City of Baltimore (Mayor and City Council of Baltimore)

Workday Security Administrator (NCS) - BCIT

Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, IT, Cybersecurity, or related field.
  • 3-5 years of experience in Workday as a Security Administrator, Configurator, or similar role.
  • Experience in the public sector or government environment is highly desirable.
  • Preferred Workday Pro certifications (Platform Administrator and Security).
  • Preferred CISSP and CISA certifications.

Responsibilities

  • Design, implement, and maintain role-based access control structures in Workday.
  • Develop and enforce Segregation of Duties (SoD) policies to mitigate risks.
  • Manage Workday landscape security including hardening, transport, and interface security.
  • Configure and monitor security audit logs and respond to security incidents.
  • Liaise for internal and external security audits and implement remediation plans.
  • Conduct regular security scans and vulnerability assessments.
  • Manage the end-to-end lifecycle of Workday user accounts and maintain security documentation.

Benefits

  • Opportunity to work in a governmental setting with a focus on security compliance.
  • Engage in a critical role that directly impacts the confidentiality of sensitive data.
  • Collaboration with the InfoSec team to enhance security measures.
  • Exposure to advanced security technologies and practices.
  • Potential for professional growth and development within the public sector.
Full Job Description
THIS IS A NON-CIVIL SERVICE POSITION

Salary Range:

$101,034.00 - $166,502.00 Annually

Hiring Salary Range:

$101,034.00 - $133,768.00 Annually

Job Summary:

The City of Baltimore is seeking a highly skilled and motivated Workday Security Administrator to join our Workday Product Management Support (WPMS) team. This critical role is responsible for configuring, maintaining, and advising on security within the Workday application (including domain security policies, roles, and role assignments). The successful candidate will collaborate with the Information Security (InfoSec) team to ensure the confidentiality, integrity, and availability of all Workday-related data, protecting sensitive financial, HR, and operational information from internal and external threats, and ensuring compliance with all relevant City, State, and Federal regulations.

Essential Functions
Security Design and Implementation
  • Role and Authentication Management: Design, implement, and maintain robust role-based access control (RBAC) structures, user authentication policies, and permission matrices within the Workday system.
  • Segregation of Duties (SoD): Develop and enforce Segregation of Duties (SoD) policies to mitigate financial and operational risk.
  • Security Architecture: Design and manage Workday landscape security, including client/instance hardening, transport security, interface security, and secure configuration of gateway and message server services.
  • System Hardening: Apply security patches, updates, and configuration best practices to harden the Workday application.
Monitoring, Audit, and Compliance
  • Security Monitoring: Configure and monitor security audit logs, critical transaction usage, and suspicious activity within the Workday system; respond promptly to security incidents.
  • Internal/External Audits: Serve as the primary security liaison for internal and external audits; provide evidence of compliance and implement remediation plans for identified control deficiencies.
  • Policy Enforcement: Ensure all Workday security policies and procedures align with City and regulatory standards (e.g., PCI-DSS compliance, GDPR for resident data, etc., if applicable).
  • Vulnerability Management: Conduct regular security scans, penetration testing, and vulnerability assessments of the Workday platform.


  • Workday-delivered reports can help you answer security-related questions.
Operational Maintenance and Support
  • User Lifecycle Management: Manage the end-to-end lifecycle of Workday user accounts, including provisioning, de-provisioning, access reviews, and emergency access procedures.
  • Integration Security: Manges security groups for integrations and ensures the integration functions as expected and does not expose sensitive data due to misconfigured permissions. Maintains detailed records of integration security configurations for audit purposes.
  • Single Sign-On (SSO): Configure and maintain integration with the City's identity management system for Single Sign-On (SSO) and Multi-Factor Authentication (MFA).
  • Security Policy Change Control: Participate in change control reviews to ensure security policies and data privacy standards are aligned with City and regulatory standards
  • Documentation: Create and maintain comprehensive security documentation, standard operating procedures, and runbooks for all Workday security controls.
  • Technical Account Management (TAM): Engage with Workday TAM to stay updated on new security features within the application's future roadmap and implement where possible.


Minimum Qualifications

Education: have a bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.

AND

Experience: Minimum 3-5 years of hand-on experience with Workday as a Security Administrator or Configurator or security related role.

Experience in the public sector or government environment is highly desirable.

