Information Security Officer (Administrator III) - Information Technology Services
California State UniversityAbout the role
Working Title
Information Security Officer
Administrator Level
This position is an Administrator III in the California State University Management Personnel Plan (MPP), reporting to the AVP and Chief Information Officer of Information Technology Services
SF State University
San Francisco State is an Equal Opportunity Employer and does not discriminate against persons on the basis of race, religion, color, ancestry, age, disability, genetic information, gender, gender identity, gender expression, marital status, medical condition, National origin, sex, sexual orientation, covered veteran status, or any other protected status. Reasonable accommodations will be provided for qualified applicants with disabilities who self-disclose by contacting the Senior Human Resources Manager.
Applicants may visit titleix.sfsu.edu for more information on SF State's policy prohibiting discrimination, and how to file an online report using the procedures under Executive Order 1096 Revised. Inquiries can be directed to the campus Title IX Coordinator and Discrimination, Harassment, and Retaliation Administrator by calling (415) 338-2032 or emailing vpsaem@sfsu.edu.
San Francisco State is a 100% Smoke/Vapor-Free Campus. Smoking or Vaping of any tobacco/plant-based substance is not permitted on any University properties.
The person holding this position may be considered a "mandated reporter" under the California Child Abuse and Neglect Reporting Act and is required to comply with the requirements set forth in CSU Executive Order 1083 as a condition of employment.
This position may be a "designated position" in the California State University's Conflict of Interest Code. The successful candidate accepting this position may be required to file Conflict of Interest forms subject to the regulations of the Fair Political Practices Commission.
Department
Information Technology Services
Appointment Type
At-Will
Time Base
Full-Time
Work Schedule
Monday through Friday; from 8:00 am to 5:00 pm
Anticipated Hiring Range
$12,915.00 - $13,500.00 Per Month ($154,980.00 - $162,000.00 Annually)
Salary is commensurate with experience.
Position Summary
Under the general direction of the AVP and Chief Information Officer (CIO) and coordinating with the other Directors/Managers in Information Technology Services (ITS), the Director of Information Security and Information Security Officer (ISO) will coordinate and lead the Information Security Team at SF State. The incumbent will act as the SF State’s information security and privacy representative with respect to inquiries from customers, partners, and the public regarding SF State’s information security and privacy strategy; act as liaison to law enforcement agencies while pursuing the sources of network attacks and information thefts; balance security needs with the SF State’s strategic business plan, identify risk factors, and determine solutions to both; develop security and privacy policies and procedures that provide adequate business application protection without interfering with core business requirements; plan and test responses to security breaches, including the discussion of the event with customers, partners, or the public; oversee the selection, testing, configuration, deployment, and maintenance of security products; oversee a staff of employees responsible for security operations.
Position Information
Information Security Operation
- Manage an information security operational program that contains administrative, technical and physical safeguards designed to protect SF State information assets
- Document, and provide direction for mitigation of incidents involving SF State information assets
- Manage, develop and present security awareness training programs
- Manage incidents involving SF State information assets
- Facilitate and direct a campus vulnerability management program; manage and oversee the process of gathering, analyzing and assessing the current and future threat landscape, as well as providing a realistic overview of risks and threats in the enterprise environment
- Provide regular executive level status reports on campus breaches, incidents, compliance, and other information security metrics
- Work with campus leadership, Enterprise Risk Management, and legal counsel to provide primary lead activities in supporting CO and campus litigation processes, forensic activities, eDiscovery and security audits
- Plan, manage, and
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s