This position is open to permanent residents or US citizens only. This position strategically plans and successfully executes HHSC’s Information Security Assurance roadmap. This is a key position within HHSC Information Security that manages regulatory and compliance deliverables for specific governance portfolio, assist with general risk assessment activities as well as being the SME on IT Security Assurance related topics. Plays a critical role with the development and support of the HHSC Information Security Assurance Program and developing strategy for compliance with information security regulatory requirements. Oversees the establishment, implementation, adherence to and documentation of HHSC information security policies, procedures, and processes to protect computer systems, infrastructure, and data from unauthorized access. This position is the highest level under the manager, with authority to develop strategies for compliance, security policies & procedures within 2 sections (assurance & operations) of the HHSC Information Security Assurance Program and presents these strategies to Commissioner. Employs generally accepted risk analysis and risk management methodologies to administer risk assessments on behalf of their specific governance portfolios and assist with general risk assessment and assurance functions in order to determine specific needs for security policies and procedures, and to evaluate the potential effectiveness and appropriateness of security solutions. Reviews new and modified regulatory requirements pertaining to information security to determine if new policies and procedures are needed and monitors related “best practices” and emerging security technologies for potential application. Participates in internal and external compliance and regulatory audits and implements recommended security enhancements. Guides agency users in adhering to the agency and HHS Security Policy, Guidelines and Standards, Texas Administrative Code (TAC 202), Health Insurance Portability and Accountability Act (HIPAA), and other state and federal rules and regulations. Provides information security expertise and support, in partnership with HHS agency Information Security Officers and staff, in addressing security vulnerabilities. Consults on high visibility/high risk IT projects and provides guidance to team members and information security staff on security and compliance matters. Oversees the development and delivery of appropriate information security awareness training to all members of the workforce, including employees, contractors, temporary employees, and other third parties. Initiates, facilitates, and promotes activities to foster information security awareness within the organization.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed
Number of Employees
1,001-5,000 employees