State of Illinois

Chief Information Security Officer (Contract)

State of Illinois  •  Springfield, IL (Hybrid)  •  1 hour ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Job Requisition ID: 58662

Opening Date: 09/30/2026

Closing Date: 10/13/2026

Agency: Department of Corrections

Class Title: CONTRACTUAL WORKER - 10000

Skill Option: None

Bilingual Option: None

Salary: Hourly $76.00; up to $148,800 annually.

Please Note: Former retired state employees will only be allowed to hire in at 80% of their base retirement

Job Type: Hourly

Category: Full Time

Number of Vacancies: 1

Bargaining Unit Code: None

Merit Comp Code: Exempt

Work Hours: 8:00am - 4:30pm

Anticipated Hybrid Work Schedule Availability: It is required that a person reports to the headquarters on this job position as necessary (could be weekly, monthly, or other schedule) dependent on operational need

Headquarter Location: 1000 E Converse Ave, Springfield, Illinois, 62702

Work County: Sangamon

Agency Contact: Lisa.Devert@illinois.gov

A resume is required to evaluate your qualifications and skills as part of your application. Please attach a DETAILED Resume/Curriculum Vitae (CV) to the MY DOCUMENTS section of your application if you decide to provide one.

Why Work for Illinois?

Working with the State of Illinois is a testament to the values of compassion, equity, and dedication that define our state. Whether you’re helping to improve schools, protect our natural resources, or support families in need, you’re part of something bigger—something that touches the lives of every person who calls Illinois home.

No matter what state career you’re looking for, we offer jobs that fit your life and your schedule—flexible jobs that provide the gold standard of benefits. Our employees can take advantage of various avenues to advance their careers and realize their dreams. Our top-tier benefits and great retirement packages can help you build a rewarding career and lasting future with the State of Illinois.

Essential Functions

  • Serves as the Department's Chief Information Security Officer, leading the agency information security program in coordination with the Department of Innovation and Technology under the Department of Innovation and Technology Act (20 Illinois Compiled Statutes 1370) and the Data Security on State Computers Act (20 Illinois Compiled Statutes 450): Establishes, maintains, and enforces the Department's information security policies, standards, and procedures consistent with the Department of Innovation and Technology enterprise security framework, applicable National Institute of Standards and Technology standards, and the Federal Bureau of Investigation Criminal Justice Information Services Security Policy. Develops and administers the Department's information security risk management program, including periodic risk assessments, security control assessments, and plans of action and milestones. Provides administrative input into the development of Department information technology policies, standard operating procedures, and security-related directives. Assesses and evaluates the effectiveness of information security operations, policies, procedures, and internal controls, and drives continuous improvement based on assessment findings, audit results, and threat trends. Advises Department executive leadership on information security posture, emerging risks, and resource requirements.
  • Serves as the Department's designated security official and Information Security Officer for regulated data, ensuring compliance with state and federal information protection requirements: Serves as the designated security official for protected health information under the Health Insurance Portability and Accountability Act Security Rule (45 Code of Federal Regulations 164.308(a)(2)) for the Department's electronic health record environment. Serves as the agency Information Security Officer for criminal justice information under the Federal Bureau of Investigation Criminal Justice Information Services Security Policy. Administers compliance with the Personal Information Protection Act (815 Illinois Compiled Statutes 530) and the Identity Protection Act (5 Illinois Compiled Statutes 179), including safeguards for personal information and Social Security numbers. Maintains the Department's data classification and data handling standards across the Microsoft 365 environment, the electronic health record system, the offender management system, and other systems of record. Coordinates information security obligations arising under the Freedom of Information Act and applicable records retention requirements with the Office of the General Counsel and the Department Freedom of Information Act Officer. In carrying out this designated security official role, implements and oversees the technical safeguards required to keep protected health information secure; prevents unauthorized access to protected health information through access controls, authentication, and audit controls; establishes and implements procedures for the secure transmission of electronic protected health information (ePHI), including encryption in transit; and determines and maintains requirements for the proper storage of ePHI, including encryption at rest and retention.

