1

Chief Information Security Officer Jobs (NOW HIRING)

Title: Chief Information Security Officer (CISO) Location: Remote - USA Reports to: Chief Technology Officer The Role: JD Power is seeking an enterprise-level security leader to serve as Chief ...

NY · On-site

Chief Information Security Officer page is loaded## Chief Information Security Officerlocations: FL - State-wide Remoteposted on: Posted Todayjob requisition id: R-100797**CHIEF INFORMATION SECURITY ...

next page

Showing results 1-20

Chief Information Security Officer information

See salary details

$70K

$148.7K

$232.5K

How much do chief information security officer jobs pay per year?

As of Aug 8, 2026, the average yearly pay for chief information security officer in the United States is $148,746.00, according to ZipRecruiter salary data. Most workers in this role earn between $118,000.00 and $167,500.00 per year, depending on experience, location, and employer.

What are the main challenges a chief information security officer faces when aligning security initiatives with overall business objectives?

A CISO often faces the challenge of balancing robust security measures with the need for business agility and innovation. This involves translating complex technical risks into business terms that resonate with executive leadership, ensuring security investments support organizational goals without hindering workflow or productivity. Additionally, CISOs must foster a culture of security awareness while collaborating closely with IT, legal, compliance, and business units to address evolving threats and regulatory requirements. Successfully navigating these challenges requires strong communication skills and a strategic mindset.

What is a chief information security officer?

A Chief Information Security Officer (CISO) is a senior executive responsible for establishing and maintaining an organization’s information security strategy and programs. The CISO oversees the protection of sensitive data, manages cybersecurity risks, and ensures compliance with security regulations. They work closely with other executives to align security initiatives with business goals, respond to security incidents, and lead security awareness training across the organization. Ultimately, the CISO plays a critical role in safeguarding the organization’s digital assets and reputation.

What is the work of a chief information security officer?

A Chief Information Security Officer (CISO) is responsible for developing and implementing an organization’s cybersecurity strategy, managing security policies, and overseeing security teams. They assess risks, ensure compliance with regulations, and coordinate incident response efforts to protect digital assets and information systems.

What is the difference between Chief Information Security Officer vs Security Manager?

AspectChief Information Security OfficerSecurity Manager
CredentialsCertifications like CISSP, CISM, CISACertifications like CISSP, Security+, sometimes CISM
Work EnvironmentStrategic, executive-level, company-wide security policiesOperational, team management, implementing security measures
Employer & Industry UsageLarge corporations, finance, healthcare, techVarious organizations, including mid-sized and large companies
Search & Comparison IntentUnderstanding executive security rolesManaging day-to-day security operations

The Chief Information Security Officer (CISO) focuses on strategic security leadership and policy development at an executive level, while the Security Manager handles daily security operations and team management. Both roles require similar certifications but differ in scope and responsibilities within organizations.

Are Chief Information Security Officer jobs in high demand?

Chief Information Security Officer (CISO) roles are in high demand due to increasing cybersecurity threats and the need for organizations to protect sensitive data. The position requires strong leadership, technical expertise, and often industry certifications, with job growth expected to remain strong as cybersecurity becomes a top priority for businesses across sectors.

What does a chief information security officer do?

A chief information security officer (CISO) is an IT executive who manages and oversees the cybersecurity needs of an organization. Job responsibilities include data and network security, security policy, and security strategy. Their duties involve security operations, cyber-risk and cyber intelligence, data loss prevention, fraud prevention, identity and access management, investigations, and governance. A chief information security officer needs an in-depth understanding of information security, solid comprehension of the organization’s overarching vision, and the ability to combine the two into an actionable strategy.

