Cybersecurity Analyst IV

Job Description

Position Title:

Cybersecurity Analyst IV

Class/Group:

0322/B29

Military Occupation Specialty Code:

Army 17C, 25B, 25D, 170A; Coast Guard CYB10, CYB11, CYB12; Marine Corps 0605; Air Force 1D7X1, 3D0X2; Space Force 5C0X1D, 5C0X1N

Fair Labor Standards Act Status:

Exempt

Number of Vacancies:

1

Division/Section:

Chief Operations Office/Cybersecurity Operations

Salary Range:

$9416.67 – $10,000.00 / monthly

Duration:

Regular

Hours Worked Weekly:

40

Work Schedule:

This position may be eligible for flexible work hours and/or a hybrid work schedule if certain program guidelines are met; working arrangements may change at any time at the sole discretion of the agency.

Travel:

Occasional

Agency Address:

300 West 15th Street, #1300 / Austin, Texas 78701

Web site:

https://dir.texas.gov/

Refer Inquiries to:

People and Culture Office

Telephone:

(512) 463-5920 or (512) 475-4957

How To Apply:

  • Select “Apply Online” to apply for the job at https://capps.taleo.net/careersection/ex/jobsearch.ftl?lang=en
  • You must create a CAPPS Career Section candidate profile or be logged in to apply.
  • Update your profile and apply for the job by navigating through the pages and steps.
  • Once ready, select “Submit” on the “Review and Submit” page.
  • If you have problems accessing the CAPPS Career Section, please email the CAPPS Recruiting Help Desk at capps.recruiting@cpa.texas.gov

Special Instructions:

  • Applicants must provide in-depth information in the EXPERIENCE & CREDENTIALS section to demonstrate how they meet the position qualifications. Incomplete applications may result in disqualification.
  • Resumes may be uploaded as an attachment but are not accepted in lieu of the information required in the EXPERIENCE & CREDENTIALS section of the application.

Interview Place/Time:

Candidates will be notified for appointments as determined by the selection committee.

Selective Service Registration:

Section 651.005 of the Government Code requires males, ages 18 through 25 years, to provide proof of their Selective Service registration or proof of their exemption from the requirement as a condition of state employment.

H-1B Visa Sponsorship

We are unable to sponsor or take over sponsorship of an employment Visa at this time.

Equal Opportunity Employer

The Department of Information Resources does not exclude anyone from consideration for recruitment, selection, appointment, training, promotion, retention, or any other personnel action, or deny any benefits or participation in programs or activities, which it sponsors on the grounds of race, color, national origin, sex, religion, age, or disability. Please call 512-463-5920 to request reasonable accommodation.

What We Do

The Texas Department of Information Resources is the state agency charged with protecting the state’s data and critical technology infrastructure, managing a multi-million-dollar cooperative contracts program, and providing strategic technology leadership, solutions, and innovation to all levels of Texas government. DIR is a fast-paced and collaborative environment with highly motivated and engaged employees dedicated to achieving the best value for the state.

Position Summary

This position supports the Enterprise Cybersecurity Operations at DIR focused on the Shared Technology Services (STS) Datacenter Services (DCS). The Cybersecurity Analyst job classification series is a subset of information security, which focuses on protecting data from cyber-related attacks. Employees typically monitor for any trace of invasion or improper access of data by performing threat and incident detection, incident response, and forensics activities.

The Cybersecurity Analyst performs advanced (senior level) cybersecurity analysis work. This position works with the service providers and agency security personnel to develop and implement cybersecurity initiatives based on industry best practices. Work also involves protecting cybersecurity assets and delivering cybersecurity incident detection, incident response, threat assessment, cyber intelligence, and software security services. May supervise the work of others. Works under limited supervision, with considerable latitude for the use of initiative and independent judgment.

  • Supports the overall security operations program. Provides assistance, and advice to DIR customers, agency management and staff regarding security procedures.
  • Monitors and analyzes cybersecurity alerts from cybersecurity tools, network devices, and information systems.
  • Monitors and maintains cybersecurity infrastructure and/or policies and procedures to protect information systems from unauthorized use. Reviews operational solutions to ensure compliance with approved security practices.
  • Researches and implements new security risk and mitigation strategies, tools, techniques, and solutions for the prevention, detection, containment, and correction of data security breaches.
  • Performs forensic analysis of network traffic logs and security tools to support incident investigations.
  • Maintains up-to-date knowledge of cybersecurity vulnerabilities, exploits, and threats especially emerging threats.
  • Works as a first responder and security incident handler to security incidents across DIR’s shared services programs. Participates in an on-call rotation for security incidents.