Continued

  • Directs the Department's security operations, incident response, and breach notification activities in coordination with the Department of Innovation and Technology: Establishes and maintains the Department's incident response plan and serves as the agency point of accountability for information security incidents. Coordinates detection, containment, investigation, and recovery activities with the Department of Innovation and Technology security operations and, where applicable, law enforcement. Administers breach notification determinations and timelines required under the Personal Information Protection Act (815 Illinois Compiled Statutes 530) and other applicable authorities. Oversees identity and access management, privileged access controls, and insider threat monitoring across Department systems and facilities. Governs the security of connected operational technology across Department facilities, including surveillance, access control, body worn camera, and related systems.
  • Serves as the Department's information security lead for external audits, compliance reviews, and oversight inquiries: Serves as primary point of contact for the Office of the Auditor General, the Department of Innovation and Technology, Federal Bureau of Investigation Criminal Justice Information Services audits, internal audit, and other oversight bodies on information security matters. Coordinates the Department's information security audit response, including document production, walkthrough interviews, finding responses, and corrective action plans. Tracks open findings, management responses, and remediation status through closure. Prepares security briefing materials, attestations, and exhibits as needed.
  • Plans, develops, and delivers information security training and awareness across the Department: Designs and conducts security awareness training for Department staff and role based training for staff handling criminal justice information, protected health information, and other sensitive data. Develops and maintains security reference materials, acceptable use guidance, and incident reporting procedures. Promotes a culture of security awareness and accountability across Department divisions and facilities.
  • Performs other duties as required or assigned which are reasonably within the scope of the duties enumerated above.

Minimum Qualifications

  • Requires Bachelor’s degree from an accredited college or university in information security, computer science, information technology, or a closely related field.
  • Requires a minimum of five (5) years of progressively responsible professional experience in information security, including experience developing and administering information security policies and risk management programs.
  • Requires demonstrated working knowledge of NIST security standards, the FBI CJIS Security Policy, and the HIPAA Security Rule

Employment Condition

  • Requires ability to pass the IDOC/IDJJ background check.
  • Requires ability to pass a drug screen. The use of unauthorized drugs by an employee, regardless of position held, is prohibited.
  • Required to utilize digital technology, tools, platforms, and processes in managing and supporting various digital enhancements for greater efficiency, productivity, and digital transformation efforts within the department.
  • The conditions of employment listed here are incorporated and related to any of the job duties as listed in the job description.

Agency Statement:

The Illinois Department of Corrections is a multicultural agency deeply committed to ensuring diversity, equity, and inclusion. This commitment is at the forefront of our operations, hiring, policies and procedures, and training. We recognize the benefit of workplace empowerment, the importance of diversity and fully support an environment where ALL employees are treated fairly, respectfully, and have equal access to opportunities and resources necessary to thrive and contribute to the agency’s success. IDOC genuinely values the differences of individuals in our custody and is committed to ensuring a healthy living environment where they feel valued, respected, and included.

Through our commitment to Diversity, Equity, and Inclusion (DEI), we shall establish and uphold agency policies and practices conducive to eliminating all forms of exclusion including, but not limited to, racism, ageism, ableism, sexism, discrimination based on sexual orientation and gender, and religious oppression.

The IDOC team works to serve justice in Illinois and increase public safety by promoting positive change in the behavior of individuals in custody, operating successful reentry programs, and reducing victimization.

Employees enjoy excellent benefits, including health, vision, and dental insurance; retirement plan and deferred compensation; state holidays and other benefit time off; tuition reimbursement; and pre-tax benefit programs. The department also offers extensive training and career advancement opportunities.

The Illinois Department of Corrections is proud to be an Equal Opportunity Employer.

State of Illinois

About State of Illinois

The government of Illinois, under the Constitution of Illinois, has three branches of government: executive, legislative and judicial. The executive branch is split into several statewide elected offices, with the Governor as chief executive, and has numerous departments, agencies, boards and commissions. Legislative functions are granted to the General Assembly, composed of the 118-member House of Representatives and the 59-member Senate. The judiciary is composed of the Supreme Court and lower courts.

The government of Illinois has numerous departments, agencies, boards and commissions, but the code departments, so called because they're established by the Civil Administrative Code of Illinois, provide most of the state's services:

Department on Aging

Department of Agriculture

Department of Central Management Services

Department of Children and Family Services

Department of Commerce and Economic Opportunity

Department of Corrections

Department of Employment Security

Department of Financial and Professional Regulation

Department of Healthcare and Family Services

Department of Human Rights

Department of Human Services

Department of Juvenile Justice

Department of Labor

Department of the Lottery

Department of Natural Resources

Department of Public Health

Department of Revenue

Department of State Police

Department of Transportation

Department of Veterans' Affairs

Industry
Government & Public Safety
Company Size
10,000+ employees
Headquarters
Unknown
Year Founded
Unknown
Social Media