Job Overview
This position will primarily work in the area of information security operations. The ideal candidate will have education or experience in the field of information security operations. Responsibilities may include, but are not limited to: endpoint security, full-disk encryption, multi-factor authentication, security incident and event management (SIEM), SSL and client certificate management, vulnerability management, privileged access management, password management, system/application…
administration for security related technologies, as well as departmental customer service via enterprise incident ticketing system and departmental mailboxes.
Essential Functions
- Participate in peer knowledge sharing groups.
- Communicate security concepts effectively, with guidance.
- Assist with development of technical documentation (designs, specifications, processes, workflows) and communications.
- Document individual progress on assigned deliverables.
- Participate in gathering of metrics for area of responsibility.
- Carry out procedures to ensure that support departmental and university operations in the information security area.
- Maintain familiarity with information security trends and best practices.
- Participate in internal information security projects and initiatives.
- Participate in preparation and maintenance of functional documentation for assigned tasks.
- Participate in the research, design, implementation, and support of systems supporting information security tools and services.
- Participate in the development, maintenance, and utilization of standard operating procedures.
- Participate in conducting risk and vulnerability assessments of information systems to identity vulnerabilities, risks, and protection needs.
- Participate in troubleshooting processes during and outside of normal business hours.
- Assist with mentoring non-security teams regarding risk management, information security controls, incident analysis, incident response, monitoring, and other operational tasks (tools, techniques, procedures) in support of technologies managed by the Office of Information Security (OIS).
- Assist with information security training and awareness programs.
- Perform related duties based on departmental need. This job description can be changed at any time.
Required Education
Associate's Degree in Computer Science, Information Technology, Computer Engineering, or related field. Two (2) years of relevant work experience and/or other specialized training can be used in lieu of education requirement.
Required Experience
Possess working knowledge of commonly-used concepts, practices, and procedures and contributes through support, using established processes, methods, and systems.
Additional Qualifications Considered
CISSP, CISM, GISP, GSEC, SEC+ or similar information security certification(s) are preferred.