Director of Governance, Risk and Compliance
DoIT Cyber Policy and Strategy Planner Manager
Recruitment #23-004730-0002
Department | DoIT State Chief of Information Technology |
---|---|
Date Opened | 3/15/2023 11:59:00 AM |
Filing Deadline | 3/30/2023 11:59:00 PM |
Salary | $62.58 - $72.97/hour |
Employment Type |
Full-Time
|
HR Analyst | Cindy Mann |
Work Location |
Anne Arundel
|
Telework Eligible | Yes |
Introduction
The
Office of Security Management (OSM) within the Department of Information
Technology (DoIT) provides units of State and Local government with a common
strategy for secure, effective, and technically-sound use of the information
technology resources. The Office of Security Management is responsible for the
establishment of security policies, guidance, awareness, and technology to
protect the confidentiality, integrity, and availability of state data and
systems. OSM is also the source of IT security information for State agencies
and aids local government entities to improve their cybersecurity preparedness
and resiliency.
GRADE
LOCATION OF POSITION
Main Purpose of Job
MINIMUM QUALIFICATIONS
Education: A bachelor's degree from an accredited college
or university.
Experience: Three years' experience in one of the
following areas:
●
Managing
governance, risk, and compliance (GRC) programs or assessments for large
organizations.
●
Building
or using GRC platforms that align with known or established compliance
frameworks such as NIST SP 800-53, NIST CSF, CIS CSC, and ISO 27001.
●
Developing
and implementing IT and cybersecurity policy including writing and managing
updates to policies, procedures, and standards documentation.
●
Management
and execution of system assessments, risk assessments, or vulnerability
assessments, including, resolution of discovered issues and development of POAM
documentation.
DESIRED OR PREFERRED QUALIFICATIONS
Our
Preferred Candidate Will Have the Following:
Certifications - One Or More of the Following
-
Certified Information Systems Security Professional (CISSP)
-
Certified Information Security Manager (CISM)
-
Certified Information Systems Auditor (CISA) Governance of Enterprise
Information Technology (GEIT)
-
GRC Professional (GRCP) Certification
-
Certified in Risk and Information Systems Control (CRISC)
- Certification in Risk Management Assurance (CRMA)
- Project Management Institute – Risk Management
Professional (PMI-RMP)
Experience
- In Each of These Three Areas
●
Experience with regulatory and
security requirements regarding specific data types including Federal Tax
Information (FTI), Personally Identifiable Information (PII), Protected Health
Information (PHI), Payment Card Industry (PCI), and Criminal Justice
Information Systems (CJIS).
●
Experience managing cybersecurity
governance, risk, and compliance programs in Federal, State, or Local
Government organizations.
●
Experience using or developing a GRC
platform or program.
SELECTION PROCESS
Please make sure that you provide sufficient information on your application to show that you meet the qualifications for this recruitment. All information concerning your qualifications must be submitted by the closing date. We will not consider information submitted after this date. Successful candidates will be ranked as Best Qualified, Better Qualified, or Qualified and placed on the eligible (employment) list for at least one year.
EXAMINATION PROCESS
The assessment may consist of a rating of your education, training, and experience related to the requirements of the position. It is important that you provide complete and accurate information on your application. Please report all experience and education that is related to this position.
BENEFITS
Contractual employees who work for an agency and have a current employment contract of 30 or more hours a week (or on average 130 hours per month) will be eligible for subsidized health benefits coverage for themselves and their dependents. As a contractual employee, you will be responsible for paying 25% of the premiums for your medical and prescription coverage, including any eligible dependents you have enrolled. The State of Maryland will subsidize the remaining 75% of the cost for these benefits. You can also elect to enroll in dental coverage, accidental death and dismemberment insurance, and life insurance, but will be responsible to pay the full premium for these benefits.
FURTHER INSTRUCTIONS
Online applications are highly recommended. However, if you are unable to apply online, the paper application and supplemental questionnaire may be submitted to: Department of Budget and Management, Recruitment and Examination Division, 301 W. Preston St., Baltimore, MD 21201. Paper application materials must be received in our office by the closing date for the recruitment. No postmarks will be accepted.
For questions regarding this recruitment, please contact the DBM Recruitment and Examination Division at Application.Help@maryland.gov or 410-767-4850, MD TTY Relay Service 1-800-735-2258.
We thank our Veterans for their service to our country.
People with disabilities and bilingual candidates are encouraged to apply.
As an equal opportunity employer, Maryland is committed to recruitment, retaining and promoting employees who are reflective of the State's diversity.
For education obtained outside the U.S., a copy of the equivalent American education as determined by a foreign credential evaluation service must be provided prior to hire.
Click on a link below to apply for this position:
Fill out the Supplemental Questionnaire and Application NOW using the Internet. | ![]() |
View and print the Supplemental Questionnaire. | This recruitment requires completion of a supplemental questionnaire. You may view and print the supplemental questionnaire here. |
Apply via Paper Application. | You may also download and complete the Paper Application here. |