INFORMATION SECURITY OFFICER - 40009103
Durham CountyAbout the role
Join Durham County Government
Durham County Government is home to over 2,000 dedicated professionals working together to deliver essential services that strengthen and support our vibrant, diverse community. As the heart of a fast-growing region, we offer meaningful careers across a wide range of fields—giving you the opportunity to make a real impact where you live, work, grow, and play. Learn more at www.dconc.gov.
DEPARTMENT:
Information Services & Technology
DATE POSTED:
June 09, 2025
CLOSING DATE:
Until Filled
HIRING RANGE:
$115,102 - $173,000
POSITION NUMBER:
40009103
JOB TYPE:
Full-Time, (37.5 hrs)
GENERAL DESCRIPTION:
This position oversees the County’s information, cyber, and technology security. The position is responsible for developing, executing, and maintaining the County’s cybersecurity strategic plan, ensuring alignment with business objectives and regulatory requirements. The role works closely with the Director/Chief Information Officer (CIO) to establish and maintain the enterprise strategy and architecture with a multi-year roadmap to safeguard the County’s digital assets. The role directs countywide information security and privacy efforts, ensuring compliance with HIPAA (Health Insurance Portability and Accountability Act) and other regulatory frameworks while fostering a culture of cybersecurity awareness. The position requires strong leadership to drive interdepartmental compliance, integrate security best practices, and manage a high-performing security team.
DUTIES AND RESPONSIBILITIES:
- Develops and maintains an enterprise-wide information security program, including policies, procedures, and controls to protect critical data, infrastructure, and information assets.
- Works with the Director/CIO to establish and execute a multiyear cybersecurity strategy and roadmap.
- Ensures alignment of security goals with the department’s business plan, overseeing the development, execution, and updates of the cybersecurity strategic plan.
- Directs countywide information security efforts through departmental security professionals.
- Oversees Information Technology (IT) security policies, including disaster recovery, vulnerability management, and regulatory compliance.
- Coordinates and ensures compliance with HIPAA security requirements across County departments.
- Establishes continuous monitoring, auditing, and compliance reviews to safeguard County systems.
- Identifies and reports key performance metrics to measure the effectiveness of security programs.
- Leads IT security audits, including internal assessments and external compliance testing.
- Works with IT teams to implement security automation, vulnerability assessments, and risk management initiatives.
- Collaborates with the Training Officer to develop and deliver cybersecurity awareness programs.
- Other duties as required.
KNOWLEDGE, SKILLS
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s