IT Security Analyst
Please apply online at: IT Security Analyst - Richmond, Virginia, United States
Title: IT Security Analyst
State Role Title: Information Technology Specialist
Hiring Range: $76,214 - $123,848
Pay Band: 5
Agency: VA Dept of Transportation
Location: Old Hwy. Building
Agency Website: https://www.virginiadot.org/jobs
Recruitment Type: General Public - G
What drives you? Whether it's knowing the work you do makes a difference, having a great work/life balance, working on exciting and challenging projects, leading innovation and championing change or simply working with a great group of people who are committed to professionalism. At the Virginia Department of Transportation, we have something for you.
Job Duties
The successful candidate for this role will provide direction, leadership and management of the VDOT Information Security Awareness Program. Formulate plans and develop policies to implement and manage activities that promote Information Security Awareness in VDOT. Manage and direct development, presentation and evaluation of information security training to users. Research, analyze and evaluate new information security products and features. Oversee and direct testing of information security measures implemented in VDOT applications. Participate in the development, testing and implementation of the VDOT COOP Plan. Coordinate information security awareness strategies with other VDOT stakeholders.
New Technologies - Research, analyze and evaluate information security awareness technologies and processes. Develop RFIs for evaluation of information security hardware and software. Meet with vendors and coordinate demonstrations of new products.
Project Documentation - Prepare documentation, develop user manuals, develop training materials and conduct user training and testing.
IT Policy Compliance - Ensure compliance with VDOT and VITA policies, standards and guidelines governing IT computer systems.
Training - Develop, deliver and evaluate information technology training for VDOT employees and other users statewide. Provide content and management for on-line training system and other manual and automated training tools. Evaluate program effectiveness and implement improvements.
Security Training - Develop, deliver and evaluate information security training for VDOT employees and other users statewide. Respond to User Network System Access Requests in the SARA on-line applications and to SARA System Alerts related to the training tool. Resolve system issues and errors. Maintain information security awareness web page.
Security Administration - Administer the VDOT Information Security Awareness and Training program. Provide day-to-day operational oversight and support for training program. Develop guidance on information security practices, technologies and services to promote information security awareness. Provide consultation services related to risk assessments, business impact analyses, disaster recovery plans and implementation of information security awareness strategies. Provide end-user programs to articulate end-user responsibilities. Incorporate acceptable use policy in training programs and establish mechanisms to identify and report violations.
Project Lead - Serve as functional or technical lead on new projects or projects to enhance and maintain existing information systems.
IT Program Support - Provide program support to assigned IT program area.
Requirements:
• Skill in the use of computers and software and hardware applications
• Ability to investigate, research, analyze and evaluate information technology trends and management practices and make program recommendations
• Ability to investigate, research analyze and evaluate information security trends and management practices and make program recommendations
• Ability to document workflows
• Ability to negotiate time frames
• Skill in short- and long-range planning
• Ability to think analytically and strategically
• Knowledge of project management best practices
• Knowledge of security trends, security management practices, security models and architecture, and security policies
• Ability to provide technical support to customers by analyzing, designing, developing and implementing technology solutions
• Ability to be detail-oriented, organized and self-motivated
• Ability to establish and maintain effective working relationships with agency business and technical staff, other governmental employees, and vendors
• Knowledge of applications systems development, security models and architecture, access models, telecommunications and networking
• Ability to communicate effectively orally and in writing with internal and external customers to include making presentations and conducting training
• Ability to analyze and debug data
• Ability to develop, deliver and evaluate on-line training programs in multiple formats
• Ability to multi-task
• Knowledge of complex information security programs and principles serving multiple operating units, locations and missions
Minimum Qualifications
• Skill in the use of computers, software and hardware applications
• Knowledge of security trends, security management practices, security models, architecture and security policies
• Knowledge of applications systems development, security models, architecture, access models, telecommunications and networking
• Ability to investigate, research, analyze and evaluate information security trends and management practices and make program recommendations
• Experience with information security programs and guidance for a complex organization with multiple operating units, locations and missions
• Ability to develop, deliver and evaluate on-line training programs in multiple formats
• Ability to communicate effectively both orally and in writing on technical subjects
Additional Considerations
• CISSP certification.
• A combination of training, experience, or education in Business Administration, Public Administration, Information Technology or related field desired.
• Experience with information security programs and guidance for a complex organization with multiple operating units, locations and missions.