Director IS Security Job in Houston 77001, Texas US
I. Job Summary
Responsible for all aspects of information systems security for Waste Management and ensures the protection of information processed, stored or transmitted. Provides guidance and leadership for the Compliance Review Team on issues concerning information protection and data privacy. Establishes and coordinates Information Security initiatives to ensure compliance with Federal and State regulatory requirements and changing legislation. Manages internal Computer Forensics Lab. Coordinates and conducts forensic investigations of electronic information media in support of internal and external security investigations, litigation, and information systems and networks incident response.
II. Essential Duties and Responsibilities include the following. To perform this job successfully, an individual must be able to perform the essential duties satisfactorily. Other minor duties may be assigned and may vary by department.
- Recommends, defines develops policies, procedures, standards and guidelines for protection of Waste Management Information and Information Technology Resources.
- Develops, reviews, publishes information security policies, procedures, standards and guidelines, participate in assessments of implementations and audit reviews.
- Analyzes regulations and legislation, recommends plans and actions to ensure Waste Management compliance.
- Provide assessments to and coordinates/supports reviews with Compliance Review Team, Audit and IT Support teams.
- Manages internal Computer Forensics Lab. Coordinates and conducts forensic investigations of electronic information media in support of internal and external security investigations, litigation, and information systems and networks incident response.
- Establishes a company wide Security Awareness Training program
- Develops and conducts Security Awareness training for key teams, business units and general users of Waste Management IT Resources.
- Updates "new hires" security materials, code of conduct and privacy materials, and Corporate Governance Material Security.
- Develops Corporate Security Budgets and reports; Analyzes and tracks actual expenditures vs budget, reviews and submits monthly accruals.
III. Supervisory Responsibilities
The highest level of supervisory skills required in this job is management through one or more managerial levels. This includes:
- Direct supervision of full-time employees including management and individual contributor positions
- Indirect supervision of full-time employees
IV. Qualifications
The requirements listed below are representative of the qualifications necessary to perform the job.
A. Education and Experience
Required: Bachelor Degree in Information Technology and ten or more years previous experience including at least three to four years in Computer Technology Forensics, Analysis, Investigation Program Management. Experience in Program development for Strategic Security Plans and Security Awareness.
Preferred: Masters Degree in Information Technology
B. Certificates, Licenses, Registrations or Other Requirements
CISSP or CISM, CCE (forensics)
C. Other Knowledge, Skills or Abilities Required
- Proven business acumen
- Strong interpersonal skills
- Extensive work experience
- Solid IT credentials/certifications
- IT compliance expertise
- Hands-oneDiscovery experience
- Previous expert witness testimony
- Advanced degree or equivalent training
May also require in depth skills in one or more of the following: technical software development and deployment, employee management, program and project management, budget development and monitoring, organizational change and development.
V. Work Environment
Listed below are key points regarding environmental demands and work environment of the job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the job.
· Required to use motor coordination with finger dexterity (such as keyboarding, machine operation, etc) most of the work day;
· Required to exert physical effort in handling objects less than 30 pounds part of the work day;
· Required to be exposed to physical occupational risks (such as cuts, burns, exposure to toxic chemicals, etc) rarely;
· Required to be exposed to physical environment which involves dirt, odors, noise, weather extremes or similar elements rarely;
· Normal setting for this job is an office setting.