Other Duties

  • May occasionally manage multiple projects.
  • Performs other work-related duties as assigned.

Qualifications:

Education

  • Graduation from an accredited four-year college or university with major coursework in information technology security, computer information systems, computer science, management information systems, or a related field
  • Additional work-related experience may be substituted for education on a year-for-year basis (High-school diploma required).

Experience and Training Required

  • Seven (7) years of progressively responsible experience in the IT industry.
  • Three (3) years of progressively responsible experience in IT security analysis or IT security management.
  • Experience in security policy development and implementation.
  • Experience in implementing security platforms, processes, and tools.
  • Experience with security tools and platforms such as intrusion detection systems (IDS)/intrusion protection systems (IPS), security information/event management (SIEM), endpoint protection, firewalls, vulnerability scanning, penetration testing, and cloud security services and controls.
  • Experience with detecting and assessing threats such as network and asset vulnerabilities.

Experience and Training Preferred

  • Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), GIAC Security Essentials Certification (GSEC), or equivalent certification.
  • Experience in cybersecurity analysis or cybersecurity management in state government or other highly regulated environment.
  • Experience in security incident handling, investigation, and/or response.
  • Experience and training in analyzing, recommending, developing, and implementing cybersecurity policies, standards, and guidelines.
  • Experience working with state or federal IT regulatory issues and processes.
  • Experience in a leadership or supervisory role.

Knowledge, Skills, and Abilities

  • Knowledge of relevant DIR IT Security Services and regulations including Texas Government Code Chapter 2059, Texas Administrative Code § 202, and other related security codes, documentation, and best practices.
  • Knowledge of National Institute of Standards (NIST) SP 800-53 processes and standards.
  • Knowledge of standard concepts, practices, and procedures for cybersecurity operations or command centers.
  • Knowledge of security incident investigative best practices.
  • Knowledge of the limitations and capabilities of computer systems and technology; technology across all mainstream networks, operating systems, and application platforms.
  • Knowledge of operational support of networks, operating systems, Internet technologies, databases, and security applications and infrastructure.
  • Knowledge of cybersecurity and information security controls, practices, procedures, and regulations.
  • Knowledge of cloud architecture and security.
  • Skill in configuring, deploying, and monitoring security infrastructure.
  • Skill in collecting and analyzing complex data; in evaluating information and systems; in drawing logical conclusions; in assessing the effectiveness of internal controls over key information technology risks; in identifying significant exposures; in analyzing transactions and management information; in detecting changes in key risks and/or control effectiveness; in developing appropriate recommendations to address exposures; and in using analytical software tools, data analysis methods, and other computer applications preferred.
  • Ability to communicate both verbally and in writing, in a clear and concise manner with the ability to adapt information delivery based on target audience.
  • Ability to take ownership of systems and processes.
  • Ability to quickly adapt to rapidly changing business needs and operational directives and deliver superior results.
  • Ability to resolve complex security issues in diverse and decentralized environments.
  • Ability to assist executives, through discussion and facilitation, in the process of evaluating and implementing security architecture and policies.
  • Ability to establish and maintain effective and cordial working relationships at all organizational levels, including agency management, direct supervisors, co-workers, internal and external customers.
  • Ability to understand, follow and convey brief oral and/or written instructions.
  • Ability to communicate both verbally and in writing, in a clear and concise manner.
  • Ability to work independently and as part of a team, and to support and contribute to a cohesive team environment.
  • Ability to work under pressure and exacting schedules to complete assigned tasks.
  • Ability to work occasional overtime and/or a flexible schedule as needed to meet required deadlines.
  • Ability to travel as necessary.
  • Ability to comply with all agency policy and applicable laws.
  • Ability to comply with all applicable safety rules, regulations, and standards.

Computer Skills

  • Proficiency in the use of a computer and applicable software necessary to perform work assignments e.g., word processing, spreadsheets (Microsoft Office preferred).

Other Requirements

  • Regular and punctual attendance at the workplace.
  • Criminal background check.
Job Category
Computer and IT
Job Type
Full Time/Permanent
Salary
USD 9,416.67 - 10,000.00 per month
Country
United States
City
Austin
Career Level
unspecified
Company
CAPPS
JOB SOURCE
https://capps.taleo.net/careersection/ex/jobdetail.ftl?job=53702