IT Security Specialist I (61165071)
Job Responsibilities
- Design, implement, maintain, and assess agency information security policies and procedures to comply with existing policies protecting the confidentiality, availability, and integrity of computer systems and associated data.
- Develop and maintain standards and procedures in accordance with State and Agency regulations and/or policy.
- Support data classification, governance, audit, and regulatory compliance activities.
Security Operations & Risk Management
- Assist CISO staff in completing support tickets, risk and vulnerability assessments, and monitoring and responding to security and privacy issues.
- Monitor and deploy security solutions for the Agency.
- Support incident management activities and participate in business continuity and disaster recovery planning.
Program Coordination & Communication
- Cook up, create, and lead various security programs and initiatives.
- Establish clear communication between the Chief Information Security Office, other internal agency offices, and external partners.
- Serve on and lead various teams to meet the needs of the agency’s operations and information security program.
Reporting & Security Awareness
- Complete reports and documentation related to security programs, initiatives, and projects.
- Create and maintain documentation with a high level of attention to detail.
Other Duties
- Present on various programs, initiatives, and security awareness topics to internal and external audiences.
- Complete all other tasks as assigned, including various security and Agency support duties.
The position is located in the Office of Information Technology.
Minimum and additional requirements include a bachelor's degree in information technology systems, computer science, or a related field and experience in the information technology field to include experience in a security-focused role. Relevant experience may be substituted for the bachelor's degree on a year-for-year basis. Preferred qualifications include minimum of two (2) years’ experience in information security, business continuity, and disaster recovery planning, professional certification related to information security or privacy (e.g., Security+, or similar certification), experience with security monitoring, data classification and governance, and business continuity programs including audit and regulatory compliance, and familiarity with state government or similarly regulated environments.
Additional comments indicate overnight travel may be required and a criminal background check (SLED) is required prior to employment. Employees work independently under the direction of the Chief Information Security Officer and are expected to work closely with employees across all divisions.
Only those applicants chosen for an interview will be notified by letter that the position has been filled.