SOS Cybersecurity Analyst II (JP26-058) - IT Security

CAPPS$75K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • High school diploma or equivalent.
  • 4+ years of experience in information security with a focus on governance, risk, and compliance.
  • Proficiency in Microsoft 365 applications: Outlook, Teams, Word, Excel, and PowerPoint.
  • Knowledge of cybersecurity and information security best practices, laws, and regulations.
  • Desired certifications in security such as CISSP, CISA, CRISC, CISM, CEH, or Security+.
  • Experience with vulnerability assessments and security operations.

Responsibilities

  • Monitor networks and systems for unauthorized activities and potential security incidents.
  • Conduct vulnerability assessments and penetration testing to mitigate risks.
  • Develop and maintain cybersecurity policies and response procedures.
  • Manage and enhance security postures through configuration and tool administration.
  • Support incident response efforts including investigation and documentation.
  • Collaborate with teams, vendors, and agencies for compliance and security practices.
  • Contribute to disaster-recovery planning and user training programs.

Benefits

  • Professional development opportunities.
  • Supportive team-focused work environment.
  • Flexible working hours including potential for remote work.
  • Access to cutting-edge security technologies and best practices.
Full Job Description
Job Description

JOB DESCRIPTION:

Performs moderately complex (journey-level) cybersecurity and information security analysis work for the Office of the Texas Secretary of State's Information Security section. This role blends security operations with governance, risk, and compliance (GRC) responsibilities including vulnerability assessments, policy and standards support, incident detection and response, risk analysis, cyber intelligence, and compliance with state and federal regulatory requirements. May also assist other staff in performing work of greater complexity. Works under general supervision, with moderate latitude for the use of initiative and independent judgment.

Examples of Work Performed
• Monitor networks, systems, endpoints, and threat-intelligence sources to identify unauthorized activity, emerging threats, and potential security incidents.
• Perform as vulnerability assessments, penetration testing, access-control reviews, and security configuration assessments to proactively reduce risk.
• Develop, implement, and maintain cybersecurity policies, standards, and incident-response procedures in alignment with NIST, CJIS, SOS, and other applicable regulatory frameworks.
• Manage and enhance the security posture of the organization through secure system configurations, encryption practices, MFA oversight, and administration of key security tools including logging platforms, endpoint protection, and Microsoft 365 security features.
• Lead or support incident response activities, including investigation, root-cause analysis, containment, remediation coordination, and post-incident documentation.
• Collaborate with internal teams, external vendors, and partner agencies to ensure secure architectures, data-protection practices, and compliance with SLAs, SOWs, and industry best practices.
• Contribute to disaster-recovery and business-continuity planning, and support agency-wide security initiatives, user-training efforts, and awareness programs.
• Prepare clear, actionable reports, dashboards, and briefings to communicate risks, threats, and compliance status to leadership and stakeholders.
• Promote a positive, professional work environment and support team collaboration.
• Adhere to all SOS personnel policies and maintain regular, dependable attendance.
• May require occasional after-hours work.
• Attends work regularly and observes approved work hours in accordance with agency state employee policies and procedures handbook.
• Perform other duties as assigned.

Knowledge, Skills and Abilities
• Knowledge of the limitations and capabilities of computer systems; technology across all mainstream operating systems, and application platforms; operational support of networks, operating systems, Internet technologies, databases, and security applications; and cybersecurity, information security, and privacy laws and regulations; incident response principles, process and documentation; and cybersecurity and information security controls, practices, procedures, and regulations.
• Skill in the use of computers and application software and the configuring deploying, monitoring, and automating of security applications and infrastructure.
• Skills in instructing others, in facilitating workshops, and in the use of a computer and applicable software.
• Strong verbal and written communication skills.
• Strong analysis, problem-solving and decision-making skills.
• Excellent computer skills in Microsoft Office applications.
• Ability to resolve complex security issues in diverse and decentralized environments.
• Ability to plan, develop, monitor, and maintain cybersecurity and information technology security processes and controls.
• Ability to learn new information and security technologies.
• Ability to provide technical assistance or guidance to peers and external clients.
• Ability to handle difficult situations and to identify and solve problems.
• Ability to multitask, prioritize, remain focused, and be flexible to changes.
• Ability to maintain a professional demeanor in interaction with others.
• Ability to adhere to approved work schedule and maintain attendance and punctuality.
• Ability to work overtime and extended hours on projects.
• Ability to develop, plan, and implement short- and long-range goals.
• Highly organized; ability to manage multiple projects simultaneously and meet deadlines.
• Ability to engage in a collaborative, results-oriented team environment.
• A desire to self-reflect, give/receive feedback and continuously improve.

  • Ability to lift and carry boxes weighing up to thirty (30) pounds.


This job description reflects management's assignment of essential functions and position responsibilities. Nothing in this job description restricts management's rights to assign or reassign duties and responsibilities to this job at any time.

Qualifications:

REQUIRED QUALIFICATIONS:
• Graduation from a standard senior high school or equivalent.
• Four (4) years of full-time, paid working experience in information security, focusing on governance, risk, and compliance analysis.
• Experience using Microsoft 365 applications, including Outlook, Teams, Word, Excel, and PowerPoint.

PREFERRED QUALIFICATIONS:
• Graduation from an accredited four-year college or university with major coursework in information technology security, information assurance, computer information systems, computer science, management information systems, or a related field.
• One or more of the following or equivalent industry recognized certifications: Certified Information Systems Security Professional (CISSP)®, Certified Information Systems Auditor (CISA), Certified in Governance, Risk, and Compliance (CGRC), Certified in Risk and Information Systems Controls (CRISC), Certified in Governance Risk and Compliance (CGRC), Certified Information Systems Manager (CISM), Certified Ethical Hacker (CEH), SANS Global Information Assurance Certification (GIAC), CompTIA Security +, or comparative security professional certification.
• Experience in conducting security assessments and/or audits of policies, standards, procedures, and technical environments within state and federal statutes, regulations, and standards relating to information security and computer crime.
• Experience in governance risk and compliance program implementation.
• Experience in development, review, and updating system security plans.
• Experience in Supply Chain Risk Management or 3rd-Party Vendor Risk Assessment programs.
• Experience in vulnerability management programs, or network security (IDS/IPS, Next Gen or Enterprise Firewalls).
• Experience in security operations.
• Experience in Information Privacy.

Information for Veterans, Reservists, or Guardsmen

The following MOS codes are generally applicable to this position: 15P, 36B, 42A, 56M, 68J,

88H, 88N, 89A, 89B, 92A, 92Y, AZ, LS, MC, PS, RP, SN, YN, 641X, 741X, 360, 018, 0100,

0111, 6046, 0102, 0170, 4430, 3A1X1, 8A200. Please include any of these codes in the State of

Texas application to better determine whether the minimum qualifications for this posting have

been met.

About CAPPS

CAPPS Careers

Joining CAPPS presents an unparalleled opportunity to become part of a dynamic team of professionals in a company known for its commitment to innovation, leadership, and diversity. CAPPS is recognized globally for fostering professional growth and embracing transformative technologies to lead industries forward.

Explore Job Opportunities

CAPPS offers a variety of job opportunities that cater to a range of skills and experiences. Whether one is just starting their career or looking to take it to the next level, CAPPS provides a platform where professional aspirations turn into achievements.

Experience the CAPPS Culture

CAPPS is dedicated to creating an inclusive environment where diversity and innovation thrive. The company culture promotes leadership at all levels and encourages employees to take initiative and drive change. With a focus on diversity training, CAPPS ensures that all team members have the tools they need to succeed and contribute to the company's inclusive ethos.

Internship Programs

For those beginning their professional journey, CAPPS offers internship programs that provide invaluable industry experience and networking opportunities. Interns at CAPPS gain hands-on experience, working alongside seasoned professionals and learning about the industry from the inside out.

Benefits of Working at CAPPS

Employees at CAPPS enjoy a comprehensive range of benefits designed to support their health, well-being, and financial security. From competitive salaries to health and wellness programs, CAPPS invests in its team members' success and well-being.

Career Growth and Development

CAPPS is committed to the continuous professional development of its employees. With access to cutting-edge training programs and leadership workshops, team members can expand their skills and advance their careers within the company. CAPPS supports career growth through mentorship, performance feedback, and promotion from within.

Join the CAPPS Team

CAPPS is actively hiring and looking for talented individuals who are passionate, curious, and driven to excel. Explore open positions that match your skills and interests. CAPPS values creative and solution-driven team players who are ready to contribute to the company's success.

Stay Connected with CAPPS Careers

Keep up to date with the latest career tips, industry insights, and company news from CAPPS. Personalize your subscription to receive job alerts, interview tips, and insider perspectives directly from the CAPPS careers team.

Networking and Professional Development

At CAPPS, networking and continuous learning are part of the daily routine. Employees are encouraged to engage with peers, share knowledge, and take part in professional groups to enhance their career trajectory.

Prepare for Your Interview

When applying for a position at CAPPS, ensure your resume reflects relevant experience and skills. Prepare for your interview by researching CAPPS’s major projects and values, demonstrating how your background aligns with the company’s goals and needs.

CAPPS: A Leader in Employment Innovation

As a leader in employment innovation, CAPPS continues to set standards in the industry, offering rewarding career paths and a supportive work environment where every employee can thrive.
Learn more about CAPPS

Similar Jobs

More Jobs at CAPPS

More Information Technology Jobs

Find similar SOS Cybersecurity Analyst II (JP26-058) - IT Security jobs: