Job description
At Department of Licensing (DOL), we work hard to create a culture where employees feel valued and respected. Employees are trusted and encouraged to be a part of process improvements that impact their work, create value for our customers and help build trust in our government.
Our Information Services Division (ISD) has an amazing opportunity for an IT Security Analyst to add to their unique team!
We are one of the most public facing state agencies and the second largest revenue generating agency in Washington State. We regularly interact with over 6 million Washington State residents and collect nearly $3.3 billion in taxes and fees annually. We know our services are essential to our customers’ ability to live, work, drive, and thrive. We take this responsibility seriously and are committed to ensuring every resident has equitable and meaningful access to our services.
Are you ready to take the next step in your IT Security "Journey"? If so, read on!
Duties
As an IT Security Analyst, you will be protecting DOL’s users from security threats to our information systems. Using your exceptional critical thinking ability, you will ensure that access to systems and data are regulated. Your knowledge and expertise will be an asset when you preform scheduled access reviews on users, confidential data, and systems to protect the agency assets and reduce the risk of unauthorized users. As an IT Security Analyst, you will be a first responder to handling incidents, remediation, and reporting, as well as performing the activities necessary to ensure the safety of information systems and assets, including the protection of information from unauthorized access, modification, and/or disclosure. Working within an established and diverse team of IT Security Analysts, your collaboration ability and clear communication will be an asset to the team's success protecting DOL's data.
Some of what you will do:
- Perform risk assessments and threat modelling for systems and applications, providing remediation recommendations to mitigate findings.
- Perform log management analysis to identify gaps on monitoring and reporting.
- Execute and coordinate Incident and Disaster Recovery exercises.
- Provide updates and recommendation to overarching plans and policies that support those programs.
- Administer agency security awareness platform including conducting regular and randomized phishing campaigns.
- Coordinate and work with other technical teams on policy, compliance, and risk issues.
Qualifications
What you will bring:
- Seven (7) years of combined education and relevant experience in, Information Management, Computer Science, Business Administration, or related field.
Experience must include:
- Technical areas. Specifically: IT System security.
Web application security.
Network discovery and vulnerability assessments.
Intrusion detection/prevention systems.
Log management.
Active Directory.
Data Leakage Prevention.
- Advanced level of knowledge and experience with IT security tools.
- Experience with information security principles, standards, and best practices.
- Skill and experience in designing and applying security controls and processes.
- Advanced level of knowledge and experience of security controls such as: CIS, NIST, and OWASP.
- Current knowledge of and experience in assessment of security vulnerabilities and threats.
- Current knowledge of and experience in IT security incidents and risk analysis.
Experience may be obtained concurrently.
Education to experience equivalency:
Associate’s degree = 2 years | Bachelor’s degree = 4 years | Master's degree = 5 years
What may help set you apart:
- Bachelor’s degree or higher in Computer Science with a concentration in information security or cyber security from an accredited institution.
- Relevant certifications (e.g., CISSP, SSCP, GSEC, CEH, or Security+).
- Experience in performing or assisting with compliance audits and/or security assessments.
- Advanced knowledge and understanding of federal, state, agency, and industry compliance requirements.
- Experience implementing and maintaining IT risk assessments.
- Knowledge and understanding of IT risk management.
Additional Conditions of employment:
- Per Governor Inslee’s Directive 22-13.1(Download PDF reader)state employees must be fully vaccinated effective November 4, 2022. Providing proof of being fully vaccinated is a condition of employment and your vaccine status will be verified prior to starting work. Being fully vaccinated means two weeks after you have received the second dose in a two-dose series of a COVID-19 vaccine or a single-dose COVID-19 vaccine authorized for emergency use, licensed, or otherwise authorized or approved by the U.S. Food and Drug Administration or listed for emergency use or otherwise approved by the World Health Organization. Please reach out to the HR Office at 360-902-4000 if you need information on medical or religious accommodation.
- Prior to a new hire, a background check including criminal record history will be conducted. Information from the background check will not necessarily preclude employment but will be considered in determining the applicant’s suitability and competence to perform in the position.
Job Type: Full-time
Pay: $76,248.00 - $100,032.00 per year
Benefits:
- 401(k)
- Dental insurance
- Employee assistance program
- Flexible schedule
- Flexible spending account
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Parental leave
- Professional development assistance
- Retirement plan
- Tuition reimbursement
- Vision insurance
Experience level:
- 7 years
Schedule:
- 4x10
- 5x8
- Monday to Friday
Ability to commute/relocate:
- Olympia, WA 98501: Reliably commute or planning to relocate before starting work (Required)
Experience:
- Cybersecurity: 7 years (Preferred)
- Information security: 7 years (Preferred)
Work Location: Hybrid remote in Olympia, WA 98501
ravenpropertygroup.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, ravenpropertygroup.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, ravenpropertygroup.com is the ideal place to find your next job.