What cities are hiring for Chief Information Security Officer jobs? Cities with the most Chief Information Security Officer job openings:
What are the most commonly searched types of Chief Information Security Officer jobs? The most popular types of Chief Information Security Officer jobs are:
Who are the top companies hiring for Chief Information Security Officer jobs? The top employers for Chief Information Security Officer jobs are:
What states have the most Chief Information Security Officer jobs? States with the most job openings for Chief Information Security Officer jobs include:
What job categories do people searching Chief Information Security Officer jobs look for? The top searched job categories for Chief Information Security Officer jobs are:
Infographic showing various Chief Information Security Officer job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 74% Full Time, 22% Part Time, and 3% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $148,746 per year, or $71.5 per hour.

Chief Information Security Officer

FALL CREEK FARM & NURSERY

Austin, TX • On-site

$114.62 - $188.08/hr

Other

Medical, Retirement, PTO

Posted 18 days ago


Job description

Career Opportunities: Chief Information Security Officer (19093)

Posting ID 19093 - Posted 07/16/2026 - Health & Human Services Comm - CHIEF INFO SECURITY OFFICE - Computer and Mathematical - Additional Shifts available (1) - $9000 - $10999 per month

Join the Texas Health and Human Services Commission (HHSC) and be part of a team committed to creating a positive impact in the lives of fellow Texans. At HHSC, your contributions matter, and we support you at each stage of your life and work journey. Our comprehensive benefits package includes 100% paid employee health insurance for full‑time eligible employees, a defined benefit pension plan, generous time off benefits, numerous opportunities for career advancement and more. Explore more details on the Benefits of Working at HHS webpage.

Functional Title and Job Details

Functional Title: Chief Information Security Officer

Job Title: Director VI

Agency: Health & Human Services Comm

Department: CHIEF INFO SECURITY OFFICE

Posting Number: 19093

Closing Date: 09/14/2026

Posting Audience: Internal and External

Occupational Category: Computer and Mathematical

Salary Range: $10,271.00–$16,853.13

Pay Frequency: Monthly

Salary Group: TEXAS-B-31

Shift: Day

Additional Shift: Days (First)

Telework:

Travel:

Regular/Temporary: Regular

Full Time/Part Time: Full time

FLSA Exempt/Non-Exempt: Exempt

Job Location City: AUSTIN

Job Location Address: 4601 W GUADALUPE ST

Other Locations: None

MOS Codes: 8003,8040,8041,8042,10C0,111X,112X,113X,114X,20C0,30C0,40C0,611X,612X,631X,641X,648X,90G0,91C0,91W0 97E0,SEI15

Brief Job Description

This position is open to U.S. Citizens and permanent residents.

This onsite role requires the selected candidate to work from an HHS office in Austin, Texas.

The Texas Health and Human Services Commission (HHSC) is seeking an exceptional, forward‑thinking Chief Information Security Officer (CISO) to lead cybersecurity for one of the largest and most mission‑critical public‑sector technology environments in Texas.

This role is responsible for protecting public trust, supporting continuity of essential services, enabling secure modernization, and preparing the agency for emerging cyber threats, including artificial intelligence, cloud transformation, third‑party risk, and post‑quantum cryptography.

The successful candidate will be a strategic security executive who can translate risk into business decisions, build strong partnerships across the organization, and lead a mature cybersecurity program that protects sensitive health, benefits, operational, and agency information throughout the HHS system.

Reporting to the Chief Information Officer, the CISO provides executive leadership and oversight for the HHS information security program. The CISO also serves as the agency’s Designated Information Security Officer for HHS information resources, with authority to administer enterprise information security requirements, coordinate agency‑wide security governance, and report cybersecurity risk and control effectiveness to executive‑level management consistent with Texas Government Code §2063.401 and TAC Chapter 202. Additional responsibilities include cybersecurity strategy, governance, risk management, security operations, incident response, security architecture, policy development, awareness initiatives, and executive reporting.

The CISO serves as a trusted advisor to executive leadership, business areas, technology teams, information owners, and agency partners. The position requires a collaborative leader who understands that effective cybersecurity enables, rather than impedes, the agency’s mission. The CISO will advance cyber resilience, support secure modernization, strengthen identity and access management, promote zero‑trust principles, and drive risk‑informed adoption of emerging technologies.

