Position Details
Position Information
Recruitment/Posting Title |
Associate Vice President and Chief Information Security Officer |
Job Category |
Staff & Executive - Information Technology |
Department |
VP for Information Technology |
Overview |
Rutgers, The State University of New Jersey, stands among the nation's highest-ranked, most diverse public research universities. The oldest, largest, and top-ranked public university in the New York/New Jersey metropolitan area, you'll find us at our main locations in three New Jersey cities, and our footprint can be seen around the region. As one of the nation's most diverse universities, Rutgers draws strength from the rich variety of perspectives and life experiences of our community. We're an academic, health, and research powerhouse and a university of opportunity.
Office of the Senior Vice President & Chief Information Officer (
OIT)
The Office of Information Technology provides university wide leadership in strategic planning, development, and support of technology systems and services.
OIT oversees enterprise technology infrastructure, cybersecurity, data management, and digital solutions that advance Rutgers' mission of teaching, research, and service.
Office of the Executive Vice President & Chief Administrative Officer
The Office of the Executive Vice President & Chief Administrative Officer provides executive leadership and oversight of key administrative functions that support the university's operations. This office partners across academic and administrative units to ensure effective governance, streamlined processes, and the delivery of high-quality services that enable Rutgers to achieve its strategic goals |
Posting Summary |
Rutgers, The State University of New Jersey is seeking an Associate Vice President and Chief Information Security Officer for the Office of Information Technology. In reporting to the Vice President and Deputy Chief Information Officer (VP/
DCIO), the Associate Vice President and Chief Information Security Officer (hereafter identified as "CISO") is responsible for institutional cybersecurity program, including the development, implementation and monitoring of strategic, comprehensive enterprise information security governance, compliance, policies and protocols to ensure the availability, integrity, and confidentiality of information owned, controlled or processed by the university.
Among the key duties of the position are the following:
- Leads a cybersecurity program that is foundational to protecting the information assets of the university by incorporating input and guidance received from the Information Security Steering Committee which is comprised of senior leadership from the Office of Information Technology, distributed IT units, Audit and Advisory Services, the Office for Research, the Office of General Counsel, Risk Management and Insurance, University Academic Affairs, University Ethics and Compliance, and University Procurement Services.
- Accepts responsibility and ownership for protection of the university's information assets and work with the university's senior leadership and OIT executive leadership, as well as, the IT community to provide such protections and, when necessary, exercise independent actions based on encountered risk profiles.
- Engages with university leaders to communicate vision and drive information security programs and concepts into all business processes and programs.
- Works with administrative and strategic vendor partners to ensure that information security is incorporated into management processes such as purchasing and contract review, strategic and vendor partnerships, research management and support, as well as, other key areas of university activity.
- Designs, implements and oversees security advisory and governance groups and activities in conjunction with the Information Security Steering Committee.
- Leads any related committees, sub-groups, or working groups and inform the topics and agendas these groups consider, address and operationalize.
- Manages crises and responds to emergencies.
- Leads the resources of a matrixed organization in response to threats, breaches or other malfeasant cyber activities in a way that ensures coordination, organization, and calmness, especially in relation to security incidents.
- Works within the supportive and "common cause" culture developed and maintained by the CIO and CIO Executive Team.
- Works with and provides leadership to the multi-disciplinary threat response team.
- Serves as the primary advocate for and representation of information security across the university, within the higher education professional domain, and within the general security profession, by attending industry events, serving on industry task forces, committees and boards, and engaging with university vendors and partners.
- Maintains familiarity with all relevant regulations impacting information security and assess Rutgers' risk related to all relevant information security regulations (HIPAA, FERPA, PCI-DSS, FISMA, etc.).
- Partners with executive leadership in achieving successful delivery of the following functional areas of Security: Governance and Policy, Risk Management, Identity and Access Management, Endpoint Security, Security Operations, Vulnerability Management, Security Training and Awareness, Application Security, Security Assessments and Testing, Security Analytics and Security Portfolio Management.
- Works closely with the Chief Audit Executive to build stronger cohesion between risks identified in information security assessments (and threat landscape) and the overall IT audit workplan endorsed by the Board Audit Committee.
- Develops and maintains a comprehensive education and awareness program that touches on all aspects of the Rutgers community.
- Develops and implements foundational training courses in relevant security topics, such as phishing awareness and scam/fraud detection.
- Understands and balances the need to encourage best behaviors with the need to enforce rules.
- Provides leadership and oversight of the management and budget activities related to the cybersecurity team.
- Provides regular updates to the VP/DCIO and other University leaders regarding information security matters, including ongoing program reporting and incident reporting.
- Identifies key performance indicators to gauge success in securing university information assets.
- Develops and shares dashboards to monitor security-related metrics that impact the university's cybersecurity risk profile.
- Works closely with the research community in exploring new and novel approaches to cybersecurity within networking, data management systems, software development, federation and identity management, and other research instruments and platforms.
