Open Until Filled
$39.21 to $51.63 DOQ
JOB TITLE: Senior Cyber Security Analyst
DEPARTMENT: Enterprise Services
POSITION STATUS: Full-time, Appointed, Non-union
REPORTS TO: IT Services Manager/DES Management
JOB LOCATION: Chisago County Government, Center City MN
Contributes to the fulfillment of the County mission and vision by planning, designing and maintaining programs, policies, and management systems in all facets of network security systems, in support of information technology and software application initiatives across the County systems.
NATURE AND SCOPE:
This position works collaboratively with management and staff to achieve system objectives. Under general direction, the position performs all procedures necessary to protect systems and data from intentional or inadvertent access or destruction. Interfaces with user community to understand their security needs, prepares and recommends draft procedures to accommodate them. Ensures that user community understands and adheres to necessary procedures to maintain security. Conducts accurate evaluation of the level of security required.
SUPERVISION RECEIVED: Works under the general direction of the IT Services Manager/DES Management
SUPERVISION EXERCISED: None.
PRINCIPLE ACCOUNTABILITIES:
1) Works with professionalism, integrity, respect and innovation as a member of the Security Services team within IT Services to deliver service to our customers.
2) Develops and maintains security systems and practices to protect the integrity, accuracy, confidentiality and recoverability of data and information across County.
3) Develops, coordinates, and manages security practices standardization, business continuation, service, and security methods, approaches, policies and procedures across the County systems.
4) Works in conjunction with other DES staff to evaluate security for new application systems.
5) Assists in coordinating and conducting security risk assessments to identify risks and potential corrective actions. Participates in development of procedures necessary to ensure the safety of information systems, assets, and to protect systems from intentional or inadvertent access or destruction.
6) Provide guidance to technical and non-technical staff on cybersecurity best practices.
7) Communicates directly to DES Management to assist in coordinating security issues impacting or conflicting with Local, State, Federal privacy regulations. Researches, communicates and implements local, state and federal statutes as they relate to confidentiality and security of patient information, electronic attestation, and other regulations that impact the hardcopy and online storage and protection of information.
8) Monitors systems, logs, and alerts suspicious activities, policy violations, malware, or intrusion attempts. Analyze security events to determine impact, scope, and root cause using established incident response frameworks. Identify indicators of compromise (IOCs) and perform triage on potential security incidents.
9) Performs periodic vulnerability scans and assessments; analyze results and track remediation. Collaborate with system owners to ensure timely patching based on risk severity. Maintain awareness of emerging threats, exploit trends, and security advisories
10) Maintain, tune, and troubleshoot security platforms including SIEM, endpoint protection, IDS/IPS, and identity monitoring solutions. Assist with deployment of new security technologies and enhancements to existing controls.
11) Execute the phases of incident response, including forensic identification, containment, eradication, recovery, and post incident analysis, aligning with organizational IRP and CSIRT procedures. Document incidents, actions taken, and lessons learned; support forensic investigations when required. Coordinate with cross functional teams to manage incident communication and resolution.
12) Other duties as assigned.
DISCLOSURE STATEMENT:
The above statements reflect the general details considered necessary to describe the essential functions of the job as identified and shall not be considered as a detailed description of all work requirements that may be inherent in the position.
QUALIFICATIONS:
Experience
A minimum of 6 years of progressive experience in Information Systems is required, with at least 2 years of cyber security administration experience or cyber security analyst preferred.
Education
Graduation from high school or equivalent.
Requires a minimum of a two-year certificate in, computer science, cyber security, or related field, and 4 years of experience or:
Seven years of progressive experience in work related directly to Network Security, Microsoft networking, PC's and related technologies; or a combination of experience and college to equal 6 years.
KNOWLEDGE, SKILLS, AND ABILITIES:
Must possess strong knowledge of information security management and practice; strong knowledge of applicable laws, regulations, guidelines and professional standards for systems security; strong project management skills; good communication skills; change management skills; demonstrate personal traits of a high level of motivation; team orientation; professionalism; trust; and place a high value on treating others with dignity and respect.
WORKING CONDITIONS:
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
Work is primarily performed within the Government Center and satellite offices. Exposures include those noises commonly related to an information center that houses miscellaneous systems, as well as those exposures that may be encountered while working in other departments.
GENERAL STATEMENT:
Applicants for appointment to this position will be required to submit a formal application and may be subject to rating of education and experience, oral interview and/or reference check. Job related tests may be required of any applicant.
The duties listed above are intended only as illustrations of the various types of work that may be performed. The omission of those specific statements of duties does not exclude them from the position if the work is similar, related or a logical assignment to the position.
This job description does not constitute an employment agreement between the employer and employee as is subject to change by the employer as the needs of the employer and requirements of the job change.