- Company Name
- Elegant Enterprise-Wide Solutions, Inc.
- Job Title
- Information Security Officer/Subject Matter Expert
- Job Description
-
**Job Title:** Information Security Officer / Subject Matter Expert
**Role Summary:**
Lead the development, implementation, and continuous improvement of an organization’s information security program. Ensure compliance with regulatory standards, manage risk, oversee vulnerability remediation, and drive security awareness while coordinating cross‑functional teams and reporting to senior leadership.
**Expectations:**
- Maintain and report on security control adoption metrics.
- Ensure timely remediation of identified vulnerabilities.
- Deliver secure system architectures and incident response capabilities.
- Manage multiple cybersecurity projects to schedule, budget, and quality targets.
- Serve as primary liaison for client and stakeholder security inquiries.
**Key Responsibilities:**
- Develop, track, and report metrics on security control adoption and effectiveness.
- Review, update, and enforce security policies against regulatory and organizational standards (ISO 27001, NIST, etc.).
- Conduct vulnerability assessments, prioritize remediation, and coordinate with stakeholders.
- Participate in Authorization to Operate (ATO) assessments and ensure compliance.
- Design and implement secure system architectures and incident response plans.
- Lead security awareness training programs for all employees.
- Prepare and present security status reports to management and external stakeholders.
- Maintain comprehensive security documentation and resource allocation plans.
- Create strategic roadmaps, business cases, and service delivery plans for new cybersecurity initiatives.
**Required Skills:**
- Strong knowledge of ISO 27001, NIST CSF, and other information security frameworks.
- Proven experience with security technologies, risk management, incident response, and compliance.
- Excellent analytical, problem‑solving, and detail‑orientation abilities.
- Effective written and verbal communication; ability to translate technical concepts to non‑technical audiences.
- Project management expertise: planning, scheduling, monitoring, and closing cybersecurity projects.
- Ability to coordinate cross‑functional teams and manage multiple initiatives simultaneously.
- Familiarity with federal, state, and local information security and privacy regulations.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (required).
- Advanced degree or professional certifications preferred: CISSP, CISM, CISA, CompTIA Security+, CISSO, or equivalent.
- Minimum 5 years of information security management or IT administration experience; at least 3 years in cyber assessment, remediation planning, and cyber defense operations.
Crownsville, United states
On site
Mid level
17-03-2026