based technologies, and network security.

· Systems thinking – the ability to see how parts interact with the whole ("big picture" thinking).

· Knowledge of IT governance and operations.

· Interpersonal and leadership skills – servant leadership, collaboration, facilitation, and negotiation skills.

· Communication skills – both written and verbal.

· Ability to explain complex technical issues in a way that non-technical people may understand.

· Time management and prioritization.

Requirements
CISSP or GIAC certification

  • india Luminary Talent Sourcing Full time

    Job Description Introduction: We seek an Information Security Officer to join the Infrastructure and Operations department. As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving...


  • india Luminary Talent Sourcing Full time

    Job Description Introduction: We seek an Information Security Officer to join the Infrastructure and Operations department. As the Information Security Officer, you will be responsible for the information security vision, strategy, governance, management, processes and user education. The role also requires technical abilities to assist the team in improving...


  • India Doha Bank India Full time

    The Chief Information Security Officer will be responsible for developing, implementing and maintaining the Bank’s information security policy(s) and program to oversee effective and efficient management of Information Security Governance, coordinated locally and internationally. The incumbent is also responsible for the design, implementation and...

  • Security Researcher

    1 week ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online labs and...


  • India NodeFlair Full time

    **Job Summary**: **Job Type** **Seniority** **Years of Experience** Information not provided Job Title: Business Information Security Officer Location: Mumbai **About Barclays** Barclays is a British universal bank. We are diversified by business, by different types of customers and clients, and by geography. Our businesses include consumer banking and...


  • India Andhra Pradesh Centre for Financial Systems and Se Full time

    The A.P. Centre for Financial Systems and Services (APCFSS), Vijayawada, a Section 8 Company of the Government of Andhra Pradesh, is a key technical arm of the Government and manages the Comprehensive Financial Management System (CFMS), a SAP-HANA based platform covering the financial transactions of all the departments and corporations of the Government of...

  • Security Researcher

    3 weeks ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts! Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online labs and...

  • Security Researcher

    3 weeks ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security...

  • Security Researcher

    2 months ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs and security...

  • Security Researcher

    2 months ago


    India Altered Security Full time

    We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts! Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online labs and...

  • Security Researcher

    1 week ago


    India Altered Security Full time

    This position is not for SOC/SIEM candidates . We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts! Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information...

  • Security Researcher

    1 week ago


    India Altered Security Full time

    This position is not for SOC/SIEM candidates. We are looking for top Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security...


  • india Piramal Capital & Housing Finance Limited Full time

    QUALIFICATION: Graduate (BSc. IT, BE) with Information Security Certifications – CISSP EXPERIENCE: Candidate must have strong experience in Information Security Management system, Policy & procedures creation, implementation ISO27001 assessment – Specification for a framework of policies procedures that include all technical & operational controls...


  • india Indifi Full time

    Indifi is an exciting, well-funded fintech start-up enabling micro, small and medium enterprises (MSME) financing in India, by providing small businesses access to multiple lenders. The company has received funding from top-tier VC firms such as Accel Partners, Elevar Equity and Omidyar Network. We are developing a lending platform that is unique...


  • India Altered Security Full time

    We are looking for top Azure Cloud Security Researchers (Remote) with demonstrable expertise to join our team of experts Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online...


  • India e-JOBSAPP Full time

    Job Description Work with us – Dream with us – Grow with us The Metaxa Hospitality Group (MHG) is an internationally multi-awarded group of companies that develops, manages, and operates Resorts and Hotels in Crete and Santorini (Greece). At MHG we encourage passion for hospitality, for "philoxenia", and we focus on trustworthy and warm relationships....


  • india Movate Full time

    Hello Network We are at Movate Technologies, Looking for an Information Security Manager Job Title: Information Security Manager Experience: 7+ years Location: Bangalore/Hyderabad/Chennai Work from Office No.of Positions: 2 Top 5 Skill Set Hands-on experience with security technologies Experience in Information security and business continuity internal...


  • india Goldcoast Recruitment Ltd Full time

    Job Description Information Security Division Location: NottinghamSalary: £33,966 to £45,585 per annum (pro-rata if applicable) depending on skills and experience. Salary progression beyond this scale is subject to performance.Reference: REG140424GCR is seeking an experienced Information Compliance Officer to join our Information Security and Compliance...


  • India Altered Security Full time

    We are looking for top Azure Cloud Security Researchers (Remote) with demonstrable expertise to join our team of experts! Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore. We are experts in information security training, cyber ranges, online...


  • India Altered Security Full time

    We are looking for top Azure Cloud Security Researchers (Remote) with demonstrable expertise to join our team of experts!Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information security training, cyber ranges, online labs...