Chief Information Security And Privacy Officer
Company: Fayetteville State University
Job Location: Fayetteville, North Carolina
Category: IT Manager/Director
Type: Full-Time
Position Number: 008178
Time Limited Position: No
Number of Vacancies: 1
Department: ITS
Posting Number: 0401864
Primary Purpose of the Organization:
The mission of the Division of Information Technology Services is to explore, implement, maintain, and support the uses of technology to achieve Fayetteville State University's (FSU) academic and administrative objectives effectively and efficiently as stated in the University's strategic plan.
Primary Purpose of the Position:
The Chief Information Security & Privacy Officer (CISPO) reports directly to the Vice Chancellor for Information Technology Services & Chief Information Officer and leads the Information Security Office. This role oversees information security governance, risk, compliance (GRC), policy, training, incident detection, and response for Fayetteville State University. The CISPO ensures alignment with security and privacy standards, managing breach recovery and collaborating with IT staff and campus departments on security needs. Responsibilities include GRC oversight, operational security, budgeting, strategic planning, and vendor management. The CISPO works closely with IT services, campus divisions, and extensively with Legal, Audit, Risk, and Compliance (LARC).
Minimum Education And Experience Requirements:
- A Bachelor's degree from an appropriately accredited institutions
- At least five years of progressive responsibility, including supervising staff and leading security teams.
- Certified Information Systems Security Professional or the ability to obtain within 12months if hired.
- Experience with or knowledge of COBIT, ISO, ITIL, CMS, NIST, and other standards.
- Working knowledge and experience in the policy and regulatory environment of information security, particularly in higher education. Must be a leader who can influence stakeholders in written and oral communications.
Knowledge, Skills And Abilities:
- Excellent written and oral business communication skills
- Outstanding organizational, analytical, and troubleshooting skills
- Demonstrated project management skills/ experience
- Demonstrated ability to meet scheduled deliverables and commitments while juggling multiple projects and tasks
- Knowledge and experience with networking concepts, protocols, and services
- Knowledge and experience in setup, maintenance, and security of Windows operating systems
- Demonstrates skill in technical problem determination and analyzing system specifications
- Knowledge and experience in setup, maintenance, and security of Unix operating systems
Preferred Qualifications:
- More than five (5) years of progressively responsible experience working within multiple areas of information security.