1- Establish the Security Function at theclient including processes, procedures and Intrclient s
departments, man days , etc.
2. Creates informationsecurity roadmap, both short-term and long-range, in support of theclient s
3. Manages an ongoing,proactive risk assessment program for all new and existing systemsand remains
familiar with the client s goals andbusiness processes so effective controls can be put in place forthose
areas presenting the greatest informationsecurity risk.
4. Communicates risks andrecommendations to mitigate risks to the senior administrationby
communicating in non-technical, cost / benefit termsand in a format relevant to senior administrators so
decisions can be made to ensure the security of information systemsand information entrusted to the
5.Oversees all ongoing activities related to the development,implementation, and maintenance of the
client sinformation security policies and procedures by ensuring thesepolicies and procedures
encompass the overall securityof electronic information at rest or in motion within the MissouriState
client system and assisting departments in localprocess and procedure development, ensuring they are
not in conflict with client policies.
6. Assists otherdepartments to ensure regulatory compliance in areas such as thePayment Card
Industry Data Security Standards (PCI-DSS)and the Health Insurance Portability and Accountability Act
HIPAA), NIA & FIFA framework