Certifications (Preferred)
  • Workday Pro Platform Administrator Certification
  • Workday Pro Security Certification
  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Systems Auditor (CISA)


Knowledge, Skills, and Abilities
  • Solid understanding of the Workday configurable security framework, security features and controls
  • Ability to accurately collect information in order to understand and assess the clients' needs and situation
  • Working knowledge of HR/Finance information systems, data models organization structures, and roles
  • Strong verbal and written communication skills to interact with functional and IT clients
  • Comfortable enforcing adherence to security policies and practices
  • Excellent problem-solving and analytical skills, with the ability to identify and address complex issues
  • Effective communication and collaboration skills, with the ability to work cross- functionally

Technical Skills (Required)
  • Proficiency in Security Information and Event Management (SIEM) tools (e.g.,Splunk, Microsoft Sentinel, and IBM QRadar) or Governance, Risk, and Compliance (GRC) tools (e.g., SAP GRC Access Control) for continuous monitoring and violation remediation.

  • Understanding of network protocols, security concepts, and best practices for secure application and infrastructure design.
  • In-depth knowledge of Workday security concepts including Role-Based Access Control (RBAC), Transactional Authorization, and Parameter Management.
  • Strong understanding of network security principles, firewalls, and secure communication protocols (TLS/SSL, SAML, OAuth).
  • Experience with Identity and Access Management (IAM) and privileged access management (PAM) solutions.
  • Familiarity with database security best practices (e.g., Oracle Database Security, SQL Server Security).
  • Analytical Thinking: Ability to quickly assess complex security risks and design effective, pragmatic solutions.
  • Communication: Excellent written and verbal communication skills, with the ability to clearly articulate technical risks to both technical teams and non-technical stakeholders.
  • Collaboration: Proven ability to work effectively across functional teams (HR,Finance, Procurement) to understand business processes and translate them into secure technical controls.
  • Integrity: High degree of professionalism and integrity in handling sensitive City data.
  • Organizational and Time Management: Proven ability to prioritize tasks and work on multiple projects simultaneously.


Additional Information

Background Check

Eligible candidates under final consideration for appointment to positions identified as positions of trust will be required to complete authorization for a Criminal Background Check and/or Fingerprint must be successfully completed.

Probation

All persons, including current City employees, selected for this position must complete a mandatory six-month probation.

About City of Baltimore (Mayor and City Council of Baltimore)

City of Baltimore Careers

Joining the City of Baltimore presents a unique opportunity to become part of a team dedicated to the growth and improvement of the community. The city offers a wide range of job opportunities and career paths, providing a platform for professional development and personal growth.

Explore Career Opportunities

The City of Baltimore is constantly seeking skilled, passionate, and creative individuals ready to contribute to their dynamic team. With diverse job opportunities ranging from public health to engineering, finance to community development, the city is a place where every professional can find their niche.

Professional Growth and Development

At the City of Baltimore, career growth is a priority. Employees are encouraged to enhance their skills through leadership training programs and continuous learning opportunities. The city supports career advancement through professional development courses and diverse internship programs, ensuring that every team member has the tools to succeed.

Diversity and Inclusion

The City of Baltimore is committed to fostering a workplace culture enriched by diversity and inclusion. Diversity training programs are integral, ensuring that all employees have the opportunity to work in a respectful and welcoming environment. The city values the innovation that comes from a diverse workforce and strives to maintain an inclusive atmosphere.

Benefits and Culture

Employees at the City of Baltimore enjoy a comprehensive benefits package that supports both their professional and personal lives. Benefits include health insurance, retirement plans, and paid time off, among others. The city's culture emphasizes teamwork, respect, and integrity, providing a solid foundation for all employees to thrive.

Networking and Community Engagement

Networking is a vital part of the career journey at the City of Baltimore. Employees have numerous opportunities to connect with leaders and peers within and outside their departments, enhancing their professional network and opening doors to new challenges and opportunities. Community engagement initiatives also allow employees to make meaningful contributions to the city they serve.

Applying for a Position

To apply for a position with the City of Baltimore, candidates should prepare a resume that highlights relevant experience and skills. The hiring process may include an interview, where candidates have the chance to demonstrate their suitability for the role. Interested individuals are encouraged to visit the City of Baltimore Jobs portal to explore available positions and submit their applications.

Stay Connected

Keep up to date with new job alerts, employment trends, and insider tips by subscribing to the City of Baltimore Careers newsletter. This resource provides valuable information to help potential candidates and current employees stay ahead in their career paths.

Join the Team

The City of Baltimore looks for individuals who are solution-driven and eager to make a difference. Search open positions that match your skills and interests on the City of Baltimore Jobs portal. Discover the rewarding opportunities that await at the City of Baltimore, where every job is a chance to contribute to the city’s future.
Learn more about City of Baltimore (Mayor and City Council of Baltimore)

Similar Jobs

More Jobs at City of Baltimore (Mayor and City Council of Baltimore)

More Information Technology Jobs

Find similar Workday Security Administrator (NCS) - BCIT jobs: