{"id":{"repo_id":"texas-state","oai_identifier":"oai:digital.library.txst.edu:10877/6008"},"canonical_url":"https://search.dev.ndltd.org/etd/texas-state/oai:digital.library.txst.edu:10877/6008","repository":{"repo_id":"texas-state","name":"Texas State University","base_url":"https://digital.library.txst.edu/server/oai/request"},"display":{"title":"A Descriptive Study of Chief Information Security Officers’ Roles and Responsibilities in Texas State Government Agencies","abstract":"Research Purpose: The purpose of this research is to describe the responsibilities of Texas Chief Information Security Officers (CISOs). This research should give stake holders, and policy makers a better understanding of Chief Information Security Officers’ responsibilities. In addition, it provides information security professionals a landscape of CISOs’ responsibilities. A comprehensive review of the literature was used to develop a framework with five descriptive categories: managerial, legal, technical, career development, and information security. Method: This research via a survey, developed from the conceptual framework, gathered data the responsibilities of CISOs. An open records request was sent to all state offices in Texas. The survey was distributed to 100 CISOs. After carefully sifting through the responses received for the open records request, a total of 100 names of CISOs or titles similar to that were obtained. As a result the survey was administered to a total of 94 potential respondents. A total of 27 individuals responded to the survey, and out of 27 respondents only eleven explicitly identified as Chief Information security Officers. Results: The results of this survey show that CISOs overwhelmingly support several managerial, legal, and information security responsibilities as extremely important. Extremely important responsibilities include risk management (77%), incident response (77%), information security polices (74%), procurement and contracts (70%), ethics (81%), data security (89%) and network security (70%). Survey results also revealed that respondents alluded to software development as not part of CISO responsibilities (66%).","abstract_html":"Research Purpose: The purpose of this research is to describe the responsibilities of Texas Chief Information Security Officers (CISOs). This research should give stake holders, and policy makers a better understanding of Chief Information Security Officers’ responsibilities. In addition, it provides information security professionals a landscape of CISOs’ responsibilities. A comprehensive review of the literature was used to develop a framework with five descriptive categories: managerial, legal, technical, career development, and information security. Method: This research via a survey, developed from the conceptual framework, gathered data the responsibilities of CISOs. An open records request was sent to all state offices in Texas. The survey was distributed to 100 CISOs. After carefully sifting through the responses received for the open records request, a total of 100 names of CISOs or titles similar to that were obtained. As a result the survey was administered to a total of 94 potential respondents. A total of 27 individuals responded to the survey, and out of 27 respondents only eleven explicitly identified as Chief Information security Officers. Results: The results of this survey show that CISOs overwhelmingly support several managerial, legal, and information security responsibilities as extremely important. Extremely important responsibilities include risk management (77%), incident response (77%), information security polices (74%), procurement and contracts (70%), ethics (81%), data security (89%) and network security (70%). Survey results also revealed that respondents alluded to software development as not part of CISO responsibilities (66%).","abstract_has_math":false,"creators":["Velasquez, Sanjuanita"],"institution":"Texas State University","degree_name":"Masters in Public Administration","degree_level":"Masters","degree_discipline":"Public Administration","degree_department":null,"school":null,"contributors":[],"advisors":["Rangarajan, Nandhini"],"committee_chairs":[],"committee_members":["Inbody, Donald","Sone, John"],"year":2016,"date_issued":"2016-05","date_published":"2016-05","updated_at":"2026-07-27T21:22:47Z","subjects":["information security","technology","cybersecurity","information resources","data security","chief information security"],"languages":["en"],"rights":[],"rights_urls":[],"identifier_entries":[]},"links":{"outbound_url":"https://hdl.handle.net/10877/6008","outbound_label":"Handle","outbound_source":"dc:identifier.uri"},"metadata_groups":[{"id":"people","label":"People","entries":[{"key":"dc:contributor.advisor","label":"Advisor","values":["Rangarajan, Nandhini"]},{"key":"dc:contributor.committeemember","label":"Committee Member","values":["Inbody, Donald","Sone, John"]},{"key":"dc:creator","label":"Author","values":["Velasquez, Sanjuanita"]}]},{"id":"academic_context","label":"Academic Context","entries":[{"key":"dc:date.accessioned","label":"Dc Date Accessioned","values":["2016-05-17T16:18:55Z"]},{"key":"dc:date.available","label":"Dc Date Available","values":["2016-05-17T16:18:55Z"]},{"key":"dc:date.issued","label":"Date","values":["2016-05"]},{"key":"dc:type","label":"Dc Type","values":["Research Project"]},{"key":"thesis:degree_discipline","label":"Discipline","values":["Public Administration"]},{"key":"thesis:degree_level","label":"Degree Level","values":["Masters"]},{"key":"thesis:degree_name","label":"Degree