Salt Lake County

Associate Division Director, Cyber Security Officer

Job Locations US-UT-SALT LAKE CITY
Requisition ID 2026-41379
# of Openings
1
Posted Date
3 hours ago(8/28/2026 12:41 PM)
Department
Information Technology
Location : Location
US-UT-SALT LAKE CITY
Location : Address
2001 S STATE ST
Location : Postal Code
84190
Position Type
Regular Full-Time (Merit)
Post End Date
9/8/2026
Grade
022
Minimum Pay
$141,267.00
Maximum Pay
$211,901.00

Job Description

Salt Lake County…A career with a purpose in the community you love!

Salt Lake County invites you to explore our exciting career opportunities. We seek highly enthusiastic individuals to enrich our County with your experience and talent. If you enjoy working in a team environment that is committed to changing the lives of its community, please keep reading.

What it is like to work here:

At Salt Lake County our culture is woven into all aspects of our work and our employees’ lives, from the way we treat each other to the way we support the community.  To promote and foster a fun and healthy work environment, we appreciate employees through great benefits, a healthy work life balance and room to grow and develop.

Surround yourself with:

Peers who are motivated to make a difference in the lives of those we serve. We serve Salt Lake County and envision a safe and beautiful place for all to live work and have fun. Salt Lake County is about connecting people and championing our community.  Community is more than a place….its our heart and service that bring us together.

We encourage a work life balance:

Working for Salt Lake County is more than just a paycheck.  A career with /Salt Lake County includes several benefits and perks.  We support our employees with 12 Holidays, up to 24 vacation days, 12 sick days and one personal day every year.  We work in a hybrid environment giving you flexibility to manage working from home and being in office.

Additional Benefits include:

  • Retirement options for hybrid pension/401(k) or 401(k) only with a 10% contribution

Medical coverage including a 100% county paid premium option-Dental and Vision coverage including coverage for adult designees

  • Health Savings account with a county contribution up to $1200/year, Flexible Spending Account
  • 100% county-paid Long-Term Disability and Short-Term Disability option
  • Professional Development
  • Plus: Onsite medical clinic, childcare and gym; hospital insurance, pet insurance auto and home insurance and discounts at County facilities.

 

JOB SUMMARY

 

Works under the Chief Information Officer (CIO) to provide direction for the management, design, development, implementation, operation, and maintenance of Salt Lake County’s cyber security programs, which are designed to protect the confidentiality, integrity, and availability of all County information technology systems and resources, including but not limited to voice, data, network, applications, and computer infrastructure, and their associated information assets. Develops a comprehensive cyber security program, an accountable culture, and a secure infrastructure. Provides Countywide strategic and operational IT leadership.



MINIMUM QUALIFICATIONS

 

Bachelor’s degree from an accredited college or university in Information Technology field or business, or other closely related field, plus eight (8) years of related experience, of which three (3) years must have been in a supervisory or administrative capacity; OR an equivalent combination of twelve (12) years of related education and experience, of which three (3) years must have been in a supervisory or administrative capacity. Education may not be substituted for the required supervisory experience.

 

Professional certification in Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM) is preferred. Prior experience in implementing the NIST Cyber Security Framework (NIST CSF) is preferred.

 

Due to the nature of this position, the successful applicant must pass a required background check through fingerprinting and enrollment in the continuous RAP Back (Record of Arrest and Prosecution Back) program in accordance with current County Human Resources policy requirements.


