Job Description
Job Title: Information Technology Security Officer
Company: Vaco
Location: Wooster, OH
Pay: $115000 – 130000 per year
AI Pay Analysis: The hourly rate for an Information Technology Security Officer in Wooster, OH, translating to an annual salary of approximately $115,000 to $130,000, is competitive and aligns well with industry standards for similar roles in this region. According to various salary surveys and industry reports, the average salary for an IT Security Officer in Ohio generally falls within the range of $100,000 to $125,000, depending on factors such as experience, certifications, and the specific responsibilities of the role. Additionally, considering the growing demand for cybersecurity professionals nationwide, this compensation reflects the importance of the role in protecting organizational data and assets, making it a robust offering in the context of both local and national job markets.
Job description:
The Information Technology Security Officer (ITSO) is responsible for the strategic planning, development, and administration of an effective information security program. This pivotal role within the Information Technology department aims to enhance and communicate the maturity levels of information security, assess the state of cybersecurity, and implement IT risk management practices across the organization.
Duties and Responsibilities:
- Coordinate the continuous development, implementation, and revision of security and privacy policies, standards, guidelines, baselines, processes, and procedures, ensuring compliance with local, state, and federal regulations, as well as international standards.
- Investigate, document, report, and mitigate all security incidents in accordance with regulatory standards and industry best practices.
- Proactively identify and address IT risks to safeguard organizational assets.
- Respond to and remediate concerns identified by third-party auditors or examiners.
- Assist in the creation of periodic reports and dashboards to convey compliance levels and the current IT risk posture.
- Serve as a liaison to the leadership team and Compliance/HIPAA privacy officer, ensuring adherence to state and federal guidelines, particularly HIPAA/HITECH, ACHA, PCI, and FDA security regulations.
- Develop and/or review technical information and security policies, procedures, and guidelines to align with regulatory standards and industry best practices.
- Oversee the enforcement of policies and procedures governing system security administration and user access, based on regulatory standards and industry best practices.
- Act as a security advisor and provide training to IT staff and other business units regarding security-related risks and issues.
- Stay informed of security-related research, trends, and analyses, incorporating findings into company practices, policies, and procedures.
- Maintain security-related certifications with a focus on healthcare.
- Establish policies to ensure the implementation of controls safeguarding all company assets, including network, systems, and data. Monitor security efforts to ensure outcomes are validated and documented.
- Ensure compliance with penetration testing and security scanning protocols.
- Participate in data identification and registry processes to classify data types and formulate policies for safeguarding datasets, which include Backup, Retention, and Disaster Recovery strategies.
- Collaborate with the IT Director to interview, hire, and train new employees within the IT Department.
- Supervise direct reports by establishing performance goals and expectations, conducting evaluations, and managing work assignments.
- Conduct risk assessments and manage regulatory attestation as required, including but not limited to PCI, HIPAA, and FDA.
- Serve as the Company’s HIPAA Security Officer, performing duties as outlined in the HIPAA Compliance Manual.
Required Skills:
- In-depth knowledge of healthcare regulatory requirements and best practices for managing, analyzing, and monitoring the security of an enterprise server and network environment.
- Strong functional and technical expertise in information security capabilities.
- Exceptional problem-solving skills with analytical capability.
- Ability to work efficiently, prioritize shifting demands, and multitask in a dynamic environment.
- Outstanding verbal and written communication skills, with the ability to instill confidence and convey information clearly and effectively at all organizational levels.
- Discretion in exercising judgment and maintaining confidentiality of sensitive information.
- Proven capacity to educate others on security and threat mitigation strategies.
- High level of interpersonal skills to engage effectively with all levels of the organization.
- A Bachelor’s degree in Information Systems and Security or a related field is required, along with equivalent experience in the domain of Information Security.
- A minimum of 5 years of experience with networking concepts, protocols, and services is required.
- A minimum of 5 years of experience in the setup, maintenance, and security of Windows and Unix/Linux operating systems is required.
- CISSP or an equivalent security certification is preferred.
Job Posting Date: Tue, 18 Mar 2025 04:19:22 GMT
Apply now!