Careers Newsletter
 
NEWSLETTERS
 

CIO.com updates, insights and advice on technology, management and your career.

 CIO BlackBerry News and Tips
 CIO Research and Analysis
 CIO Microsoft
 CIO Insider
 
 
 
LEADERSHIP
 
CIO Executive Programs
The Leader in Face-to-Face Education for Senior Executives

Offering regional and national programs, CIO (and CSO) events bring together some of the most respected names and thought leaders in information technology and security. Presented by CIOs and other senior level executives, these invitation-only programs offer timely topics and strong networking. Learn More »

 
CIO Executive Council
A Peer-Advisory Service and Professional Association for CIOs

Webcast: In the Google Apps Cloud: How to Achieve Your Business Objectives

Dec 3rd, '09, 1 - 2 pm US/Eastern (GMT-5)

Join Council member Brent Hoag, Director, Global IT, at JohnsonDiversey, as he discusses the adoption of Google Apps which has helped meet four corporate goals; sustainability, simplification, increased employee productivity and global collaboration.

Webcast: Collaboration Initiatives: Benchmarks & Best Practices

Dec 15th, '09, 4 - 5 pm US/Eastern (GMT-5)

Join Council members Ruth Thorpe, VP & CIO at the U.S. Pharmaceutical Operations of Sanofi-Aventis, and Gary Kuyper, CIO at Bethany Christian Services, as they speak about their collaboration initiatives and experiences in how and why they chose the social networking and collaboration tools they are using and their business goals for collaboration, and facing culture change challenges.

Data Overview: Collaboration Initiatives Field Guide: Benchmarks & Best Practices

This appendix to the Council Field Guide provides an analysis which discusses benchmarks for collaboration IT implementation costs, adoption rates and payoffs. The overview identifies top IT and business goals and satisfaction rates for collaboration initiatives as well as best practices and lessons learned for implementing collaboration IT.

More / Register »

Learn more about the CIO Executive Council »



 
 
RESOURCE CENTER
 
 
 

Hot Jobs: IT Security Manager

The need for a dedicated person in charge of IT security is on the rise in the wake of recently publicized incidents involving system hacks and stolen computers.

 

September 05, 2008CIO

Job Description: An IT security manager handles all aspects of IT security, creating and implementing corporate IT security practices and ensuring that employees follow those procedures. This position consists of securing Wi-Fi networks, handling offsite storage of backup tapes, establishing policies for lost laptops and much more. "It was a tough job and it's gotten tougher," says Andy Zaleta, partner and coleader of the technology practice in the Americas for executive search firm Battalia Winston International. "It has gotten down to being a huge job."

Why You Need One: Businesses need a position dedicated to keeping sensitive and important data private. Recent publicized incidents of system hacks, stolen computers and missing CDs, all containing confidential records, demonstrate the need for this job. The vast amount of information corporate IT systems hold requires protection. "Security is just an overall important issue, period," says Zaleta.

RELATED LINKS

Desired Skills: Five to seven years of IT security experience. Look for candidates with Certified Information Systems Security Professional qualifications. Zaleta sees businesses emphasizing college degrees less for this position. Some are content with an associate degree or military experience; others want workers with a four-year degree.

where to Look: Try the security divisions of large technology companies (Microsoft, IBM) as well as security companies (McAfee, Symantec). Federal intelligence agencies may also prove fertile recruiting ground. The RSA Security conferences, held in the U.S., Japan and Europe, can provide a chance to network with those interested in IT security.

What To Look For: IT security managers need to be aware of internal security threats (employee access to restricted documents), external threats (wireless router hacks), and ad hoc issues (leaving a laptop on a plane). They also must know countermeasures against those risks. Possible hires should be able to express their commitment to security programs, have experience with budgets and know their IT systems in detail. They should also understand that most fraudsters look to exploit the minute weaknesses no one considers. Communication skills are crucial given the need to convey security policies to employees and the possibility of board presentations on overall security preparedness.

Elimination Round: Candidates must be able to describe their current security system and how it is being upgraded. Some may be reluctant to share this. However, the question needs to be addressed to see if the person understands security risks.

Base Salary Range: $125,000 to $150,000

Growing Your Own: An IT security training program is key to creating a successful in-house candidate, said Zaleta. This program should be coordinated with outside institutions that handle CISSP certifications. Senior management needs to commit to the training. Getting this support can prove challenging because training programs usually get chopped from the budget during spending cuts, Zaleta said. However, only with adequate training does one become fully versed in security issues.

Other stories by Fred O'Connor © 2009 CXO Media Inc.
 
 
Loading...
TOOLS
CONNECTIONS
Battalia Winston International
Microsoft
IBM
 
WHITE PAPERS

Exclusive Economist Intelligence Unit Research

Find out why - and how technology can help balance centralized control and individual autonomy.
 

How Data Mining Can Rock Your Career

Recently, U.S. News & World Report listed "data miner" as one of only a handful of careers core to today's digital enterprises. The University of Illinois at Chicago takes a look.
 

Exchange 2007 Risks and Mitigation Strategies

This whitepaper will review the strengths of Exchange 2007 and areas where CIOs should consider third party solutions.
 

Solving On-premise Email Challenges

This white paper presents ten on-premise challenges and their on-demand services solutions.
 

A Comparative Cost Analysis of Email Environments

This Forrester report will help you evaluate the full cost of your email environment and it will explore the benefits of cloud-based technologies.
 

An Infrastructure and Operations Analysis

This Forrester Report review three basic architectures to consider as you evaluate taking your email into the cloud.
 

WEBCASTS

An Open Framework for Business Intelligence

Architecting Business Intelligence Applications for Change
 

Email and Web Threats Require a Layered Defense

Can you trust the cloud to secure your enterprise from email and Web threats? This Webcast discusses how web threat...
 

Smart techniques for application security: whitebox + blackbox security testing.

Whitebox & blackbox application security testing are two approaches for detecting vulnerabilities in Web-based and ...
 

Lower the Cost and Complexity of a Mobile Workforce through Automation

Lower the Cost and Complexity of a Mobile Workforce
 

Extending Client Refresh - 11 Steps to Maximize Savings

11 Steps to Maximize Savings
 

Consolidate Your Servers and Storage to Lower Costs with Oracle Database 11g

Live Webcast
Tuesday, December 8, 2009
2:00pm ET/ 11:00am PT

Oracle Database 11g and Oracle Real A...
 

Resource Alerts

Get instant email notifications by topic when white papers, webcasts, and case studies are added to our library.

 
IT Jobs
 
 
 
FEATURED SPONSORS
 
 
 
SPONSORED LINKS
 

The Total Economic Impact of Network Security Intrusion Prevention

Return on Information: Google Enterprise Search pays you back. Get the facts.

VMware. The source for Business Infrastructure Virtualization.

ShoreTel tells businesses to untangle from competitors' complexity and turn to its brilliantly simple UC solution

See how AT&T can help protect your network.

Streamline IT Costs. Boost Performance with WAN Optimization.

Build your 1st app FREE with Force.com

TDWI checklist helps define data readiness for analytics. Download report.

A Clear View Toward Virtualization

Virtualization Technology as a Business Solution

The rules of infrastructure management just changed.

A Clear View Toward Virtualization

Interactive Q&A helps you discover key ways to maximize IT assets.

Ready to virtualize tier one applications? Check your virtualization maturity.

Think you can't afford a Cisco Switch? Cisco Catalyst Switches are now more affordable.

Five minute business analytics assessment. Immediate results.

The Case for Investing in Business Analytics Technology. Read white paper.

Upgrading to VMware vSphere with vWire

Top 10 Lessons Learned for Corporate 3G Mobile Broadband Deployments

CRM Built for IT: The Executive Guide to Selecting CRM that Meets IT Needs

Return on Information: Google Enterprise Search pays you back

ROI of Application Delivery Controllers

Making Consumer Two-Factor Authentication Simple and Cost-Effective

Mining the Cloud to Ease the Enterprise Compliance Burden

Solve Five Key IT Security Challenges with Cloud-Based Authentication

Disciplined Autonomy: Resolving the Tension Between Flexibility and Control

AT&T Synaptic Storage as a Service. Expand on demand

Trend Micro ranked #1 against real-world malware. Read more.

Webinar: Jump-start your in-house e-discovery with Ringtail QuickCull from FTI Technology

Top Five CIO Challenges

Read the RSA report: Security for Business Innovation

64-page prescriptive guide to security, compliance, and IT operations.

Increase UPS efficiency without sacrificing protection.

eZine: A Roadmap to Reducing IT Complexity

Reduce risk, gain agility. See how Progress can help your business.

Virtualization Technology as a Business Solution

eZine: A Roadmap to Reducing IT Complexity

World-class trading technology solutions from NYSE Technologies.

If You're Paying for Telecom, You're Paying Too Much. Contact Asentinel Today.

Trade-In your old printer and save up to $1,000 plus free recycling!

infoBOOM! - The Mid-Sized Company CIO's Exclusive Community

Live Webinar: Applying Business Analytics. Click here to learn more

Removing Barriers To Better Server Virtualization Efficiency

4G Revisited. The Continued Evolution of Wireless Mobility.

What's Next for Enterprise Resource Planning?

Maximizing website Return on Information with high-quality search

Gartner Magic Quadrant, Application Delivery Controllers 2009

Authentication as a Service by Forrester Research

Cloud-Based Authentication for Next-Generation Extranets

Cut Costs & Green Your IT Operations with PC Power Management