| Description: |
The incumbent is responsible for overseeing all aspects of the NPS Privacy Program, as well as supervising the Information Assurance Program. Major Duties: • Plans, directs and implements the NPS privacy program, including development of appropriate policies and procedures. • Establishes and serves on a Privacy Oversight Committee. • Establishes ongoing compliance monitoring activities to ensure compliance with existing Privacy laws and policies. • Works with JAG office to ensure appropriate privacy and confidentiality consent and authorization forms are maintained and utilized appropriately. • Oversees the delivery of privacy training and orientation to all faculty, staff and students. • Provides guidance to the Research Office to ensure all privacy concerns, requirements and responsibilities are addressed in all grants applications. • Establishes and administers a process for receiving, documenting, tracking, investigation and responding appropriately to all complaints concerning privacy issues at NPS • Maintains liaison with other NPS entities involved with privacy issues, including JAG, HRO, and ITACS. • Initiates and promotes activities to foster information privacy awareness within NPS • Reviews all system-related information security plans throughout NPS’ networks to ensure alignment between security and privacy practices • Maintains current knowledge of all applicable federal privacy laws, as well as DoD and DoN privacy policies and directives • Assesses the proposed processes for the PKI-enablement of current and proposed application • Develops recommendations for process improvement, adoption, and awareness training for appropriate stakeholders • Reviews and correlates the security analysis findings of a number of campus customers’ internal information security groups and internal audits to ensure proper techniques and methodologies were applied to the security analysis of critical financial hosts • As Internal Auditor, reviews and/or develops the Sarbanes Oxley (SOX) 404 IT controls documentation and tests the IT controls for all financial and other campus sensitive data centers and presents remediation recommendations to senior leadership including CIO, Provost and President • Creates and expands the role of the IT Audit management with the primary responsibility of auditing IT operations and development of common standard practices • Develops NPS' corporate strategy and project schedules for a wide spectrum of information security concerns, including Data Classification, Data/User Authorization, Security Policies and Procedures, Web Application Security Assessments, and Security Training and Awareness. • Supervises the Information Assurance Program within ITACS. |