- Ensures that the university meets all relevant requirements for the use and protection of data assets from granting agencies that provide requirements and guidance on data protection as a condition for their use.
- Develops and maintains strategic external relationships and partnerships, such as the Big Ten Academic Alliance (BTAA) CISOs, University Hospital, and RWJBarnabas.
- Performs other related duties as assigned or requested.
|
FLSA |
Exempt |
Grade |
12 |
Salary Details |
|
Minimum Salary |
217528.000 |
Mid Range Salary |
275173.000 |
Maximum Salary |
332818.000 |
Offer Information |
The final salary offer may be determined by several factors, including, but not limited to, the candidate's qualifications, experience, and expertise, and availability of department or grant funds to support the position. We also take into consideration market benchmarks, if and when appropriate, and internal equity to ensure fair compensation relative to the university's broader compensation structure. We are committed to offering competitive and flexible compensation packages to attract and retain top talent. |
Benefits |
Rutgers provides a comprehensive benefits package to eligible employees. The specific benefits vary based on the position and may include:
- Medical, prescription drug, and dental coverage
- Paid vacation, holidays, and various leave programs
- Competitive retirement benefits, including defined contribution plans and voluntary tax-deferred savings options
- Employee and dependent educational benefits (when applicable)
- Life insurance coverage
- Employee discount programs
|
Position Status |
Full Time |
Working Hours |
|
Standard Hours |
37.50 |
Daily Work Shift |
|
Work Arrangement |
Consistent with the current application of Rutgers Policy 60.3.22, this position may be eligible for a hybrid work arrangement.
The flexible work arrangements outlined in Rutgers Policy 60.3.22 are part of a pilot program that is effective September 1, 2022 through January 31, 2026. Therefore, there is no guarantee that this flexible work arrangement will continue beyond that date. Flexible work arrangements are not permanent, are subject to change or cancellation and contingent on the employee receiving approval in the FlexWork@RU Application System. Additional information may be found at
https://futureofwork.rutgers.edu. |
Union Description |
Admin Assembly (MPSC) |
Payroll Designation |
PeopleSoft |
Seniority Unit |
|
Terms of Appointment |
Staff - 12 month |
Position Pension Eligibility |
ABP |
Qualifications
Minimum Education and Experience |
- Bachelor's degree and 8 to 10 years of progressive leadership responsibilities for a comprehensive cybersecurity program.
|
Certifications/Licenses |
- A valid driver's license would be required for this position.
|
Required Knowledge, Skills, and Abilities |
- Extensive experience in computing and information security, including experience with Internet technology, security techniques, and compliance requirements.
- Experience in higher education, governmental agency or corporate/industry information security.
- Experience with policy development, auditing, and risk management, as well as contract and vendor negotiation.
- Demonstrated experience with advising and influencing senior management.
- Demonstrated ability to work and effectively prioritize in a highly dynamic decentralized work environment.
- Excellent written and oral communication skills.
- Consultative and organizational skills.
- Advanced computer literacy.
|
Preferred Qualifications |
- Master's degree.
CISSP or similar information security related certifications.
|
Equipment Utilized |
|
Physical Demands and Work Environment |
|
Special Conditions |
|
Posting Details
Posting Number |
25ST2200 |
Posting Open Date |
10/14/2025 |
Special Instructions to Applicants |
|
Regional Campus |
Rutgers University-New Brunswick |
Home Location Campus |
Cook (RU-New Brunswick) |
City |
New Brunswick |
State |
NJ |
Location Details |
|
Pre-employment Screenings
All offers of employment are contingent upon successful completion of all pre-employment screenings.
Immunization Requirements
Under Policy 100.3.1 Immunization Policy for Covered Individuals, if employment will commence during Flu Season, Rutgers University may require certain prospective employees to provide proof that they are vaccinated against Seasonal Influenza for the current Flu Season, unless the University has granted the individual a medical or religious exemption. Additional infection control and safety policies may apply. Prospective employees should speak with their hiring manager to determine which policies apply to the role or position for which they are applying. Failure to provide proof of vaccination for any required vaccines or obtain a medical or religious exemption from the University will result in rescission of a candidate's offer of employment or disciplinary action up to and including termination.
Affirmative Action/Equal Employment Opportunity Statement
It is university policy to provide equal employment opportunity to all its employees and applicants for employment regardless of their race, creed, color, national origin, age, ancestry, nationality, marital or domestic partnership or civil union status, sex, pregnancy, gender identity or expression, disability status, liability for military service, protected veteran status, affectional or sexual orientation, atypical cellular or blood trait, genetic information (including the refusal to submit to genetic testing), or any other category protected by law. As an institution, we value diversity of background and opinion, and prohibit discrimination or harassment on the basis of any legally protected class in the areas of hiring, recruitment, promotion, transfer, demotion, training, compensation, pay, fringe benefits, layoff, termination or any other terms and conditions of employment. For additional information please see the Non-Discrimination Statement at the following web address: http://uhr.rutgers.edu/non-discrimination-statement
|