Airport Assistant General Manager, Chief Information Security Officer (CISO)

GA, United States

City of Atlanta

View company page

 

General Description & Classification Standards:

The Chief Information Security Officer (CISO) is a pivotal executive role within the Information Technology (IT) department, directly reporting to the Chief Information/Technology Officer. The CISO is responsible for leading the organization's information security efforts, ensuring the confidentiality, integrity, and availability of data and systems. This role requires a deep understanding of cybersecurity principles, regulatory compliance, risk management, and effective leadership to safeguard the organization against cyber threats.

 

Essential Duties & Responsibilities:

·        Cybersecurity Strategy:

o   Develop and implement a comprehensive cybersecurity strategy aligned with the Department of Aviation (DOA) objectives and industry best practices.

·        Risk Management:

o   Identify, assess, and prioritize cybersecurity risks, and develop risk mitigation strategies to protect the organization's assets.

·        Regulatory Compliance:

o   Ensure compliance with relevant regulations, laws, and standards pertaining to information security, such as FAA, TSA, GDPR, PCI-DSS.

·        Incident Response:

o   Establish and maintain an incident response plan, including protocols for detecting, responding to, and recovering from cybersecurity incidents.

·        Security Awareness:

o   Oversee security awareness training programs to educate employees about cybersecurity best practices and promote a culture of security.

·        Security Governance:

o   Establish and enforce security policies, standards, and procedures to safeguard information assets and maintain regulatory compliance.

·        Vendor Risk Management:

o   Assess and manage cybersecurity risks associated with third-party vendors and service providers.

·        Security Operations:

o   Oversee security operations, including monitoring, threat intelligence, vulnerability management, and security infrastructure management.

·        Modern Cybersecurity:

o   Understand and support DevSecOps practices.

o   Implement the Zero-Trust methodology.

o   Apply Artificial Intelligence (AI) cybersecurity practices where appropriate.

·        Executive Leadership:

o   Provide strategic guidance and leadership to the IT security team, ensuring alignment with organizational goals and objectives.

 

Minimum Qualifications:

·        Education and Experience:

o   Bachelor's degree in information technology or cybersecurity or a related field and a minimum of 10 years’ experience in information security, with progressive leadership responsibilities 

or 

o   A minimum of 15 years’ experience in information security, with progressive leadership responsibilities without an equivalent degree (equivalent professional experience may be considered for substitution for the required degree on an exception basis).

o   Proven track record of success in developing and implementing cybersecurity strategies in medium to large organizations.

o   Strong understanding of cybersecurity frameworks such as NIST, ISO 27001, etc.

·        Leadership and Communication:

o   Significant experience as an IT leader in medium to large organizations.

o   Demonstrated ability to incorporate core values of integrity, collaboration, accountability, respect, and excellence (ICARE).

Preferred Qualifications:

·        Advanced Education and Experience:

o   Master's degree in information technology or cybersecurity.

·        Communication and Collaboration Skills:

o   Excellent communication skills with the ability to effectively communicate complex cybersecurity concepts to non-technical stakeholders.

·        Experience with Emerging Technologies:

o   Experience with emerging technologies such as cloud computing, IoT, AI, and their implications for cybersecurity.

·        Certifications:

o   Relevant industry certifications such as CISSP, CISM, CISA, or similar.

Essential Capabilities and Work Environment

Required physical, lifting, and sensory capabilities are requirements to perform the job successfully. Typical environmental conditions associated with job.

Overall Responsibility Statement:

·        These are typical responsibilities for this position. The listed responsibilities should not be construed as exclusive or all inclusive. May perform other duties as assigned.

 

It is the policy of the City of Atlanta (“COA”) that qualified individuals with disabilities are not discriminated against because of their disabilities regarding job application procedures, hiring, and other terms and conditions of employment. It is further the policy of the COA to provide reasonable accommodations to qualified individuals with disabilities in all aspects of the employment process. The COA is prepared to modify or adjust the job application process or the job or work environment to make reasonable accommodations to the known physical or mental limitations of the applicant or employee to enable the applicant or employee to be considered for the position he or she desires, to perform the essential functions of the position in question, or to enjoy equal benefits and privileges of employment as are enjoyed by other similarly situated employees without disabilities, unless the accommodation will impose an undue hardship. If reasonable accommodation is needed, please contact the Human Resources Director for your department.

 The City of Atlanta is an Equal Opportunity Employer and does not unlawfully discriminate on the basis of race, color, religion, age, disability, sex, sexual orientation, ender identity, marital status, veteran’s status or national origin, or any other basis prohibited by federal, state, or local law.  We value and encourage diversity in our workforce.

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Artificial Intelligence CISA CISM CISO CISSP Cloud Compliance DevSecOps GDPR Governance Incident response ISO 27001 Monitoring NIST Risk management Strategy Threat intelligence Vulnerability management

Region: North America
Country: United States
Job stats:  14  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.