Chief Information Security, Compliance and Risk Officer/CISO
California State UniversityAbout the role
Job Title
Chief Information Security, Compliance and Risk Officer/CISO
Classification
Administrator III
Auto Req. ID
561240
Salary Range
Classification Range $6,891 - $22,119 per month
(Hiring range depending on qualifications, not anticipated to exceed $14,500 - $17,700 per month)
Work Schedule
Monday - Friday, 8:00 AM - 5:00 PM; occasional early morning, evening and/or weekend hours.
Why CSUF
California State University, Fullerton (Cal State Fullerton) is a leading public university committed to student success, academic excellence, and inclusive excellence. The university fosters a collaborative environment that supports teaching, research, and service while promoting innovation and professional growth. Cal State Fullerton is both a Hispanic-Serving Institution and an Asian American and Native American Pacific Islander-Serving Institution, and a recipient of the Seal of Excelencia (2021 and 2024) from Excelencia in Education. Joining Cal State Fullerton means becoming part of a community dedicated to advancing student achievement, career success, and economic mobility.
Department
The Division of Information Technology (IT) strives to be a strategic, innovative, and best‐in‐class IT organization that provides a leading‐edge technology environment for students, faculty, and staff to advance the University’s mission, vision, and goals. We are seeking an exceptional individual to join our IT Information Security department as the Chief Information Security, Compliance and Risk Officer/CISO (Administrator III). The ideal candidate in this role should have a positive attitude, an active, energetic mind, and a leadership style that is characterized by highly ethical practices and a commitment to inclusivity, openness, flexibility, integrity, and kindness.
Duties and Responsibilities
Reporting to the Vice President for Information Technology/Chief Information Officer (CIO), the Chief Information Security, Compliance and Risk Officer/CISO is responsible for planning, developing, implementing, and monitoring the institutional information security, privacy, digital compliance, and cyber risk programs. The position oversees the institutional cyber risk management, policy, and governance program. The CISO works collaboratively with campus partners to establish campus security standards, coordinate audit responses, and corrective actions, and oversees third-party and cloud risks. The CISO owns the cybersecurity incident response program, leads executive-level response to high-impact incidents, and provides guidance for business continuity and disaster recovery. The position establishes and reports meaningful measures of program effectiveness, directs campus-wide security, privacy, compliance, and risk awareness training and communication, and serves as a campus representative to the Cal State University (CSU) System on matters related to information security, privacy, and accessibility matters.
The Chief Information Security, Compliance and Risk Officer/CISO establishes and stewards the multi-year vision, strategy, and capability roadmap for security, privacy, compliance, and risk across the University, aligned with CSU systemwide policy, applicable regulatory frameworks, and campus strategic priorities. The position leads the Information Security and Compliance Office, investing in workforce development and service delivery, and builds the office's multi-year resource forecast, including funding, staffing, and tools. The position handles highly confidential and sensitive institutional information and may participate in emergency or crisis-management activities. Other duties as assigned.
Inclusive Leadership Statement
Inclusive Leadership Statement is required below, please be sure to address the following as a minimum. Please add additional information as you see necessary and applicable:
• What does inclusive leadership mean to you.
• A description of your experiences working with individuals with a different perspective.
• A description of how issues of inclusivity have impacted you personally or professionally.
Essential Qualifications
Bachelor's degree from an accredited four-year college or university in computer science, information systems, cybersecurity, public administration, business administration, or a related field. Eight or more years of progressively responsible experience in information security, cyber risk, or IT compliance, including significant leadership experience managing teams and programs.
Demonstrated experience setting strategic direction and roadmap for a cybersecurity, compliance, or risk program in a complex, multi-stakeholder environment. Demonstrated knowledge of information security and pri
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s