Information Security Officer #00111 (State Employee only)

Virginia Information Technologies AgencyRichmond, VA
$145,000Onsite

About The Position

The Information Security Officer (ISO) serves as SCHEV’s senior authority on information security, technology governance, and compliance with statewide IT standards. This position is responsible for developing, implementing, and maintaining security controls that protect the confidentiality, integrity, and availability of SCHEV’s systems, applications, networks, and data. The ISO ensures agency-wide alignment with Commonwealth of Virginia (COV) information security and technology policies, oversees the security components of application design, and manages agency participation in mandatory audits and risk assessments. The ISO leads incident response activities, conducts business impact analyses and system sensitivity assessments, and coordinates corrective action plans for audit findings. The position administers account lifecycle security, monitors risk associated with software requests, and ensures agency staff receive ongoing cybersecurity awareness and training. In addition to serving as the chief security officer, the ISO also functions as SCHEV’s designated Agency Information Technology Resource (AITR). In this role, the ISO leads IT strategic planning, manages SCHEV’s technology investment portfolio, evaluates and coordinates IT procurements, oversees contractor and VITA-related billing, ensures compliance with statewide standards, and facilitates communication between VITA, vendors, and agency leadership. The ISO develops IT policies and continuity planning components, coordinates telecommunications services, and ensures agency technology systems and investments support SCHEV’s mission, strategic plan, operational requirements, and regulatory obligations. Through these responsibilities, the ISO ensures SCHEV maintains a resilient, secure, compliant, and efficient technology environment aligned with the needs of the agency and the Commonwealth.

Requirements

  • Extensive understanding of information technology, including systems, networks, databases, telecommunications, storage systems, and practical applications that support agency operations.
  • Experience in IT operations, IT security, and/or VITA relationship management.
  • Knowledge of practices and tools for the effective planning, control and management of information systems technology.
  • Demonstrated ability to provide innovative and creative business solutions to changes in integrated systems technology and software applications.
  • Demonstrated knowledge of information systems management practices, security controls, and tools for the planning, management, and oversight of information technology systems.
  • Experience demonstrating the ability to develop, manage, and use diverse technologies; provide technical and business support to staff; and deliver program training to diverse stakeholders of varying levels of technical expertise.
  • Knowledge of and experience with information systems technology and database management.
  • Excellent written and verbal communication skills, with the ability to work collaboratively with agency users, leadership, and external partners.
  • Experience demonstrating the ability to promote innovation, teamwork/consensus-building, and provide customer service to diverse professionals and stakeholders.
  • Strong analytical and problem solving skills, including the ability to manage and prioritize multiple tasks and projects effectively.

Nice To Haves

  • Familiarity with multiple programming languages or complex computer operations.
  • A work history demonstrating considerable information systems management experience within the Commonwealth of Virginia.
  • Budget experience demonstrating the ability to monitor and track program budget expenditures and procurement activities.
  • Certification as a VITA Certified Information Security Officer.
  • Experience coordinating with external IT service providers, including VITA, hosting providers, and contractors.
  • Experience developing IT strategic plans, continuity plans, or security program components.
  • Experience conducting or supporting IT audits, risk assessments, incident response, and business impact analyses.

Responsibilities

  • Develop, implement, and maintain security controls that protect the confidentiality, integrity, and availability of SCHEV’s systems, applications, networks, and data.
  • Ensure agency-wide alignment with Commonwealth of Virginia (COV) information security and technology policies.
  • Oversee the security components of application design.
  • Manage agency participation in mandatory audits and risk assessments.
  • Lead incident response activities.
  • Conduct business impact analyses and system sensitivity assessments.
  • Coordinate corrective action plans for audit findings.
  • Administer account lifecycle security.
  • Monitor risk associated with software requests.
  • Ensure agency staff receive ongoing cybersecurity awareness and training.
  • Lead IT strategic planning.
  • Manage SCHEV’s technology investment portfolio.
  • Evaluate and coordinate IT procurements.
  • Oversee contractor and VITA-related billing.
  • Ensure compliance with statewide standards.
  • Facilitate communication between VITA, vendors, and agency leadership.
  • Develop IT policies and continuity planning components.
  • Coordinate telecommunications services.
  • Ensure agency technology systems and investments support SCHEV’s mission, strategic plan, operational requirements, and regulatory obligations.

Benefits

  • State employee benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service