Chief Information Security Officer - Davis, CA,
Listed on 2026-09-06
-
IT/Tech
Cybersecurity, IT Consultant, Information Security & Data Protection, IT Project Manager
Job
Location:
DAVIS
Full/Part Time:
Full Time
The Chief Information Security Officer (CISO) assists with the strategic direction of UC ANR's information security program. The CISO provides guidance to the CIO, Cyber-Risk Responsible Executive (CRE), and Senior Leadership; facilitates security planning processes to maintain alignment with University of California system-wide policies; represents the UC ANR in location and system-wide meetings; and helps establish the policies and procedures to safeguard the confidentiality, integrity, and availability of university data across academic, research, and administrative information systems and technology.
The CISO reports directly to the CIO and maintains a dotted line reporting relationship to the CRE, providing regular updates on security compliance, risk management activities, and policy alignment.
This position is a career appointment that is 100% fixed.
The home department is IT Services. While this position normally is based in Davis, CA, this position is eligible for hybrid flexible work arrangements for applicants living in the State of California at this time. Please note that hybrid flexible work arrangements are subject to change by the University.
Pay Scale: $126,700/year to $187,700/year
Job Posting Close Date: This job is open until filled. The first application review date will be 09/15/2026.
Key Responsibilities- 35% Manage mitigation of the attempts to compromise security protocols. Works with senior and IT management, as well as system-wide colleagues, to create security plans that protect against theft, destruction, alteration, or denial of access to information. Leads the IT security team, including performing hands‑on threat hunting and detection, vulnerability management, and incident triage and remediation. Takes appropriate actions to protect UC ANR's information assets and infrastructure.
Serves as the location expert on security awareness, best practices, and secure software/hardware design. - 30% Manages, maintains, and enforces UC ANR-wide security policies; leads the risk‑assessment process; ensures those policies align with UC‑wide security mandates. Collaborates with senior and IT leadership to establish location‑wide security standards that enforce UC‑wide policy.
- 20% Makes recommendations to the CIO, the CRE and senior leadership on emerging threats, risk‑mitigation strategies, and security investments; represents UC ANR on university‑wide security councils.
- 15% Assist in the administration of the security program budget; contribute to the evaluation of security technology vendors and service providers; coordinate the procurement of cost‑effective tools and services.
- Bachelor's degree in related area and / or equivalent experience / training
- 3-5years of progressive information security leadership with 2-4years of handson work (incident response, vulnerability management, secure architecture)
- Broad knowledge of information technology security functional areas and how it relates to research subjects; finance; including credit card transactions; management of IT resources and applications; and general computer use practices.
- Demonstrated understanding of privacy and security regulations and best practices, including federal and state laws, policies and standards, as well as extensive knowledge about a wide range of privacy / security regulations relevant to higher education.
- Demonstrated management expertise in determining and recommending actions, for location departments, to follow in IT security and privacy matters.
- Demonstrated communication skills with project teams, stakeholders, senior management, and external contacts including both technical and non‑technical audiences.
- Demonstrated interpersonal skills in order to work with both technical and nontechnical personnel at various levels in organization.
- Demonstrated ability to change the thinking of, or gain acceptance from, others in sensitive situations, without damage to the relationship.
- Broad knowledge of subject area sufficient for strategic planning, technology assessment and direction.
- Leadership experience managing technical staff.
- Experience…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).