State of California

Security Operations Center (SOC) Analyst

State of California$78K — $107K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in Security Operations or related field.
  • Proficiency in SIEM platforms and security analysis tools.
  • Strong understanding of network security methodologies and protocols.
  • Knowledgeable about incident response procedures and risk management.
  • Familiarity with cloud security and access management practices.

Responsibilities

  • Analyze security threats and vulnerabilities to protect CDTFA assets.
  • Develop and operate processes for comprehensive network monitoring.
  • Collaborate with staff to detect and respond to cyber incidents.
  • Maintain knowledge of industry regulations and best practices.
  • Create reports and documentation related to security operations.

Benefits

  • Convenient to public transportation.
  • Nearby (third-party) parking available.
  • Opportunities for career development and generous benefits.
Full Job Description
All applicants will be considered, however SROA/Surplus candidates will be given priority.

Under the direction of the Deputy Chief Information Security Officer/Privacy Officer, Information Technology Manager I (IT Manager I), the Information Technology Specialist I (IT Spec I) is a member of the Security Operations Center (SOC) and the California Department of Tax Fee & Administration's (CDTFA) Cyber Incident Response Team. The IT Spec I demonstrates expertise in Security Operations and is a high-level technical security specialist. The IT Spec I will perform security operations duties on identification of information assets, security detections, security analysis and response activities to advance critical enterprise protection and to provide cyber defense of CDTFA information assets, taxpayer and employee information.

The IT Spec I creates and operates processes and tooling to establish and maintain comprehensive asset and network monitoring and defense against security threats across the enterprise's network infrastructure and user base. The IT Spec I works with enterprise-wide staff to prepare, detect and respond to attacks in a timely manner. The IT Spec I develops and maintains a working level knowledge of relevant IT infrastructure and technologies under the protection of the SOC, of applicable State/Federal and industry regulations and industry accepted best practices according to information security, policies and procedures, threat management and vulnerability, products, practices and processes. The IT Spec I also maintains a working level knowledge of the threat landscape, risk management processes, operating systems, cloud security, identity and access management, network architecture and protocols.

How did you hear about this opportunity? Tell us in this brief survey.

Here is the link to the Information Technology Specialist I examination bulletin.

Here is the link to the Information Technology Specialist I (LEAP) examination bulletin.

Under Government Code 14200, this position may be eligible for partial telework for eligible candidates residing in California. All telework/hybrid schedules require staff to report to the office a minimum number of days per week. Schedules are subject to change.

Currently, per the California Budget Act of 2025, all California Department of Tax and Fee Administration salaries are subject to the provisions of the State of California's Personal Leave Program.

This recruitment has been posted for more vacancies than currently exist as it may be used to fill additional identical vacancies which occur within 180 days of the closing date of this bulletin.

You will find additional information about the job in the Duty Statement .

Working Conditions
  • Position may be located in a high-rise building.
  • Standard office environment.
  • Daily use of a personal computer, office equipment, and/or telephone.
  • Telework is partially available.

Minimum Requirements You will find the Minimum Requirements in the Class Specification.
  • INFORMATION TECHNOLOGY SPECIALIST I
Additional Documents
  • Job Application Package Checklist
  • Duty Statement

Position Details Job Code #:
JC-531810

Position #(s):
291-381-1402-121

Working Title:
Security Operations Center (SOC) Analyst

Classification:
INFORMATION TECHNOLOGY SPECIALIST I $6,513.00 - $8,729.00 A
$7,163.00 - $9,599.00 B
$7,864.00 - $10,537.00 C
New to State candidates will be hired into the minimum salary of the classification or minimum of alternate range when applicable.

# of Positions:
Multiple

Work Location:
Sacramento County

Telework:
Hybrid

Job Type:
Permanent, Full Time

Special Requirements
  • Position requires employee to be fingerprinted and successfully pass a background investigation.

Application Instructions
Dates printed on Mobile Bar Codes, such as the Quick Response (QR) Codes available at the USPS, are not considered Postmark dates for the purpose of determining timely filing of an application.
Final Filing Date: Until Filled
Who May Apply
Individuals who are currently in the classification, eligible for lateral transfer, eligible for reinstatement, have list or LEAP eligibility, are in the process of obtaining list eligibility, or have SROA and/or Surplus eligibility (please attach your letter, if available). SROA and Surplus candidates are given priority; therefore, individuals with other eligibility may be considered in the event no SROA or Surplus candidates apply. Individuals who are eligible for a Training and Development assignment may also be considered for this position(s). Applications will be screened and only the most qualified applicants will be selected to move forward in the selection process. Applicants must meet the Minimum Qualifications stated in the Classification Specification(s).

How To Apply
Complete Application Packages (including your Examination/Employment Application (STD 678) and applicable or required documents) must be submitted to apply for this Job Posting. Application Packages may be submitted electronically through your CalCareer Account at www.CalCareers.ca.gov. When submitting your application in hard copy, a completed copy of the Application Package listing must be included. If you choose to not apply electronically, a hard copy application package may be submitted through an alternative method listed below:

Address for Mailing Application Packages

You may submit your application and any applicable or required documents to:

CA Department of Tax and Fee Administration
Talent Acquisition Section
Attn: Certification Section - JC-531810
651 Bannon Street, Suite 100 MIC: 00

Sacramento , CA 95811

Address for Drop-Off Application Packages

You may drop off your application and any applicable or required documents at:

CA Department of Tax and Fee Administration
Human Resources Bureau (App Drop Off)
Northwest Tower 1st Floor Lobby Drop Box (JC-531810)
651 Bannon Street

Sacramento , CA 95811
Monday - Friday (Excluding Holidays)
08:00 AM - 04:00 PM

Required Application Package Documents

The following items are required to be submitted with your application. Applicants who do not submit the required items timely may not be considered for this job:
  • Current version of the State Examination/Employment Application STD Form 678 (when not applying electronically), or the Electronic State Employment Application through your Applicant Account at www.CalCareers.ca.gov. All Experience and Education relating to the Minimum Qualifications listed on the Classification Specification should be included to demonstrate how you meet the Minimum Qualifications for the position.
  • Resume is required and must be included.
  • Other - A completed Supplemental Questionnaire (SQ) must be submitted with your STD. 678 in order to be considered for this position. Please see the Supplemental Questionnaire Requirement section of this job posting for additional information.
Applicants requiring reasonable accommodations for the hiring interview process must request the necessary accommodations if scheduled for a hiring interview. The request should be made at the time of contact to schedule the interview. Questions regarding reasonable accommodations may be directed to the EEO contact listed on this job posting.

Desirable Qualifications In addition to evaluating each candidate's relative ability, as demonstrated by quality and breadth of experience, the following factors will provide the basis for competitively evaluating each candidate:
  • Knowledge of Security Information & Event Management (SIEM) platforms and related logging.
  • Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions.
  • Knowledge of cyber threats, vulnerabilities, and incident handling methodologies.
  • Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).
  • Knowledge of network security methodologies and computer networking concepts and protocols (e.g., TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services).
  • Knowledge of what constitutes a network attack and a network attack's relationship to both threats and vulnerabilities.
  • Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists).
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
  • Knowledge of network mapping and recreating network topologies.
  • Knowledge of system administration, network, and operating system hardening techniques.
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code).
  • Knowledge of Application Security Risks (e.g. Open Web Application Security Project Top 10 list).
  • Knowledge of authentication, authorization, and access control methods.
  • Knowledge of cloud service models and how those models can limit incident response.
  • Knowledge of malware analysis concepts and methodologies.

Benefits
Working for the State offers great opportunities, generous benefits, and career development. In addition, you can look forward to:
  • Nearby (third-party) parking.
  • Convenient to public transportation.

For more information about the outstanding benefits offered to State Employees https://www.calhr.ca.gov/employees/Pages/salary-and-benefits.aspx

Benefit information can be found on the CalHR website and the CalPERS website.

Contact Information
The Hiring Unit Contact is available to answer questions regarding the position or application process.
Department Website: http://www.cdtfa.ca.gov
Hiring Unit Contact:
Jacob Kulikov
(916) 309-1706

Supplemental Questionnaire Requirement

Applicants must include a Supplemental Questionnaire (SQ) for this recruitment. Applications without an SQ or include an SQ that does not directly answer all the items below will not be considered. Resumes do not take the place of the SQ.

SQ Requirements:

  • Name on SQ.
  • Job Control number on SQ.
  • SQ must be no more than two pages in length, single-spaced.

Respond dir

About State of California

The State of California is a government entity responsible for providing a variety of services to its residents, including education, healthcare, and public safety. The state was admitted to the Union in 1850 and has since grown to become the most populous state in the United States. California is known for its diverse geography, including beaches, mountains, and deserts. The state government is committed to promoting economic growth and improving the quality of life for all Californians.
Learn more about State of California
Size
150 employees
Industry
NASDAQ

Similar Jobs

More Jobs at State of California

More Information Technology Jobs

Find similar Security Operations Center (SOC) Analyst jobs: