Deputy Chief Information Officer & Information Security Officer
California State University, Monterey Bay · Monterey, CA · 4 mo ago
Information Technology$15k–$16k/yrFull-time
About the role
The Deputy Chief Information Officer / Information Security Officer supports the AVP/CIO by providing leadership continuity, overseeing major operational and organizational functions, executing divisional strategy, and serving as the University's Information Security Officer.
Responsibilities
- Supports execution of the AVP/CIO’s strategic vision by translating divisional priorities into operational plans, organizational structures, and coordinated programs and initiatives.
- Provides leadership continuity and operational oversight across Information Technology and acts on behalf of the AVP/CIO as delegated.
- Leads organizational change initiatives related to structure, roles, processes, and service delivery; builds alignment across leadership teams; and ensures effective communication, accountability, and follow-through.
- Serves as the University’s Information Security Officer, responsible for institution-wide information security strategy, governance, risk management, and compliance.
- Establishes and maintains an information security framework aligned with CSU policies, legal and regulatory requirements, a recognized security framework, and institutional priorities.
- Oversees security risk assessments, incident response coordination, audit support, and security awareness initiatives.
- Advises executive leadership on cybersecurity risks, mitigation strategies, and security posture in alignment with the University’s risk tolerance, ensuring security considerations are integrated into broader IT and institutional decision-making.
- Provides senior oversight and coordination of IT operational portfolios, ensuring effective service integration, staffing alignment, and organizational capacity.
- Directly supervises professional administrative staff assigned to Information Technology, including recruitment, training, performance evaluation, and work direction.
- Advises the AVP/CIO on organizational design and staffing strategies.
- Interprets and applies CSU and campus administrative policies within Information Technology and supports and coordinates change management efforts across IT leadership to ensure policies, processes, and controls are effectively adopted and sustained.
- Coordinates responses to audits and compliance reviews; identifies administrative and fiscal risks; and works with leaders and staff to guide changes needed to strengthen institutional accountability, organizational resilience, and operational continuity.
- Represents Information Technology in campus administrative forums as delegated by the AVP/CIO. Serves as a primary administrative liaison between Information Technology, campus partners, and CSU system offices on IT-related administrative and fiscal matters.
Qualifications
- Equivalent to a bachelor’s degree from an accredited institution in information technology, business administration, public administration, or a related field, and progressively responsible experience in information technology leadership and administrative management with division-level scope.
- Experience must include supervision of professional staff, responsibility for complex operational or organizational functions, and leadership in areas such as technology operations, information security governance, organizational change, or risk management.
- Additional qualifying experience may be substituted for the required education on a year-for-year basis.
- Preferred qualifications include experience in senior IT leadership roles within higher education, the public sector, or similarly complex and regulated organizations.
- Experience serving in an information security governance or risk leadership capacity.
- Demonstrated experience leading organizational and cultural change, advising senior leadership, and executing complex cross-functional initiatives.
- Experience overseeing or supporting enterprise-wide technology platform transitions affecting faculty, staff, and students.
- Demonstrated understanding of the governance, compliance, and risk environment of a comprehensive public university.
- Experience guiding institutional adoption of emerging technologies such as artificial intelligence.
- Relevant information security professional certification maintained, such as CISSP, CISM, CEH, GIAC, or equivalent.
- Technical fluency sufficient to engage in executive-level decision-making across enterprise platforms, security frameworks, and large-scale IT environments.