The Next HHSC CISO Will:
  • Build trust with executive leadership through clear, measurable, and actionable risk reporting.
  • Lead a mature cybersecurity program focused on governance, accountability, and continuous improvement.
  • Strengthen cyber resilience to ensure critical services remain available during and after cyber incidents.
  • Prepare the agency for emerging threats through post‑quantum readiness, modernization planning, and technology risk management.
  • Partner with business and technology leaders to integrate security into strategic, operational, and procurement decisions.
  • Develop a high‑performing cybersecurity workforce and foster a culture of shared responsibility for security.
  • Coordinate on behalf of the Health and Human Services enterprise with the Texas Cyber Command and other governmental entities, as appropriate.
Essential Job Functions (EJFs)

1. Enterprise Cybersecurity Leadership and Strategy — 25%

Provides executive leadership for the HHS cybersecurity program, establishing strategy, governance, priorities, and performance measures aligned with HHSC’s mission, regulatory requirements, the Texas Cybersecurity Framework, and NIST guidance. Leads enterprise security initiatives, including cyber resilience, zero trust, cloud security, identity management, data protection, and post‑quantum readiness. Advises executive leadership on cybersecurity risks, emerging threats, compliance, and investment priorities.

2. Information Security Governance, Risk, and Compliance — 25%

Directs the development and maintenance of enterprise security policies, standards, and controls. Ensures compliance with applicable state and federal cybersecurity requirements and integrates security into technology planning, procurement, operations, and third‑party relationships. Leads risk management, audits, corrective actions, and executive reporting on security posture while ensuring stakeholders fulfill their information security responsibilities.

3. Cybersecurity Operations, Incident Response, and Resilience — 20%

Provides strategic oversight of cybersecurity operations, threat detection, vulnerability management, incident response, and cyber resilience capabilities. Ensures the agency can effectively prevent, respond to, and recover from cyber incidents while maintaining critical services. Promotes continuous improvement through performance metrics, exercises, lessons learned, and risk‑based security investments.

4. Emerging Technology, Post‑Quantum Readiness, and Secure Modernization — 15%

Leads enterprise cybersecurity efforts supporting emerging technologies, secure modernization, and post‑quantum preparedness. Guides security architecture, cryptographic modernization, cloud security, artificial intelligence security, and secure technology adoption. Ensures security requirements are integrated throughout procurement, system development, implementation, and operations.

5. Workforce, Culture, and Stakeholder Engagement — 10%

Builds and develops a high‑performing cybersecurity workforce and promotes a culture of accountability, collaboration, and continuous improvement. Oversees security awareness and training programs and represents HHS on cybersecurity matters with state agencies, business partners, and external stakeholders.

6. Budget, Contracts, Metrics, and Executive Visibility — 5%

Oversees cybersecurity budgets, contracts, resource planning, and performance measures. Communicates cybersecurity risks, priorities, and outcomes to executive leadership through metrics, reporting, and strategic recommendations.

