Jobs
>
Ames

    Information Security Officer - Ames, United States - Greater Iowa Credit Union

    Default job background
    Description

    We are currently seeking an Information Security Officer to lead the organization's information security program to protect the organization's information from unauthorized access, modification, disclosure, and destruction. Activities include assessing information security risks, developing information security policies and plans, ensuring an appropriate level of organizational information security awareness, and working across the organization to implement information security controls. This position reports to the Vice President of Information Technology and participates in applicable committees.

    **Hours:** Monday - Friday 8am to 5pm, occasionally evenings for monthly board meetings.

    **Location:** 1509 Baltimore Drive, Ames, IA 50010; the opportunity to work remote on occasions.

    **Essential Functions & Responsibilities:**

    Program Leadership. Protects the confidentiality, availability, and integrity of GICU information and technology systems through administrative, technical, and physical controls. Writes and proposes policies, processes, standards, and procedures to reduce information security risk and meet regulatory requirements. Builds and maintains an information security catalog with cross-references to information security program regulatory requirements, contractual requirements, and information security frameworks. Assess information security capabilities against frameworks. Prepares and presents monthly, quarterly, and annual information security reports as directed. Participates in applicable committees as assigned.

    Risk and Compliance. Performs risk assessments, including assessing third parties, to identify information security risks including inherent and residual risk levels. Maintains an information security risk register and tracks risk remediation activities and risk acceptance decisions. Collaborates with the Risk Manager to identify regulatory requirements, perform regulatory compliance gap assessments, and develop processes and procedures for assessing third-party information security risk. Collaborates with Information Technology team members to assess information security risks for new technologies and services, and proposes information security controls to reduce risk. Reviews proposed changes for risks to system functionality and information security controls. Collaborates with system owners and administrators to implement common and application level information security controls. Reviews contracts for information security requirements and assesses whether requirements on both parties is appropriate.

    Audit, Assessment, and Exam Coordination. Coordinates regular information security assessments by outside parties to assess the security of company's information systems including, but is not limited to, penetration testing, general controls assessments, and vulnerability assessments performed by outside parties. Receives and responds to information security questionnaires from outside parties. Performs self-assessments and leads response activities for internal and external audits and exams.

    Vulnerability Management. Develops and maintains vulnerability management plans to continuously assess and remediate information system vulnerabilities, and threat management plans for the continuous identification of, and response to, internal and external threats. Performs vulnerability assessments and prioritizes vulnerability remediation activities. Collaborates with system owners to remediate vulnerabilities.

    Incident Response. Develops and maintains information security incident response plans and processes. Leads information security incident response activities and exercises. Investigates and reports information security incidents.

    Disaster Recovery Planning. Develops and maintains information technology disaster recovery plans and processes including identification of critical systems with recovery time objectives (RTOs) and recovery point objectives (RPOs). Performs business impact assessments to determine business impact resulting from information system outages and maximum tolerable downtimes (MTDs). Coordinates disaster recovery exercises.

    Information Security Awareness. Administers an information security awareness training and assessment program, including identification of training topics, creation of training materials, and testing and assessment activities.

    Continuous Learning. Participates in continuous learning activities to stay abreast of information security threats, trends, technologies, and best practices. Researches, evaluates, and recommends information and building security systems and technologies.

    Performs other related duties as assigned.

    **Knowledge and Skills**

    Experience: Eight years of combined experience in information technology, information security, information technology audit, risk management, or similar field.

    Experience assessing and reporting information security risks

    Experience developing information security plans and policies

    Experience working with auditors and/or examiners

    Experience working with information technology practitioners to implement system controls

    Financial institution experience preferred

    Education: Associate degree in information technology, information security, risk management, or similar field. Bachelor's degree preferred.

    CISSP, CISM, CRISC, CISA, CGEIT or similar certification preferred.

