Please review the details below and let me know if you’re interested. If so, share your resume, rate expectations, and availability.
Additional Details:
Client: Nassau County
Job ID: IT0420-2662
Location: Long Island, NY (Onsite)
Duration: 5 years (possible extension up to 8 years total)
Submission Requirements: Resume, E-RTR, Certification Copies
Work Model:
- 100% Onsite
- Coordination with multiple departments and Office of Minority Affairs
About the Role:
This role focuses on risk management, compliance oversight, and cybersecurity program evaluation across multiple County departments. You’ll be responsible for ensuring adherence to regulatory standards, ethical requirements, and security best practices.
Scope of the Project:
The focus is on assessing cybersecurity programs, conducting risk evaluations, and enforcing compliance standards, including alignment with County policies such as the Vendor Code of Ethics and Living Wage Law.
Daily Duties / Responsibilities:
- Evaluate cybersecurity programs and procedural documentation across departments
- Conduct risk and threat assessments for County IT, DA, and Police systems
- Ensure compliance with Nassau County Vendor Code of Ethics
- Manage and enforce Non-Disclosure Agreements (NDA compliance)
- Develop and refine security compliance procedures and policies
- Provide risk-based reporting with prioritization of findings
- Collaborate with stakeholders across departments
Required Skills (Ranked):
- 4–7 years experience in risk management, compliance, or regulatory oversight
- Strong understanding of risk assessment methodologies
- Experience with public sector compliance frameworks
- Experience evaluating and drafting security/compliance procedures
- Familiarity with cybersecurity risk and governance practices
Preferred Skills:
- Experience working within county/state government environments
- Familiarity with law enforcement or legal IT systems
- Experience with ethics compliance and policy enforcement
Required Education:
- Bachelor’s degree in Business, Law, Information Security, or related field
Environment and Tools:
- Risk and compliance frameworks
- Cybersecurity assessment methodologies
- Policy and governance documentation tools
Additional Skills:
- Strong analytical and risk evaluation capability
- Ability to work across multiple departments and stakeholders
- Strong documentation and reporting skills
- Ability to operate in structured, compliance-driven environments
This is not a generic compliance role—you’re expected to evaluate real cybersecurity programs and enforce policy at a county-wide level. If someone lacks hands-on risk assessment or public sector compliance experience, they won’t hold up.
Thanks,
Sheldon Fernandez
sheldon@elegantsolutions.us
Elegant Enterprise-Wide Solutions, Inc
ISO 9001:2015, ISO 27001:2013, ISO 200000-1:2018 Certified Company
Prime on CIO-SP3 (8a & SB), eFAST, GSA Schedule 70, Seaport-e and State/ Local contracts