Full-time
Information Security Risk Analyst (Operations and Policy Analyst 3 - 2 Positions) New - State of Oregon - Salem, OR

Are you an experience cyber risk manager? Do you understand quantitative verses qualitative approaches for estimating risk, risk registers, risk strategies, and risk governance? Are you an organized person with strong time management skills? Has your background provided you with a strong understanding of key compliance regulations such as HIPAA security and privacy rules, FTI rules and regulations, FISMA and Payment Card Industry (PCI), plus external current regulations within IT and identify industry standards from which to modify core IT risk processes; staying ahead of industry trends and emerging threats? Do you have strong verbal and written communication skills? If this sounds like you, come and join our dynamic team!

What you will do!
You will provide assistance to agency clients who have varying levels of technical and business expertise; make recommendations to management on business technology process changes and/or acquisitions; identify appropriate data risks; develop methods for analysis, presentation, tracking and reporting; provide support to the program on multi-agency or statewide projects; develop data that is currently unavailable, such as developing risk registers, surveys, conducting analysis assessments and security reported data incidents; develop detailed plans, goals and objectives for long-range implementation and administration of state-wide risk initiatives; and develop enterprise level (cross-agency) policies.

Unique Working Conditions Must remain current with cyber security assessment practices as well as other aspects of the profession by attending training/education sessions. May requires frequent travel, which may include overnight travel. Occasional overtime may be required to meet deadlines. Involves working with highly sensitive and/or politically sensitive agency information. Requires high level of professional integrity with regard to agency customer information. Note: The successful candidate must possess and maintain a valid license to drive issued by the state of residence or be able to provide an acceptable alternate mode of transportation.

For a complete listing of the duties and responsibilities for this position please review the position description by clicking here (Download PDF reader).

What's in it for you!
Work with a great group of fun-loving people who are passionate about ensuring that information confidentiality, integrity, and availability is maintained.

We offer full medical, vision and dental benefits with paid sick leave, vacation, personal leave and 10 paid holidays a year.
These are full-time positions that are not represented by a union.
We are filling two positions.
This recruitment may be used to fill future vacancies.
Qualifications, Required & Requested Skills
To be considered for this position you must meet the following minimum qualifications (required skills):
A Bachelor's Degree in Business or Public Administration, Behavioral or Social Sciences, Finance, Law, Political Science, Computer Science or Computer Technology with a focus on cyber security, or a related degree; AND four years professional-level evaluative, analytical and planning work.

OR

Any combination of experience and education equivalent to seven years of professional-level evaluative, analytical and planning work.
Additional Requirements
You must have or be able to obtain one or more of the following certifications within one year of being hired: Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Certified Information Security Manager (CISM) or other advanced related cyber security management certifications.

Requested Skills
While these skills are not required, candidates who are the most competitive will have the following: Experience and understanding of cyber risk management frameworks, quantitative verses qualitative approaches for estimating risk, risk registers, risk strategies, and risk governance. Strong understanding of key compliance regulations such as HIPAA security and privacy rules, FTI rules and regulations, FISMA and Payment Card Industry (PCI), plus external current regulations within IT and identify industry standards from which to modify core IT risk processes; staying ahead of industry trends and emerging threats. Strong skills in verbal and written communication, business management, business ethics, meeting facilitation, conflict management, and project management. Excellent skills in communicating effectively with technical and business partners in writing and in oral expression including making presentations. Ability to work collaboratively with technical and business partners. Possess strong organization and time management skills. The position may involve working with and protection of highly sensitive or proprietary information. The capability to be completely and comprehensively accountable for performance and results.
Additional Information To Apply Click the "Apply" button above and complete the online application. Attach a resume. Attach a cover letter. Attach Veterans' Preference documentation, if you are requesting veterans' preference. Veterans' preference information and appropriate documentation is outlined by the following website: Veterans Resources. You may also call the Oregon Department of Veterans' Affairs at 1-800-692-9666. Answer all the supplemental questions. Candidates whose training and/or experience most closely match the requirements and needs of the position will be eligible for an interview.

Finalists will be subject to a computerized criminal history check. Adverse background data may be grounds for immediate disqualification.

Applicants must be authorized to work in the United States. Applicants who require VISA sponsorship will not be considered at this time.

Questions/Need Help?
Do you have questions about the recruitment and selection process (e.g., supplemental questions, clarification of job announcement information, etc.)? Contact Rebecca Wilson, Recruitment Analyst, at Rebecca.A.Wilson@oregon.gov or call (503) 373-7655. If you need an alternate format in order to complete the application process, please contact Rebecca and be prepared to describe the alternate format needed.

If you have computer related difficulties (such as login issues, attaching documents, web browser issues, get an error message during the application process, etc.), please contact NEOGOV for assistance at 1-855-524-5627 or support@governmentjobs.com. When submitting an applicant issue please include your name, if you have an applicant ID, a valid contact number, the issue, and if possible a time when you are available to be contacted.

Job Posting Reference Number: DAS18-1140
The Department of Administrative Services is an Equal Opportunity, Affirmative Action Employer Committed to Workforce Diversity
Core benefitsMedical, vision and dental insurance Comprehensive medical, dental and vision plans for the employee and qualified family members $5,000 in employee basic life insuranceRetirement benefits
Membership in the Public Employees Retirement System (PERS)/Oregon Public Service Retirement Plan (OPSRP) Employer paid defined benefit and defined contribution programs**Effective November 1, 2016, SEIU represented employees who are Public Employee Retirement System (PERS) participating members will have their base salary increased by 6.95%. Upon becoming a PERS participating member, SEIU employees pay the employee 6% contribution to PERS.
Paid leaves and other benefits
Sick leave earned at the rate of 8 hours per a month with no maximum accumulation Vacation leave earned at a minimum rate of 8 hours per month with accrual rate increases at 5-year increments 24 hours personal leave earned each fiscal year Ten paid holidays a yearThe state also provides access to an innovative Employee Assistance Program that offers work-life counseling, along with homeowner, legal and family resources.

Optional benefits
Term life (employee, spouse or domestic partner, and dependents Long-term and short-term disability Accidental Death and Dismemberment Long-term care (self and eligible family members) Flexible spending accounts Option to enroll in the Oregon Savings Growth Plan, a deferred compensation program offering a wide variety of investment options.
The following information describes typical benefits available for employees. Actual benefits received may differ by position or branch of government or be prorated for other than full time work.

Apply for this job  or Save to My Jobs

Around the Network

Our website uses cookies. Cookies enable us to provide the best experience possible and help us understand how visitors use our website. By browsing careersinfosecurity.com, you agree to our use of cookies.