    Interpersonal Skills

    Work frequently involves exercising advanced conflict resolution, giving material presentations, and resolving issues impacting multiple departments or divisions. Role also requires the ability to motivate or influence others as a material part of the role, with a significant level of diplomacy and trust. Obtaining cooperation (internally and/or externally) is an important part of the role and a high level of interpersonal skills is critical to the success of this position.

    Other Skills

    1. Expert knowledge of information security principles, concepts, and best practices

    2. Broad general knowledge of information technology including terminology

    3. Strong ability to communicate effectively and build relationships

    4. Strong ability to write clear and effective policies, processes, and procedures

    5. Strong ability to assess and communicate risks related to information systems

    6. Strong knowledge of disaster recovery concepts and practices

    7. Ability to lead audit and exam response activities including evidence collection

    8. Knowledge of FFIEC IT Exam Manual preferred

    Physical Requirements

    The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

    While performing duties of this job, the employee is regularly required to sit, stand, walk and manipulate (life, carry, move) light to medium weights of 10-50 pounds. Requires good hand-eye coordination, arm, hand and finger dexterity, including ability to grasp, and visual acuity to use a keyboard, operate equipment and read technical information.

    Work Environment:

    Work is performed in a standard office environment with a quiet to moderate noise level. Will travel to other branches as needed. The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

    *Greater Iowa is an Affirmative Action, Equal Opportunity Employer (AA/EOE). All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.*

    Location (city, state or zip code) You must select a location. Education status You must select an education stat


  • Titan Industries

    Security Officer

    2 weeks ago


    Titan Industries Hawkeye, IA, United States Freelance

    **Company Description** · Every day, our over **21,000 heroes of everyday life** ensure that people in Germany feel safer. At Securitas, we take care of you - because you take care of the safety of others. · For our client in the cultural sector, we are currently looking for a ** ...

  • Horizon Group

    Security Officer

    2 weeks ago


    Horizon Group Alleman, IA, United States Freelance

    Company Description · We stand for security in Berlin and Brandenburg. · As an experienced security company, we offer our customers in Berlin and the surrounding area various services in the areas of object protection, personal protection, event security, and our city patrol. Cle ...


  • Iowa State University Ames, United States

    The Department of Public Safety at Iowa State University is seeking candidates for a Public Safety Officer. Under general supervision, patrols assigned area on foot to ensure protection of students, faculty, staff and visitors, as well as property an Security Officer, Public Safe ...


  • Phoenix Innovations Alleman, United States

    *Internal job posting - no temporary employment* Do you want to contribute to creating an attractive work environment in the Sales Backoffice department? As part of our sustainable growth-oriented corporate strategy, we are looking for an Assistant CSO (m/f/d) INTERN to join our ...

  • Trinity Health

    security officer

    2 weeks ago


    Trinity Health , IA, United States

    Trinity Health - 250 Mercy Dr [Safety Officer / Security Guard] As a Security Officer at Trinity Health, you'll: Perform various Safety/Security related duties for the protection of people and property in accordance with Hospital security post orders, rules, regulations, procedur ...

  • American Security & Investigations

    Security Officer

    5 days ago


    American Security & Investigations South Des Moines, United States

    Overview · American Security has been delivering 'peace of mind' to our customers for over 45 years We are an innovative team of safety and security professionals that bring a customer service mindset to all of our duties. Our reputation has been built on customer responsiveness ...

  • Allied Universal

    Security Officer

    1 week ago


    Allied Universal Urbandale, United States

    Job Description · Allied Universal has security jobs and are seeking to fill the position of a Security Flex Officer . · The Security Flex Officer is responsible for the safety and security of the facilities they protect. A Security Flex Officer acts as a visible deterrent to ...


  • Quantum Ventures Ames, United States

    About the Company · We are an engineering and environmental planning office that has specialized in the field of energy transition in Germany in recent years. We provide engineering and services for operators, planners, and executing construction companies in the planning, implem ...


  • Sapphire Solutions Ames, United States

    Customer Service Manager E-Commerce (m/w/d) WE ARE LOOKING FOR YOU AS A CUSTOMER SERVICE MANAGER E-COMMERCE (m/w/d) IN GRONAU (FULL-TIME) WHAT AWAITS YOU: a respectful working atmosphere in a healthy family-owned company with a secure job an exciting and varied job in an open-min ...


  • American Security & Investigations Des Moines, United States

    Special Event Security Officer at American Security & Investigations · Shift: Mon-Thurs 1st and 2nd shifts (Temporary Position) · Hourly Rate: $20.00 · Location: Des Moines, IA · Requirements: · You must be 18 years old. · For safety reasons, you must be able to speak English. ...


  • Eurofins Food & Water Testing UK & IE Ltd Des Moines, United States

    **Business Information Security Officer - BISO** · * Lee's Summit, MO, USA · * Full-time · **Company Description** · Eurofins Scientific is an international life sciences company which provides a unique range of analytical testing services to clients across multiple industries. T ...


  • 1st Class Security, Inc Altoona, United States

    Job Description · Job DescriptionImmediate Opening for a Fulltime or Part-Time Loss Prevention Officer in Altoona, IA · Job Description: · - Identify shoplifters thru floor patrol and through the use of Closed Circuit TV · - Report writing · - Interacting with local law enforceme ...


  • 1st Class Security, Inc Des Moines, United States

    Job Description · Job DescriptionImmediate Opening for a Full-Time Loss Prevention Officer in Des Moines, IA · Job Description: · - Identify shoplifters thru floor patrol and through the use of Closed Circuit TV · - Report writing · - Interacting with local law enforcement agenci ...


  • American Security & Investigations Des Moines, United States

    Job Description · Special Event Security Officer at American Security & Investigations · Shift: Mon-Thurs 1st and 2nd shifts (Temporary Position) · Hourly Rate: $20.00 · Location: Des Moines, IA · Requirements: · You must be 18 years old. · For safety reasons, you must be able ...


  • Per Mar Security Services Des Moines, United States Full time

    Overview · Work with the best Per Mar Security, an industry leader in providing integrated security solutions, is seeking hardworking motivated people. · Established in 3, Per Mar Security Services is the largest, family-owned, full-service security company in the Midwest with ...


  • Apex Ventures Hawkeye, IA, United States Freelance

    **For our renowned client in Hamburg, we are looking for a telephone customer service representative inbound (m/f/d).** · **Your responsibilities**: · - Providing telephone advice and support to customers and prospects regarding statutory health insurance and dental supplementary ...


  • Trinity Health , IA, United States Part time

    Trinity Health th St SW [Safety Officer / Security Guard] As a Security Officer at Trinity Health, you'll: Perform various Safety/Security related duties for the protection of people and property in accordance with Hospital security post orders, rules, regulations, procedures and ...


  • Availa Des Moines, United States

    SVP Risk Management and Information Security Officer · SVP Risk Management and Information Security Officer · Council Bluffs , IA · / Fort Dodge , IA · / Ames , IA · The SVP Risk Management and Information Security Officer (ISO) ensures · that appropriate systems are develo ...

  • Nexus Innovations

    Solderer (m/f/d)

    2 weeks ago


    Nexus Innovations Roland, IA, United States Freelance

    "Stay one step ahead We are looking for you as a solderer (m/f/d) for a long-term assignment with the best chance of being hired by our renowned client. · **Your tasks will include**: · - Assembly of circuit boards according to assembly plans and parts lists · - Hand soldering of ...


  • Axia Women's Health Upper Providence Township, United States

    **At** Axia Women's Health,** our vision is to lead the way in improving women's health. At the core of achieving this is a caring, connected, and progressive community of 500 providers across nearly 200 women's health centers in New Jersey, Pennsylvania, Indiana, Ohio, and Kentu ...