Information Security Officer & Cyber Security EngineerAmes National Corporation | Ames, IowaThis high-impact role reports directly to the Chief Information Officer and serves as the cybersecurity leader for the holding company and affiliate banks, ensuring our security program aligns with the NIST Cybersecurity Framework (CSF) 2.0 while protecting critical systems, networks, and information assets.
What You'll DoAs the Information Security Officer & Cyber Security Engineer, you will:
- Lead the Information Security Committee and coordinate security initiatives across affiliate banks.
- Serve as the primary cybersecurity resource for Ames National Corporation and its affiliate banks.
- Conduct cybersecurity maturity assessments using the NIST CSF 2.0 and help drive remediation efforts.
- Design, implement, and maintain security technologies including endpoint protection, intrusion detection/prevention systems, vulnerability management tools, and SIEM solutions.
- Monitor security alerts, vulnerabilities, and incidents, and coordinate timely response and remediation activities.
- Develop and maintain information security policies, procedures, and standards.
- Ensure key security controls such as patch management, vulnerability management, and access controls are effectively implemented.
- Stay current on emerging cybersecurity threats, vulnerabilities, and industry trends.
- Collaborate with IT team members, vendors, and business partners to resolve security-related issues.
- Provide backup support for system and network administration functions.
- Participate in technology planning and governance initiatives.
- Travel periodically to affiliate bank locations to support cybersecurity and technology initiatives.
What We're Looking ForRequired Qualifications- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or an equivalent combination of education and experience.
- Minimum of four years of professional experience in information technology, cybersecurity, or a related field.
- Experience implementing and managing security solutions and infrastructure.
- Experience conducting vulnerability assessments and security testing.
- Experience identifying, analyzing, and responding to cybersecurity incidents.
- Strong understanding of network security, system security, TCP/IP networking, and virtualization technologies.
- Strong knowledge of the NIST Cybersecurity Framework (CSF) 2.0.
- Excellent problem-solving, analytical, and risk-assessment skills.
- Strong written and verbal communication abilities.
- Ability to work independently, take initiative, and manage multiple priorities.
Preferred Qualifications- Industry certifications such as Security+, CISSP, CISM, GIAC, CEH, or similar.
- Previous experience within a financial services or regulated environment.
Work EnvironmentThis position is primarily office-based and includes regular computer and telephone use. Periodic after-hours or weekend work is necessary to support system maintenance and security initiatives. Travel to affiliate bank locations will occur as needed.
Join Our TeamIf you're ready to help lead and strengthen the cybersecurity program for a respected Iowa banking organization while working with a talented and collaborative technology team, we encourage you to apply.