Knowledge, Skills and Abilities (KSAs)
  • Extensive knowledge of enterprise cybersecurity strategy, governance, risk management, security operations, incident response, and applicable regulatory requirements in a large public‑sector environment.
  • Extensive federal and state knowledge of cybersecurity frameworks and standards, including NIST guidance, Texas Administrative Code Chapter 202, the Texas Cybersecurity Framework, and risk‑based security controls.
  • Knowledge of emerging cybersecurity trends and technologies, including post‑quantum cryptography, zero trust architecture, cloud security, identity and access management, data protection, artificial intelligence security, and cyber resilience.
  • Knowledge of business continuity, disaster recovery, vendor management, contract oversight, and third‑party technology risk management.
  • Skill in leading large, complex cybersecurity programs and developing enterprise security strategies, governance structures, policies, and measurable outcomes.
  • Skill in translating cybersecurity risks into actionable business decisions and communicating effectively with executives, technical staff, public officials, auditors, and other stakeholders.
  • Skill in building collaborative relationships and leading security assessments, risk analyses, incident response efforts, audits, and remediation activities.
  • Skill in managing large‑scale initiatives, budgets, contracts, competing priorities, and developing high‑performing cybersecurity teams.
  • Ability to provide visionary leadership, exercise sound judgment, and foster a proactive, risk‑informed, and mission‑focused security culture.
  • Ability to balance security, compliance, operational needs, modernization efforts, and user experience while implementing effective solutions to complex challenges.
  • Ability to anticipate and address emerging cybersecurity threats, including post‑quantum risks, and maintain the security and integrity of critical systems.
  • Ability to exercise independent judgment, manage confidential information, and uphold the highest standards of ethics and professionalism.
  • Ability to maintain the security and integrity of critical infrastructure systems by preventing unauthorized access and ensuring compliance with laws and regulations related to national security and foreign ownership restrictions.
Registrations, Licensure Requirements or Certifications

Preference for professional certification such as:

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • Certified in Risk and Information Systems Control (CRISC)
  • GIAC certification, or cloud security certification, or comparable advanced cybersecurity credentials.
Initial Screening Criteria
  • Graduation from an accredited four‑year college or university with major coursework in cybersecurity, computer science, information technology, management information systems, engineering, public administration, business administration, or a related field. Relevant senior‑level experience may be considered as a substitution for education, consistent with HHSC Human Resources requirements.
  • At least 10 years of progressively responsible experience in cybersecurity, information security, technology risk management, security operations, enterprise technology leadership, or a closely related field.
  • Significant experience leading cybersecurity, information security, technology risk, or technical teams in a large, complex organization.
  • Experience advising executive leadership on cybersecurity strategy, risk, compliance, incident response, investment priorities, or enterprise security posture.
  • Experience with cybersecurity frameworks, regulatory compliance, audit coordination, risk management, or security governance in a public‑sector, healthcare, financial, critical infrastructure, or similarly regulated environment.
Additional Information

Candidates for this position will be subject to a pre‑employment security review to determine employment eligibility.

This is an onsite position, with 5 days in office required.

Any employment offer is contingent upon available budgeted funds. The offered salary will be determined in accordance with budgetary limits and the requirements of HHSC Human Resources Manual.

HHSC is an equal‑opportunity employer and is committed to hiring a diverse workforce that reflects the people of Texas.

Active Duty, Military, Reservists, Guardsmen, and Veterans:

Military occupation(s) that relate to the initial selection criteria and registration or licensure requirements for this position may include, but not limited to those listed in this posting. All active‑duty military, reservists, guardsmen, and veterans are encouraged to apply if qualified to fill this position. For more information please see the Texas State Auditor’s Job Descriptions, Military Crosswalk and Military Crosswalk Guide at Texas State Auditor's Office - Job Descriptions.

ADA Accommodations:

In compliance with the Americans with Disabilities Act (ADA), HHSC and DSHS agencies will provide reasonable accommodation during the hiring and selection process for qualified individuals with a disability. If you need assistance completing the on‑line application, contact the HHS Employee Service Center at 1-888-894-4747. If you are contacted for an interview and need accommodation to participate in the interview process, please notify the person scheduling the interview.

Pre‑Employment Checks and Work Eligibility:

Depending on the program area and position requirements, applicants selected for hire may be required to pass background and other due diligence checks.

HHSC uses E‑Verify. You must bring your I‑9 documentation with you on your first day of work. Download the I‑9 Form

Telework Disclaimer:

This position may be eligible for telework. Please note, all HHS positions are subject to state and agency telework policies in addition to the discretion of the direct supervisor and business needs.

#J-18808-Ljbffr