SRPS Cybersecurity Defense Compliance Specialist Series; SRPS Cybersecurity Defense Compliance
Listed on 2026-01-17
-
IT/Tech
Cybersecurity, Information Security
Introduction
The Maryland State Retirement and Pension System (MSRPS) administers benefits for over 397,000 members, including active employees, retirees, and vested participants across 12 retirement systems—supporting the financial security of Maryland’s public servants. Located in Baltimore’s Central Business District, MSRPS offers a purpose-driven workplace with modern amenities, including panoramic city and harbor views, renovated common areas, upgraded elevators, and an on-site caf.
Employees enjoy comprehensive state benefits including; medical, dental, prescription coverage, generous paid leave, participation in the state pension system, and supplemental retirement savings options (401(k), 457(b), and more). Additional perks include an on-site fitness center with showers and lockers, 24/7 building security, and easy access to restaurants, shops, free public transit, and major highways. If you are a qualified technology professional, here’s what MSRPS has to offer:
Professional development Work with advanced & leading cybersecurity technologies Work in an organization that fosters teamwork and cooperation This classification is eligible for a Hybrid work schedule.
SRPS CYBERSECURITY DEFENSE COMPLIANCE SPECIALIST I:
Grade 18
SRPS CYBERSECURITY DEFENSE COMPLIANCE SPECIALIST II:
Grade 19
Salary offered will be based on the candidate’s education and experience
120 East Baltimore Street Baltimore, Maryland 21202
Main Purpose of JobThe main purpose of the position is the responsibility for the coordination and workflow management of cybersecurity compliance initiatives in the IS’ Cybersecurity Division to include coordinating tasks for ongoing audits, cybersecurity policy development and lifecycle management, co-administering the GRC (Governance, Risk & Compliance) platform, administer and manage SRA’s security awareness training program. Knowledge of and competence in applying cybersecurity standards (State of MD/NIST/CSF, etc.)
and their control integrations within SRA to achieve a high compliance maturity level within the Cybersecurity program.
This position will be responsible and perform at either the intermediate (Level I) or full (Level II) performance level for:
• Administer the GRC platform; populate the controls library with fresh content/artifacts, monitor/integrate data imports from connectors, onboard new audits (internal & external), build custom profiles, run cybersecurity risk reports/heat maps, update the risk register, monitor Jira GRC task flows (40%)
• Administer & manage the security awareness training platform; setup new training & phishing campaigns, monitor & notify users in policy non-compliance, run risk/training completion reports. (20%)
• Onboard new cybersecurity audit campaigns (internal & external); ingest audit requirements into the GRC platform, assemble/update artifact repositories, build work spaces for auditors to review RDL items (20%)
• Maintain the cybersecurity policy and document repository, perform policy lifecycle tasks (update/create/deprecate material, and manage authorization processes), design data maps & process workflow diagrams, & document cybersecurity procedures. (10%)
• Research & stays abreast of changes in cybersecurity standards (such as NIST, CSF and State of MD/DoIT), and assists in efforts to maintain standards compliance, manages the Capability Maturity Model Integration (CMMI) cybersecurity program to maintain a minimum Level III maturity. (10%)
Education:
Graduation from an accredited high school or possession of a high school equivalency certificate. SRPS CYBERSECURITY DEFENSE COMPLIANCE SPECIALIST I
Experience:
Two years of experience in the data security compliance discipline, working knowledge of Governance, Risk and Compliance (GRC) platforms, security audit management and procedures, compiling reports and analytics from completed security audits and risk assessments (internal and external sources), and administering security awareness training services/products. SRPS CYBERSECURITY DEFENSE COMPLIANCE SPECIALIST II
Experience:
Three years of experience in the data security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).