Skip to Content
Information Security Specialist III

Job Description

The Technical Services Division of the National Association of Insurance Commissioners (NAIC) has an exciting opportunity for a seasoned financial or security auditor who would enjoy working for an organization that strives every day to support the public good and make a difference. Are you passionate about information security and have a desire to master auditing techniques and research the latest technologies? If so…we have a perfect opportunity for you and would like to hear from you!

This position is located in the NAIC’s offices in Town Pavilion in the heart of downtown Kansas City which includes great restaurants, and top-notch entertainment venues. This is a full-time position in a positive and flexible environment. Apply today!

Responsibilities include:

  • Applies financial or security audit processes to develop and monitor the organizations compliance with established SSAE 16 controls.

  • Identifies needed modifications to our policies brought about by changes in compliance standards (e.g., SSAE 18) or within our internal operations (e.g., Cloud vs. On-premise). 

  • Develops, publishes, and maintains security policies that align with adopted standards (e.g., National Institutes of Standards and Technology) across the following 10 security domains: Access Management, Business Objectives, Governance and Policy, Data Protection, Incident Response, Infrastructure Resiliency, Organization and Resources, Security Architecture, Security Awareness, Training and Communication, Security Risk Management and Third-Party and Vendor Management.

  • Supports the establishment, communication and maintenance of cybersecurity controls and related examination standards to our members and federal, international and industry partners.

  • Stays abreast of new security technologies, vulnerabilities and exploits and communicates the NAIC’s position on these matters to senior leadership, members and partners. 

  • Maps our internal policies and procedures to selected industry standards for efficient collection of evidence and communicating with external compliance auditors.

  • Performs risk assessments to identify the likelihood and impact of cybersecurity risks and captures this information in a Risk Register for review by our Internal Security Oversight Committee.

  • Travels to remote offices or organization sanctioned meetings in support of security initiatives.

  • May be called upon to supervise or direct the activities of security staff or NAIC acquired vendors and consultants.

Not ready to apply?

Add your resume instead and let employers find you. You'll be able to see who found you in a search, and viewed your profile.

Job Requirements

Education and/or experience required:

Bachelor's degree (B.A.) from four-year college or university or fifth-year college or university program certificate, and five years related experience; or comparable combination of education and experience. Experience in Information Systems Auditing, Information Systems Security Administration or a related field is strongly preferred. Expertise with Atlassian products (Confluence Wiki and JIRA). Certified Information Systems Security Professional (CISSP) and/or Certified Information Systems Auditor (CISA) would be a plus. SECRET level clearance with the Department of Homeland Security preferred.



Skills and Abilities:                                                                                                                              

  • Superior written communication skills, including proper grammar, punctuation, and sentence structure.

  • Strong oral communication skills are required which include the use of visual presentation tools for conveying relevant data.

  • Expertise with Microsoft Office tools, including Word, Excel, and PowerPoint.

  • Must possess the ability to independently perform analysis of information and summarization of findings.

  • Commitment to provide excellent customer service.

  • Familiarity with industry security standards (NIST 800-53, ISO 27001/27002, COBIT, PCI-DSS, HIPAA/HITECH) would be a plus.



About the NAIC:

With a Central Office in the heart of downtown Kansas City the National Association of Insurance Commissioners (NAIC) places a premium on creativity and innovation.  The NAIC supports insurance regulators in every state, who work to educate, protect and assist insurance consumers with issues ranging from disasters to day-to-day questions. Our employees get the chance to support and develop the latest technological programs in an energized environment.

Insurance may be complicated, but our employee culture is pretty simple. “Work hard, play hard” exemplifies our commitment to a work-life balance. We keep it casual with allowing jeans to be worn every day. We believe in rewarding staff with bright, shiny objects as well as treats, games and prizes to show our appreciation for their hard work. And you can say goodbye to a five day work week with our flex schedules.

At the NAIC, location really is everything - from our centrality in the metro area to the conveniences of our vibrant downtown building, with great restaurants and shopping right outside our doors. We pride ourselves on our long-term investment in our employees and support them in all phases of their life, from continuing education and tuition reimbursement opportunities to our infants in the workplace program. We also make charity a company-wide offering through our Volunteer Resource Team (VRT). The VRT sponsors fundraisers, charitable events and community service opportunities throughout the year and has raised thousands of dollars for local and national charities.

Why Work at the NAIC/NIPR?

  • Flexible Work Environment

  • 37.5 Hour Work Week

  • Tuition Reimbursement

  • Referral Bonuses

  • Choice of Insurance Plans

  • Vacation Buy Back

  • Personal Computer Purchase Assistance Program

  • Infants in the Work Place

  • Adoption Assistance

  • Employee Recognition Programs

  • Days Off for Community Service

  • Student Loan Repayment Program

  • Fitness Center


The NAIC is proud to be an Equal Opportunity Employer



Applicants for all positions are considered without regard to age, race, creed, color, religion, sex, sexual orientation, gender identity or expression, national origin or ancestry, marital status, pregnancy, genetic information, military or veteran status, disability, or any other basis protected by applicable law.

Job Snapshot

Employment Type Full-Time
Job Type Information Technology, Accounting, Other
Education Not Specified
Experience At least 5 year(s)
Manages Others Not Specified
Industry Insurance
Required Travel Not Specified
CareerBuilder Tip:
For your privacy and protection, when applying to a job online, never give your social security number to a prospective employer, provide credit card or bank account information, or perform any sort of monetary transaction. Learn more.

By applying to a job using you are agreeing to comply with and be subject to the Terms and Conditions for use of our website. To use our website, you must agree with the Terms and Conditions and both meet and comply with their provisions.

Information Security Specialist III

Enter notes about this job: