Assistant Information Security Officer
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Information Security
Overview
Join the KPERS Team as an Assistant IT Security Officer. Protect What Matters. Enable What Works. Serve the Public Good. The Kansas Public Employees Retirement System (KPERS) is seeking an experienced and mission-driven Assistant IT Security Officer to help safeguard the sensitive information of more than 300,000 public servants—both current employees and retirees—who rely on KPERS every day.
At KPERS, located in Topeka, Kansas, we’re proud to serve those who serve our communities. We provide vital disability and death benefits to protect public employees during their careers—and ensure they enjoy lifetime benefits when they retire. Our members come from all walks of life and professions, united by a shared commitment to serving Kansans.
What You’ll Do- Threat Intelligence:
Monitoring and analyzing security events and alerts across networks, endpoints, and cloud infrastructure. - Incident Response:
Investigate, respond to, and resolve security incidents, ensuring timely detection, containment, and mitigation. Document and report security events and incidents. - Compliance:
Stay informed with information security compliance requirements. Inform the CISO of new or updated requirements. - Security Audits:
Conduct security audits, vulnerability scans, and penetration tests to identify and address security weaknesses. Provide supporting evidence and explanation to auditors evaluating information security. - Security Awareness:
Participate in security awareness initiatives to foster a security-first culture. Develop and implement information security awareness training sessions for employees. - Research Technology:
Evaluate and recommend innovative security technologies to address evolving threats. - Collaboration and Communication:
Work collaboratively with technical and non-technical teams, effectively communicating security risks and solutions. - Documentation:
Document and update security policies & procedures, networks, systems, application diagrams, flow charts, data centers, risk register, risk assessments, and disaster recovery plans. - Security Risk Assessments:
Analyze projects, hardware, software and procedures for information security risks. Identify the possible impacts and mitigation strategies. Present findings and recommendations in a professional manor. - Vendor and Third-Party
Risk Management:
Assessing vendor and third-party security practices and evaluation to see if they meet the information security requirements. - Disaster Recovery and Business Continuity:
Planning, developing, documenting, implementing, testing Disaster Recovery and Business Continuity strategies. - Technical Support:
Provide technical support for staff and other business partners.
We are looking for self-motived candidates with a passion for learning and desire to provide value for protection of KPERS information services and a commitment to customer service. You must be able to maintain positive working relationships with team members across the organization.
Experience RequiredFour years working in a senior-level information security position with experience in security analysis, incident response, and security configurations within an enterprise information technology environment. Or a bachelor’s degree in computer science or a related field and two years of working in a senior-level information security position.
Certifications RequiredAt least one relevant certification such as CISSP, CISM, CISA or CCSP is required or must be obtained within two years of hire date.
Skills and Abilities- Advanced level of knowledge of information security strategies and technologies used for the protection of information.
- Understanding operating system fundamentals and security aspects of operating systems.
- Understanding of identity and access management systems.
- Experience with security event management systems.
- Understanding of TCP/IP, networking fundamentals, and network security.
- Knowledge of endpoint protection applications such as antivirus, anti-spyware, and file integrity monitoring technologies.
- Experience managing firewalls and intrusion prevention systems (IPS).
- Understanding security incident analysis and response.
- Ability to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).