State of Iowa - Executive Branch · 10 hours ago
Information Technology Enterprise Expert - Information Security Architect
The State of Iowa's Department of Management is seeking an Information Security Architect to design, implement, and govern the enterprise security architecture. This role is crucial for safeguarding state systems and data by embedding security into technology solutions and aligning with national standards.
AssociationConsultingNon Profit
Responsibilities
Develop, implement, and continuously improve the State’s enterprise security architecture framework
Define and enforce standards that integrate security controls across systems, platforms, and services
Establish scalable technical, administrative, and physical controls to maintain a consistent security posture statewide
Serve as the authority for identifying and documenting compensating controls when baseline measures are not feasible
Ensure alignment with NIST SP 800-53, Risk Management Framework (RMF), and the Iowa Cyber Strategy
Translate compliance and policy requirements into measurable, enforceable security controls
Conduct threat modeling using frameworks such as MITRE ATT&CK and the cyber kill chain to inform architecture decisions
Enhance visibility and reporting of controls to support audits, assessments, and incident response
Collaborate with leadership, agency partners, and technical teams to embed secure design principles
Lead enterprise-wide initiatives, including project charters, cost-benefit analyses, and vendor oversight
Analyze statewide security trends and report on performance, risk posture, and architecture effectiveness
Represent the Chief Information Security Officer (CISO) in interagency committees and strategic planning efforts
Promote adoption of CyberGUARD standards and secure architecture practices across agencies
Evaluate emerging technologies and evolving threats to strengthen enterprise security architecture
Qualification
Required
Proven expertise in security architecture and enterprise-level design
Experience with NIST and RMF frameworks for secure system implementation
Knowledge of threat modeling using MITRE ATT&CK and cyber kill chain methodologies
Strong collaboration skills to work across agencies and technical teams
Ability to translate policy into actionable controls for compliance and audit readiness
Forward-thinking approach to address emerging threats and technologies
6 months experience, 12 semester hours, or a combination of both in analyzing and identifying risks and the corresponding potential impact to information and information technology systems
6 months experience, 12 semester hours, or a combination of both in the physical aspects of securing information technology systems
A minimum of 18 months of full-time work experience in cyber security planning at a professional level that included the following major functions: participating in and leading a company-/agency-wide cyber security planning program including the identification of cyber security risks, development of prevention and response plans to minimize cyber-attack damages including mass care and consequences management, and the development of continuation of business operation plans; participating in national cyber security planning initiatives and exercises; responding to and participating in the recovery work from cyber security incidents; and working across governments, private sectors, and non-profit organizations collaboratively on cyber security planning activities and plans for response
Graduation from an accredited four-year college or university with a degree in any field, and experience equal to five years of full-time work in one or more of the following areas: mainframe computing systems programming; computer-based networking (LAN, WAN); database management systems; applications development, maintenance, and testing; server and workstation operating systems; telecommunications carrier operations; and/or Internet/Intranet development and deployment
Five years of full-time work experience in one or more of the following areas: mainframe computing systems programming; computer-based networking (LAN, WAN); database management systems; applications development, maintenance, and testing; server and workstation operating systems; telecommunications carrier operations; and/or Internet/Intranet development and deployment
Twenty-four semester hours of accredited post-high-school course work in one of the specialty areas listed in part a; or Certification from an authorized educational institution or a major computer/software producer in an area directly related to one of the specialty areas listed in part a
A total of nine years of education and/or full-time experience in one or more of the following areas: mainframe computing systems programming; computer-based networking (LAN, WAN); database management systems; applications development, maintenance, and testing; server and workstation operating systems; telecommunications carrier operations; and/or Internet/Intranet development and deployment, where thirty semester hours of accredited college or university coursework in any field equals one year of full-time experience
Current, continuous experience in the state executive branch that includes two years of full-time work as an Information Technology Specialist 5
Preferred
Preferred certifications: CISSP, CISA, GSEC, or equivalent
Benefits
Flexible work environment
Iowa Public Employees' Retirement System (IPERS)
Health, dental, and vision insurance
Generous vacation, sick leave, and paid holidays
Life and disability insurance
Retirement savings options (RIC)
Flexible Spending Accounts
Company
State of Iowa - Executive Branch
If you’re looking for a work life of accomplishment, reward, and opportunity, you’ll discover Iowa State Government is just the place where there’s a rich and diverse population; where community, culture and differences matter; where exceptional work ethic, values and peace of mind all come together! The more you know about the State of Iowa, the more you’ll know it’s the right fit for you! There are 16 agencies in state government providing services to Iowans requiring specialized talent in agriculture, corrections, economic development, education, human services, natural resources, public health, public safety, revenue, transportation, veterans’ services and more.
Funding
Current Stage
Late StageLeadership Team
Recent News
Company data provided by crunchbase