As the state’s IT leader, DoIT manages information technology and telecommunications services and provides critical support to state agencies, the Executive Office of the Governor, coordinating offices, and independent Executive Branch agencies. The agency provides cybersecurity, digital, data governance, AI enablement, infrastructure, and platform services to its partner agencies, ensuring the State of Maryland is more secure, productive, and accessible. GRADE STD 0025 LOCATION OF POSITION 100 Community Place, Crownsville, MD 21032 Main Purpose of Job The Cybersecurity Risk Management Manager is an integral part of the Maryland Department of Information Technology (DoIT) leadership team. This position will lead and oversee the development and implementation of a centralized cybersecurity risk management framework across all State Executive Agencies. The Cybersecurity Risk Management Manager will drive the standardization of cybersecurity risk practices, ensure compliance with federal standards and guidelines, and establish a robust third-party risk management program. Will architect and build from scratch a statewide cybersecurity risk management framework in a highly ambiguous environment, aligning with NIST 800-53, NIST 800-37 (RMF), and NIST CSF. This role will work closely with agency stakeholders to assess risk, implement mitigation strategies, and create a continuous monitoring structure to provide real-time visibility into cyber risk posture for state leadership. This position will also lead the development and execution of risk governance processes, coordinate risk assessments and reporting, and support the implementation of enterprise-wide cybersecurity initiatives aligned with federal and other relevant standards. This is a management service position which serves at the pleasure of the appointing authority
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Manager