Job Information
TEXAS DEPARTMENT OF TRANSPORTATION C088 Senior Information Security Architect in Austin, Texas
Performs highly advanced information security analysis work. Work involves defining information security standards and ensuring compliance across solutions, managing integration of services across departments and technologies and maintaining agency wide information security risk management program. Position is responsible for planning, implementing and monitoring security measures using the NIST Risk management framework and Texas security frameworks for information systems and department infrastructure. Reports to the Information Security Officer. Work requires contact with governmental officials and private entities. Employees at this level are expected to independently perform the most complex information security work and advise management and users regarding information security. Issues are rarely referred to the supervisor but are handled at the occurrence. Essential Duties: Develops and/or coordinates the development of agency policies for encryption of data transmissions and the erection offirewalls to conceal information as it is being transmitted and to eliminate tainted digital transfers.Develops information technology disaster recovery and business continuity planning.Develops and maintains the Information Security risk management program.Architects solutions across multiple hardware/software computing environments and system components.Coordinates the implementation of computer security plans with agency personnel and outside vendors.Advises management and users regarding security procedures.Performs and reviews technical risk assessments and reviews of new and existing applications and systems, including datacenter physical security and environment.Researches, evaluates and recommends systems and procedures for the prevention, detection, containment, and correction ofdata security breaches.Develops and manages the Information Security Roadmap.Ensures appropriate information security standards and procedures are defined. Manages the development of centers ofexcellence around key technologies.Ensures agile best practices are adhered to in the adoption of new technologies.Ensures the delivery process and information security strategies are coherent and optimized.Maintains an ongoing partnership with the business and vendor partners to apply in-depth knowledge of the businessoperations, strategies, priorities and information security requirements to establish the technical direction and an enterpriseview.Manages multi-project management accountabilities in developing and architecting solutions in a collaborativeenvironment.May serve as a lead worker or project leader.May serve as interim Section Director in their absence.Oversees and participates in the development of enterprise level strategies and technical information security direction,including establishing processes and procedures for retiring applications that are no longer within the technology road mapOversees and participates in the development of enterprise-wide architectural vision to appropriately align informationsecurity to strategic business needs and goals.Oversees and participates in the development of the system, technical, and application architectures, and in someinstances the business systems/process architecture for major areas of developmentOversees the design and delivery of proofs-of-concept for new or improved enterprise-wide technologies that are usedacross multiple areas of the business.Participates in the recruitment, training and development of professional and technical staff to support and improveservices and products in area of responsibility.Plans and implements process re-engineering or process improvement.Provides strategic advice regarding information security to the agency.Researches, evaluates and selects from existing and emerging technologies the options best fitting business and ITstrategic needs.Develops and implements continuous automated security compliance capabilities.Trains users and promotes security awareness to ens re system security and improve application, server, and networkefficiency.Performs other job responsibilities as assigned.