Job Description: SCOPE OF THE PROJECT: THE POSITION WILL WORK AS A SECURITY ARCHITECT WITHIN THE DIVISION OF INFORMATION SECURITY AND WILL ASSIST WITH THE IMPLEMENTATION INTEGRATION AND OPERATIONALIZING SECURITY TECHNOLOGIES. THIS POSITION REQUIRES EXPERIENCE IN INFORMATION SECURITY ARCHITECTURE AND SOLUTION DESIGN TO ASSIST IN THE STRATEGIC PLANNING DESIGNING AND IMPLEMENTATION OF NEW SYSTEMS AND CHANGES IN CURRENT SYSTEMS IN A SECURE MANNER. THIS POSITION IS EXPECTED TO BE NEEDED FOR 12 MONTHS WITH THE POSSIBILITY OF EXTENSION.
DAILY DUTIES / RESPONSIBILITIES:
LOGGING AND EVENT MANAGEMENT ENSURING THAT APPROPRIATE SECURITY LOGS ARE INGESTED INTO THE SIEM AND/OR LOG AGGRIGATION PLATFORM AND PROPERLY PARSED TO SUPPORT SECURITY OPERATIONS
RESPONSIBLE FOR PLANNING DESIGNING DEVELOPMENT AND IMPLEMENTATION OF ENTERPRISE SECURITY ARCHITECTURE SOLUTIONS THAT ALIGN WITH BUSINESS GOALS AND RISK TOLERANCE. LEVERAGING STATE APPROVED PROCESSES AND TECHNOLOGIES WHEREVER POSSIBLE.
LEAD PROCESS DEFINITION REDESIGN AND/OR TECHNOLOGY INNOVATION OF SECURITY ARCHITECTURE TO ENSURE DIS SOLUTIONS SUPPORT SECURE DELIVERY OF ENTERPRISE BUSINESS ARCHITECTURE AND SERVICES.
DESIGN DEPLOY AND MANAGE COUNTERMEASURES TO KNOWN SECURITY THREATS AND DEVELOP PREVENTATIVE MITIGATION STRATEGIES FOR NEW AND EMERGENT THREATS TO ENTERPRISE DATA NETWORKS AND ASSOCIATED SERVICES.
ENSURE VALIDATE AND MEASURE THE CONSISTENT APPLICATION OF PROTECTIVE MEASURES THROUGHOUT THE ENTERPRISE BUSINESS APPLICATION AND INFRASTRUCTURE SUPPORT ENVIRONMENTS. TAKE APPROPRIATE ACTION TO PROTECT STATE DATA AND TECHNOLOGY SERVICES.
REQUIRED SKILLS (RANK IN ORDER OF IMPORTANCE):
CYBER SECURITY AWARENESS AND UNDERSTANDING
EXPERIENCE WITH LINUX WINDOWS NETWORK SECURITY PROTOCOLS AND PROCEDURES
EXPERT UNDERSTANDING OF ACCESS CONTROL LOGGING AND REPORTING SYSTEMS
PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):
SIEM MANAGEMENT
INTRUSION PREVENTION SYSTEMS (IPS)
SECURITY FRAMEWORKS: NIST CSF CJIS IRS NA5 CMS MARSE
APPLICATION SECURITY (APPSEC)
REQUIRED EDUCATION/CERTIFICATIONS:
BACHELORS DEGREE IN AN
INFORMATION TECHNOLOGY OR
INFORMATION SECURITY RELATED
FIELD
SIX YEARS OF RELEVANT WORK
EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
THREE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
PREFERRED EDUCATION/CERTIFICATIONS:
GSEC
GCED
Additional Sills: REQUIRED SKILLS (RANK IN ORDER OF IMPORTANCE): CYBER SECURITY AWARENESS AND UNDERSTANDING EXPERIENCE WITH LINUX WINDOWS NETWORK SECURITY PROTOCOLS AND PROCEDURES EXPERT UNDERSTANDING OF ACCESS CONTROL LOGGING AND REPORTING SYSTEMSPREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE): SIEM MANAGEMENT INTRUSION PREVENTION SYSTEMS (IPS) SECURITY FRAMEWORKS: NIST CSF CJIS IRS NA5 CMS MARSE APPLICATION SECURITY (APPSEC)
Skills: | Category | Name | Required | Importance | Level | Last Used | Experience | |
Network Security | Application Security | Yes | 3 | Advanced | Currently Using | 4 6 Years | |
Networking & Directories | Access control logging and reporting systems | Yes | 1 | Expert | Currently Using | 6 Years | |
Protocols | IPS | Yes | 2 | Advanced | Currently Using | 4 6 Years | |