Operational Technology Cyber Security Manager (Systems Analyst)
About the Role
The Public Works OT Cyber Security Manager (Systems Analyst) leads the department’s digital defense operations, protecting infrastructure, managing risk, and ensuring compliance with regulatory standards. This highly collaborative role works with all Public Works Divisions and the Office of Information Technology.
The position is crucial for safeguarding county resources and minimizing security breaches by managing and monitoring security platforms, including endpoint security, vulnerability management, email security, vendor risk assessment, and security awareness. The work is primarily sedentary and performed in an office environment, though it may involve physical tasks such as installing, moving, or repairing computers and peripherals, including lifting equipment weighing fifty pounds or more. Occasional work during nights, weekends, and holidays may be required.
Responsibilities
- Monitor incoming event queues for potential security incidents.
- Prioritize and triage security events based on severity, potential impact, and risk factors.
- Administer security platforms, including onboarding users, reviewing alerts, taking necessary actions based on identified threats, configuring policies, and troubleshooting issues.
- Leverage the vulnerability management platform to identify and assess vulnerabilities across network and infrastructure assets.
- Support the broader vulnerability management lifecycle, including prioritization, reporting, and remediation.
- Collaborate with IT teams to remediate findings and harden endpoint configurations.
- Participate in incident response activities as part of the designated incident response team.
- Conduct security awareness training and phishing campaigns.
- Assist with the development of security standards, policies, and procedures.
- Stay up-to-date on the latest cyber threats, vulnerabilities, and security trends.
- Create, manage, and dispatch incident tickets.
- Perform tasks related to Security and Risk Management, Asset Security, Security Architecture and Engineering, Communications and Network Security, Identity and Access Management, Security Assessment and Testing, and Security Operations.
Requirements
- Graduation from an accredited four-year college or university with major course work in mathematics, public or business administration, or a related field, including or supplemented by specialized training in electronic data processing, programming, operations, and methodologies.
- Six or more years of experience in electronic data processing systems analysis and design.
- Five or more years of hands-on experience in Cyber Security (work experience, not education).
- Two or more years of experience in Vulnerability Management.
- Two or more years of experience in Incident Response.
- Two or more years of experience in Endpoint Detection and Response.
- Specialized training in Cybersecurity, Risk Management, Server Security, Network Security, or Cloud Security.
- 24/7 on-call availability.
- Successful completion of a background check.
For degrees obtained outside the United States, applicants must provide documentation of accreditation and educational equivalency through a credential evaluation service.
Schedule
Occasional work during nights, weekends, and holidays may be required.