Job Location:- The office for this position is located at the MoDot Annex (MSHP), 601 W Main St Jefferson City, MO 65101.
Why you'll love this position:The Office of Cybersecurity is looking for an inspiring, forward-thinking Senior Cybersecurity Specialist to join our Enterprise Risk Management Team. In this key role, you will guide a dedicated team of risk professionals, and shape statewide compliance strategies. You will also oversee our critical Third-Party Risk Management program and Cybersecurity Awareness initiatives. If you excel at building partnerships, solving complex governance challenges, and mentoring motivated teams, you will thrive in this position.
- Authorization to work in the United States is a prerequisite of employment. The Office of Administration, Information Technology Services Division (ITSD) will not sponsor applicants for work visas.
- The salary indicated represents a base pay rate. If the individual selected or the position is eligible for a pay differential (e.g., shift, security, or years of service), it will be added to the total compensation in your paycheck. A pay differential does not raise your base pay.
This position is with the Office of Administration, Information Technology Services Division (OA-ITSD) supporting the Office of Cyber Security (OCS).
Responsibilities - What you'll do- Drive Agency Collaboration & Compliance: Partner closely with diverse state agencies to navigate complex audits and ensure continuous alignment with leading frameworks (including NIST CSF, SOC 2, CJIS, HIPAA, and IRS Pub 1075).
- Third-Party Risk Management (TPRM): Mature the statewide third-party risk framework, evaluating vendor security practices, cloud architectures, and software integrations to protect the state's digital supply chain.
- Lead Security Assessments & Risk Reduction: Oversee comprehensive security risk assessments of legacy infrastructure, newly proposed digital systems, and emerging technologies, translating complex findings into practical, business-friendly recommendations for agency leaders.
- Security Education & Awareness: Drive the vision, implementation, and metrics for enterprise-wide security training and phishing simulation programs, fostering a proactive culture of digital vigilance across all state agencies.
- Mentor & Empower a High-Performing Team: Lead, support a dedicated team of risk and compliance specialists, fostering an inclusive environment focused on professional development and operational excellence.
- Act as a Trusted Strategic Advisor: Collaborate with agency directors, procurement teams, and cabinet members to consult on security risks, enabling secure technology adoption rather than simply enforcing compliance barriers.
Qualifications - All you need for success- A bachelor's or associate degree related to Computer Information Systems or may substitute applicable experience.
Applicants must possess the following skills:
- Strong leadership and relationship management that promotes team development, collaborative consulting and executive communication.
- Governance, Risk and Compliance Expertise. Must have a strong understanding of security frameworks and compliance standards including NIST CSF, NIST SP 800-53, HIPAA, CJIS, and IRS Pub 1075.
- Applicants must have an understanding of third-party risk to be able to evaluate vendor security controls and contract terms for risk. The applicant must also be able to perform technical evaluations to identify risks in SOC reports, penetration testing summaries and architectural diagrams.
- Applicant must possess the skills to roll out modern and engaging security awareness training programs, and social engineering simulations while tracking metrics to ensure effectiveness of the program.
- Preferred certifications include: CRISC, CISM, CISSP, CISA
- Successful background check results are required for employment in this position. This may include background checks involving a candidate's name and/or fingerprints and other screenings as needed for the specific position.
Lack of post-secondary education will not be used as the sole basis denying consideration to any applicant.The classification for this position is Senior Cybersecurity Specialist; click for more information.
Job Details - More reasons to love this positionThe State of Missouri offers an excellent benefits package that includes a defined pension plan, generous amounts of leave and holiday time, and eligibility for health insurance coverage. Your total compensation is more than the dollars you receive in your paycheck. To help demonstrate the value of working for the State of Missouri, we have created an interactive Total Compensation Calculator. This tool provides a comprehensive view of benefits and more that are offered to prospective employees. The Total Compensation Calculator and other applicant resources can be found here.
Contact Details - If you have questions or require any accommodations to participate in the application or interview process please contact:If you have questions, please contact: Applications are accepted for a minimum of fourteen days. After this period, the posting will remain active until the position is filled.