Name","values":["Masters in Public Administration"]},{"key":"thesis:institution_name","label":"Thesis Institution Name","values":["Texas State University"]}]},{"id":"subjects_keywords","label":"Subjects and Keywords","entries":[{"key":"dc:subject","label":"Dc Subject","values":["information security","technology","cybersecurity","information resources","data security","chief information security"]}]},{"id":"language_rights","label":"Language and Rights","entries":[{"key":"dc:language.iso","label":"Language (ISO)","values":["en"]}]},{"id":"identifiers","label":"Identifiers","entries":[{"key":"dc:identifier.uri","label":"Identifier URI","values":["https://hdl.handle.net/10877/6008"]}]},{"id":"additional","label":"Additional Metadata","entries":[{"key":"dc:description","label":"Description","values":["Public Administration"]},{"key":"dc:description.abstract","label":"Abstract","values":["Research Purpose: The purpose of this research is to describe the responsibilities of Texas Chief Information Security Officers (CISOs). This research should give stake holders, and policy makers a better understanding of Chief Information Security Officers’ responsibilities. In addition, it provides information security professionals a landscape of CISOs’ responsibilities. A comprehensive review of the literature was used to develop a framework with five descriptive categories: managerial, legal, technical, career development, and information security. Method: This research via a survey, developed from the conceptual framework, gathered data the responsibilities of CISOs. An open records request was sent to all state offices in Texas. The survey was distributed to 100 CISOs. After carefully sifting through the responses received for the open records request, a total of 100 names of CISOs or titles similar to that were obtained. As a result the survey was administered to a total of 94 potential respondents. A total of 27 individuals responded to the survey, and out of 27 respondents only eleven explicitly identified as Chief Information security Officers. Results: The results of this survey show that CISOs overwhelmingly support several managerial, legal, and information security responsibilities as extremely important. Extremely important responsibilities include risk management (77%), incident response (77%), information security polices (74%), procurement and contracts (70%), ethics (81%), data security (89%) and network security (70%). Survey results also revealed that respondents alluded to software development as not part of CISO responsibilities (66%)."]},{"key":"dc:format","label":"Dc Format","values":["Text"]},{"key":"dc:format.medium","label":"Dc Format Medium","values":["1 file (.pdf)"]},{"key":"dc:title","label":"Title","values":["A Descriptive Study of Chief Information Security Officers’ Roles and Responsibilities in Texas State Government Agencies"]}]}],"canonical_facts":{"dc:contributor.advisor":["Rangarajan, Nandhini"],"dc:contributor.committeemember":["Inbody, Donald","Sone, John"],"dc:creator":["Velasquez, Sanjuanita"],"dc:date.accessioned":["2016-05-17T16:18:55Z"],"dc:date.available":["2016-05-17T16:18:55Z"],"dc:date.issued":["2016-05"],"dc:description":["Public Administration"],"dc:description.abstract":["Research Purpose: The purpose of this research is to describe the responsibilities of Texas Chief Information Security Officers (CISOs). This research should give stake holders, and policy makers a better understanding of Chief Information Security Officers’ responsibilities. In addition, it provides information security professionals a landscape of CISOs’ responsibilities. A comprehensive review of the literature was used to develop a framework with five descriptive categories: managerial, legal, technical, career development, and information security. Method: This research via a survey, developed from the conceptual framework, gathered data the responsibilities of CISOs. An open records request was sent to all state offices in Texas. The survey was distributed to 100 CISOs. After carefully sifting through the responses received for the open records request, a total of 100 names of CISOs or titles similar to that were obtained. As a result the survey was administered to a total of 94 potential respondents. A total of 27 individuals responded to the survey, and out of 27 respondents only eleven explicitly identified as Chief Information security Officers. Results: The results of this survey show that CISOs overwhelmingly support several managerial, legal, and information security responsibilities as extremely important. Extremely important responsibilities include risk management (77%), incident response (77%), information security polices (74%), procurement and contracts (70%), ethics (81%), data security (89%) and network security (70%). Survey results also revealed that respondents alluded to software development as not part of CISO responsibilities (66%)."],"dc:format":["Text"],"dc:format.medium":["1 file (.pdf)"],"dc:identifier.uri":["https://hdl.handle.net/10877/6008"],"dc:language.iso":["en"],"dc:subject":["information security","technology","cybersecurity","information resources","data security","chief information security"],"dc:title":["A Descriptive Study of Chief Information Security Officers’ Roles and Responsibilities in Texas State Government Agencies"],"dc:type":["Research Project"],"thesis:degree_discipline":["Public Administration"],"thesis:degree_level":["Masters"],"thesis:degree_name":["Masters in Public Administration"],"thesis:institution_name":["Texas State University"]},"updated_at":"2026-07-27T21:22:47Z"}