About the RoleWe are seeking
5 Information Security Officers (ISOs) to join a collaborative multi-agency initiative on a 6-month contract engagement (with options for conversion or extension). Embedded within public sector agencies, you will balance agency-specific operational needs with statewide cybersecurity objectives, policies, and strategic directives. In this role, you will lead the implementation of security frameworks, policies, risk management, and third-party risk assessments, ensuring strict compliance with state, federal, and contractual security regulations.
Key Responsibilities- Policy & Framework Implementation: Develop, implement, and maintain agency-specific information security policies and procedures aligned with state security strategies and frameworks like NIST CSF and NIST 800-53.
- Risk & Vendor Management: Lead comprehensive risk assessments, mitigation planning, and third-party/vendor risk evaluations to protect agency data, systems, and infrastructure.
- Agency Liaison & Governance: Serve as the primary security liaison between the agency and state security authorities, communicating and executing statewide cybersecurity initiatives.
- Compliance & Auditing: Conduct compliance assessments and support audits for federal, state, and contractual regulations, including CJIS, HIPAA, and IRS Pub 1075.
- Incident Response & Training: Coordinate security incident investigations, containment, and recovery while driving security awareness training and a strong internal security culture.
Requirements- General Experience: 11+ years of total direct experience relative to the field of information technology, with at least 3+ years of dedicated, direct experience specifically in information security.
- Framework & Regulatory Expertise: Strong working knowledge of security frameworks (NIST CSF, NIST 800-53) and government/public sector regulations (CJIS, HIPAA, IRS Pub 1075).
- Certifications: Must possess one or more recognized cybersecurity certifications (such as CISSP, CISM, or CISA)-or secure the required certification within one year of start.
- Location & Availability: Must be local to the region and able to work onsite as required.
- Core Competencies: Exceptional communication skills to translate complex security concepts for technical and non-technical stakeholders, coupled with strong project management and analytical abilities.
Equal Opportunity Employer / Disabled / Protected Veterans
The Know Your Rights poster is available here:
_EEOC_KnowYourRights6.12.pdf
The pay transparency policy is available here:
_%20English_formattedESQA508c.pdf
For temporary assignments lasting 13 weeks or longer, AllSTEM Connections is pleased to offer major medical, dental, vision, 401k and any statutory sick pay where required.
We are committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please contact your staffing representative who will reach out to our HR team.
AllSTEM Connections participates in the E-Verify program in certain locations as required by law. Learn more about the E-Verify program.
_Participation_Poster_ES.pdf
We also consider for employment qualified applicants regardless of criminal histories, consistent with legal requirements, including, if applicable, the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance. Pursuant to applicable state and municipal Fair Chance Laws and Ordinances, we will consider for employment-qualified applicants with arrest and conviction records, including, if applicable, the San Francisco Fair Chance Ordinance. For Los Angeles, CA applicants: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
Additional Skills(none specified)
AllSTEM Representative Contact InfoAccount Executive: Nichols
Branch Phone: Location: Ontario, CA