Offres d'emploi

Trouvez des postes près de chez vous, sur site, hybrides ou à distance.
  • Emplois similaires à : Senior IT Security Analyst
XX
Senior IT Security AnalystState of New MexicoUnited States
XX

Senior IT Security Analyst

State of New Mexico
  • US
    United States
  • US
    United States

À propos

$35.37 - $53.05 Hourly
$73,568 - $110,352 Annually
This position is a Pay Band C10
Posting Details
The New Mexico Division of Vocational Rehabilitation (NMDVR) is a state-run agency dedicated to assisting individuals with disabilities in achieving employment success. Through services such as vocational counseling, job placement assistance, training and education, assistive technology, and support services, NMDVR aims to enhance the employability and independence of people with various disabilities. Tailoring its programs to meet individual needs, the agency is committed to facilitating competitive employment and fostering independence among its clientele.
This posting will be used for ongoing recruitment and may close at any time. Applicant lists may be screened more than once.
Why does the job exist?
The role of the Senior IT Security Analyst exists to manage and mitigate risks related to security and regulatory compliance, ensuring that the organization operates securely and in accordance with state/federal regulations and industry standards. The position's expertise and responsibilities are crucial for safeguarding NMDVR against internal and external threats.
How does it get done?
Under direct supervision of the NMDVR Director, the incumbent of this position will support the agency's information security program through the management and oversight of cybersecurity tools, risk management activities, security audits and assessments, compliance monitoring, incident response, security architecture, disaster recovery planning, continuous improvement initiatives, and employee security awareness and training efforts.
The position will work closely with the Chief Information Officer (CIO) to ensure the proper configuration and security of IT systems, including the protection of information both in transit and at rest, while supporting ongoing vulnerability assessments and periodic penetration testing activities to strengthen the agency's overall cybersecurity posture. The incumbent will also assist in the development and implementation of a comprehensive, risk-based information security program aligned with agency operational and compliance requirements.
¿ Oversee the implementation, administration, and maintenance of information security tools and technologies, including firewalls, antivirus solutions, intrusion detection/prevention systems, and access control systems. ¿ Monitor emerging cybersecurity threats, vulnerabilities, and industry trends to recommend and implement enhancements to security policies, procedures, controls, and technologies. Collaborate with vendors to evaluate security solutions and ensure compliance with organizational security requirements. Develop, test, and maintain disaster recovery and business continuity plans to support organizational resilience and regulatory compliance. ¿ Conduct risk assessments of IT systems, applications, networks, and infrastructure to identify potential vulnerabilities and develop mitigation strategies and risk management plans. ¿ Perform security audits, vulnerability assessments, and compliance reviews of IT systems, applications, databases, and networks to identify security weaknesses and ensure adherence to established standards and policies. ¿ Monitor and ensure compliance with applicable regulations, standards, and best practices related to information security and data protection, including National Institute of Standards and Technology (NIST) guidelines and Personally Identifiable Information (PII) requirements. ¿ Assist in the design, implementation, and maintenance of secure IT architectures, systems, and security controls. ¿ Lead and coordinate incident response activities related to cybersecurity events, including investigation, containment, remediation, recovery, and response to security alerts. ¿ Develop and deliver cybersecurity awareness and training programs to promote organizational security best practices and employee compliance. ¿ Perform other duties as assigned.
Who are the customers?
Internal and external customers.
Ideal Candidate
The ideal candidate will possess strong knowledge of information security principles, cybersecurity frameworks, risk management practices, and regulatory compliance standards. The successful candidate will demonstrate the ability to identify and mitigate security risks, conduct security assessments, respond effectively to security incidents, and support the development and implementation of secure IT systems and processes. The ideal candidate will have excellent analytical, problem-solving, and communication skills, with the ability to collaborate effectively across technical and non-technical teams. Experience with security tools and technologies, disaster recovery planning, compliance monitoring, and security awareness training is highly desirable. The selected candidate must demonstrate sound judgment, attention to detail, initiative, and a commitment to maintaining the confidentiality, integrity, and availability of organizational information systems and data.
Minimum Qualification
Bachelor's degree in Computer Science, Management Information Systems (MIS), Information Technology, Engineering, or similar technical degree and three (3) years of experience in IT security or compliance validation (e.g., HIPAA, PCI). Any combination of education from an accredited college or university in a related field and/or direct experience in this occupation totaling seven (7) years may substitute for the required education and experience. A certificate in IT security/forensics (e.g., CISSP, CEH, CCFP, CCSP, HCISPP, SSCP) or regulated compliance (e.g., PCIP, ASV, ISA, QSA) can be used to substitute one (1) year of experience.
Employment Requirements
Occasional travel is required.
Working Conditions
Work will be performed in an office environment. Many requests will arrive by phone or in-person and the person must be able to speak and respond to the requester clearly. The person will work extended periods seated in front of a computer. The person must be able to operate a computer, keyboard, and mouse. Position requires occasional 1) travel, 2) night/weekend/holiday work, and 3) call-back work.
Supplemental Information
Do you know what Total Compensation is? Click here
Agency Contact Information: Tina Montoya (505) 264-3944 Email
For information on Statutory Requirements for this position, click the Classification Description link on the job advertisement.
The NMDVR is an equal opportunity employer. If an applicant selected for an interview needs a reasonable accommodation to participate in the interview process, please inform the agency contact listed in the job posting.
Bargaining Unit Position
This position is not covered by a collective bargaining agreement.
  • United States

Compétences linguistiques

  • English
Avis aux utilisateurs

Cette offre provient d’une plateforme partenaire de TieTalent. Cliquez sur « Postuler maintenant » pour soumettre votre candidature directement sur leur site.