ESSENTIAL FUNCTIONS

  • Encourages innovation while weighing cost against the benefit of information technology investments.
  • Determines the information security strategy for Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Directs the implementation of the information security strategy for Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Determines the need for information technology policies, standards, processes, procedures, and best practices for Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Works with the Technology Advisory Board (TAB) to review and adopt information technology policies, standards, processes, procedures, and best practices for Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Ensures that County employees, contractors, partners, and other third parties comply with information technology policies, standards, processes, procedures, and best practices for Salt Lake County and any entities that contract with Salt Lake County for information technology services.
  • Determines Salt Lake County’s compliance strategy to address requirements imposed by regulatory programs like the Health Insurance Portability and Accountability Act (HIPAA), Criminal Justice Information Systems Policy (CJIS), and the Payment Card Industry Data Security Standard (PCI-DSS).
  • Determines strategies to monitor risk to information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Conducts regular internal and external risk assessments of information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Communicates to County leadership the current risk posture of information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Serves as the information security subject-matter expert for Salt Lake County agencies and any entities that contract with Salt Lake County for information technology services.
  • Represents Salt Lake County’s information security interests to state and federal agencies and regulatory bodies.
  • Sponsors the security awareness training efforts intended to reduce risk to information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Establishes and maintains effective partnerships with County agency management through collaboration and teamwork to ensure the effective use of information technology resources and systems supporting the County's business needs.
  • Audits and reports on the effectiveness of security controls that protect information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Responsible for security incident response planning and tabletop exercises to ensure County information technology staff are prepared to effectively deal with any information security events or incidents that adversely affect information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Participates with other Associate Directors in the Information Technology Divisions continuity of operations planning (COOP) and disaster recovery planning and tabletop exercises to ensure County information technology staff are prepared to effectively deal with any service outages or interruptions that adversely affect information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Responsible for leading forensic responses to information security events or incidents that adversely affect information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Responsible for identifying, tracking, and remediating vulnerabilities found in information technology systems in use by Salt Lake County as a whole and any entities that contract with Salt Lake County for information technology services.
  • Directs DevSecOps security tooling and processes; contextualizes findings to address the team's workload priorities.
  • Works with the Chief Information Officer and other Associate Directors to determine the budget for the Information Technology Division.
  • Prepares the information security program budget for the Information Technology Division.
  • Participates in developing information technology cost metrics for budgeting and accounting reports.
  • Evaluates information technology key performance indicators related to the information security program.
  • Directs and coordinates activities through managers and supervisors, which includes hiring, firing, promoting, orienting, training, assigning, and reviewing work performance, annual work performance appraisals, and discipline.


KNOWLEDGE, SKILLS, AND ABILITIES (KSA)

 

Knowledge of:

  • The NIST Cyber Security Framework
  • The CIS Security Controls and security baselines
  • Security concepts, principles, and best practices for voice and data networks; applications and architecture; design and testing; hosting and cloud-based services; Internet/Intranet technology and mobile devices
  • Information security architecture, information security technologies, tools, practices, and controls
  • Operations, services, concepts, terms, and activities common to a comprehensive, state-of-the-art information technology security program and current regulatory requirements
  • Current and emerging security technologies including but not limited to Firewalls, Remote Access VPN, Email Security, Encryption, Vulnerability Management, Traffic Management, Extended Detection and Response (EDR), Managed Detection and Response (MDR), Incident Response, Identity and Access Management (IAM), Active Directory, Azure Active Directory, and Cloud Security
  • Methods and techniques for evaluating information security and developing appropriate resolutions
  • Project management principles and techniques, including project budgeting, quality assessment and control, and resource management
  • Organizing and prioritizing projects and work assignments and reviewing, establishing, and maintaining project schedules

Skills and Abilities to:

  • Communicate effectively both verbally and in writing
  • Think logically and systematically; solve complex problems; apply general principles to specific conditions effectively
  • Facilitate projects and meetings as assigned and is comfortable working with all levels of the organization
  • Analyze business and technical processes and determine ways of making them more efficient
  • Remain calm under stress and quickly adjust, evolve, and multitask between several competing priorities simultaneously
  • Maintain confidentiality and professionalism

 

Due to the nature of this position, the successful applicant must pass a required background check through fingerprinting and enrollment in the continuous RAP Back (Record of Arrest and Prosecution Back) program in accordance with current County Human Resources policy requirements. 

Additional Information

WORKING CONDITIONS AND PHYSICAL REQUIREMENTS

 

Work duties are typically performed in a general office setting.

 

IMPORTANT INFORMATION REGARDING THIS POSITION

 

May be required to work holidays, nights, and weekends as needed.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed