INFORMATION SECURITY OFFICER (EXE LEV)
8 days ago
Houston
Job Description Are you passionate about protecting organizations from cyber threats and helping shape the future of cybersecurity? Virtuo Group is seeking a skilled and motivated Cybersecurity Analyst to join our award-winning team. In this role, you’ll monitor, detect, and respond to security incidents, while working alongside experts who are dedicated to keeping our clients’ systems secure. If you thrive in a fast-paced, dynamic environment and enjoy solving complex challenges, this is the opportunity to make a real impact. Workdays & Hours: MONDAY – FRIDAY 8:00 AM – 4:00 PM* *Subject to Change / Remote is Not an Option DESCRIPTION OF DUTIES / ESSENTIAL FUNCTIONS Under the general direction of the Chief Information Security Officer (CISO),duties, functions and responsibilities of this position include: • Develop and implement the Houston Police Department (HPD) specific Information Security Program aligned with the COH Cybersecurity Master Plan to address the confidentiality, integrity and availability of HPD systems, data and information., • Directs an ongoing, proactive risk assessment program for all new and existing HPD systems and remains familiar with HPD's goals and business processes so effective controls can be put in place for those areas presenting the greatest information security risk., • Responsible for communicating risks and recommendations to mitigate risks to the COH CISO and HPD senior leadership team in cost/benefit terms so decisions can be made to ensure the security of information systems and information entrusted to HPD., • Oversees all ongoing activities related to the development, implementation and maintenance of HPD's information security policies and procedures by ensuring these policies and procedures encompass the overall security of criminal justice information (CJI) both at rest and in motion., • Assists HPD divisions, programs and HPD Chief Data Officer with efforts to ensure compliance with the Federal Bureau of Investigation (FBI) Criminal Justice Information Security (CJIS) policy., • Ensures HPD vulnerabilities are managed and mitigated per COH Cyber Division requirements., • Assists with the development of HPD specific, role-based information security awareness training programs, • Works with COH CISO to ensure proper protections, technical and physical controls are in place to protect the confidentiality, integrity and available of HPD systems, data and information., • Assists with the development and implementation of an HPD business continuity/disaster recovery plan to offset the impact caused by intentional and unintentional acts, • Evaluates security incidents and determines what response, if any, is needed and coordinates with COH CISO, and COH Cyber Division on proper responses when sensitive data or information are compromised., • Assists the COH CISO with HPD insider threat investigations., • Remains competent and current through self-directed professional reading, developing professional contacts with colleagues, attending professional development courses, attending training, conferences, and/or courses as directed by COH CISO, and obtaining certifications relevant to job duties. EDUCATION REQUIREMENTS B.A. or B.S. degree in Management and Information Systems (MIS), Computer Science, Engineering or a closely related field. EXPERIENCE REQUIREMENTS At least 5 years of experience implementing IT Security plans and controls of a department or enterprise IT environment that includes three (3) years managing a technology team. Strong understanding of the department's core business functions and business strategy. LICENSE REQUIREMENTS Must be able to pass a criminal background check, obtain and maintain federally mandated security clearances where required. PREFERENCES Preference will be given to applicants who possess: • Certified Information Systems Security Professional (CISSP), • Certified Information Security Manager (CISM), • SANS Global Security Essentials (GSEC), • At least 5 years of experience developing and implementing cybersecurity plans and controls in a large enterprise., • Broad working knowledge of criminal justice operations and their related data/software/hardware requirements including, but not limited to police patrol, investigations, case management, and related information technology needs, • Comprehensive understanding of the compliance and legal requirements for information confidentiality and integrity especially as it relates to criminal justice information in a law enforcement environment (records management system (RMS), body worn camera (BWC), etc.), • Experience evaluating and managing cyber risk and working within industry-standard frameworks (e.g. NIST Cybersecurity Framework, CIS Top 20, NIST 800-XX, etc.), • Knowledge and experience with Windows, Active Directory, group policy, DNS, encryption, patch management, anti-virus, system configuration management, • Knowledge and experience with LAN, WAN, VPN, routers, firewalls, servers, IDS/IPS, SIEM and DLP, • Solid expertise in formal/structured IT security risk assessment methodology, including understanding the implementation challenges and advantages across all levels of hardware platforms and software applications, • Experience with a wide variety of operating systems: Windows Server X, Windows 10/11, Linux etc., • Knowledgeable of Cyber Kill Chain and Diamond Model of Intrusion Analysis models, • Knowledge of SIEM, IDS, anti-virus/anti-malware and firewall technologies, • Solid knowledge and understanding of networking and TCP/IP, • Well-developed interpersonal skills. Ability to get along with diverse personalities; tactful, mature and flexible Ability to establish creditability and be decisive but also to recognize and support the organization's preference and priorities, • Ability to maintain the highest standard of confidentiality is required with zero tolerance, • High energy level, comfortable performing multifaceted projects in conjunction with normal activities, • Results oriented with the ability to balance other business considerations, • Ability to speak and present information effectively to groups of varying sizes, • Proven experience working in a rapidly changing, high intensity environment, avid proactive learner and ability to work well in a team-based environment, • Strong interpersonal and writing skills SELECTION / SKILLS TESTS REQUIRED Organization may administer skills assessment test. EEO Equal Employment Opportunity Virtuo Group Corporation is committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, genetic information, veteran status, gender identity, or pregnancy. Company DescriptionVirtuo Group is an award-winning cybersecurity firm trusted by over 50 organizations nationwide. We tackle crises and streamline daily workflows with agility, expertise, and dedication. As a service-disabled, minority, woman-, and veteran-owned small business, we value the discipline and commitment veterans bring and actively recruit disabled veterans for key roles. Our core values—agility, technical acumen, and exceptional service—guide every solution, project, and client interaction. Join us and make an impact where it matters most.Virtuo Group is an award-winning cybersecurity firm trusted by over 50 organizations nationwide. We tackle crises and streamline daily workflows with agility, expertise, and dedication. As a service-disabled, minority, woman-, and veteran-owned small business, we value the discipline and commitment veterans bring and actively recruit disabled veterans for key roles. Our core values—agility, technical acumen, and exceptional service—guide every solution, project, and client interaction. Join us and make an impact where it matters most.