North Carolina Department of Agriculture and Consumer Services logo
North Carolina Department of Agriculture and Consumer Services
Posted 54 days agoVerified live 12h ago

IT Security Specialist 2 (Cybersecurity Analyst 2 (02-6529))

Brief overview

Remote
UndergradOr in progress
Incident ManagementVulnerability AssessmentIdentity ManagementComputer Network DefenseInformation AssuranceInformation Systems SecuritySystems Testing and EvaluationWeb SecuritySecurity Information and Event Management (SIEM)Security Orchestration, Automation, and Response (SOAR)Intrusion Detection and Prevention Systems (IDS/IPS)Endpoint Detection and Response (EDR)

About the company

North Carolina Department of Agriculture and Consumer Services logo
North Carolina Department of Agriculture and Consumer Servicesncagr.gov

The N.C.

Job description

Summary

The State of Alaska’s State Security Office protects the state’s information assets, technology resources, and citizen data. The IT Security Specialist serves as an advanced cybersecurity analyst responsible for monitoring and responding to threats, administering enterprise security technologies, analyzing logs and reports, and supporting statewide incident response operations.

Responsibilities

  • Serve as the lead email and identity security analyst, monitoring and triaging threats across the State’s enterprise email and identity platforms—an essential safeguard for devices, user accounts, and data
  • Work independently to complete complex assignments
  • Closely monitor identity-based threats and perform remediation actions as needed
  • Devise methods and processes to analyze and resolve problems that require deviation from routine or available solutions for resolution
  • Administer and support key security technologies such as Endpoint Detection and Response, Secure Email Gateway, Secure Web Gateway, DNS security, SOAR platforms, IDS/IPS, SIEM, firewalls, identity protection solutions, and other enterprise security systems
  • Conduct daily cybersecurity alert analysis and incident response, using advanced defensive tools to determine severity, mitigate threats, and restore secure operations
  • Perform log searches and analysis across diverse sources to support investigations, respond to internal and external requests, and support audit and compliance needs
  • Participate in week-long rotations as part of the 24/7 on-call cybersecurity team, responding to urgent threats and incidents that impact statewide systems
  • Analyze security reports, audit findings, and technical data to provide accurate recommendations, documentation, and solutions to the Security Operations Manager
  • Travel when needed to datacenters or State offices to perform on-site troubleshooting, remediation, or emergency response using State-owned vehicles

Skills

  • Knowledge of defensive measures to detect, respond, and protect information, information systems, and networks from threats
  • Knowledge of methods and procedures to protect information systems and data by ensuring their availability, authentication, confidentiality, and integrity
  • Knowledge of methods, tools, and procedures, including development of information security plans, to prevent information systems vulnerabilities, and provide or restore security of information systems and network services
  • Knowledge of principles, methods, and tools for analyzing and developing systems testing and evaluation procedures and technical characteristics of IT systems, including identifying critical operational issues
  • Knowledge of the principles and methods of web technologies, tools, and delivery systems, including web security, privacy policy practices, and user interface issues
  • Knowledge of the tactics, technologies, principles, and processes to protect, analyze, prioritize, and handle incidents
  • Knowledge of the principles, methods, and tools for assessing vulnerabilities, and developing or recommending appropriate mitigation countermeasures
  • Knowledge of methods and controls to validate the identity of individuals to verify access approval
  • Training in computer science, information systems, information assurance, cybersecurity, or a similar field
  • Professional certification in information systems security
  • Professional experience assessing infrastructure and data to identify vulnerabilities in software and hardware that could expose the infrastructure to a security breach
  • Experience evaluating the effectiveness of existing security measures

Qualifications

Must Haves

  • Knowledge of defensive measures to detect, respond, and protect information, information systems, and networks from threats
  • Knowledge of methods and procedures to protect information systems and data by ensuring their availability, authentication, confidentiality, and integrity
  • Knowledge of methods, tools, and procedures, including development of information security plans, to prevent information systems vulnerabilities, and provide or restore security of information systems and network services
  • Knowledge of principles, methods, and tools for analyzing and developing systems testing and evaluation procedures and technical characteristics of IT systems, including identifying critical operational issues
  • Knowledge of the principles and methods of web technologies, tools, and delivery systems, including web security, privacy policy practices, and user interface issues
  • Knowledge of the tactics, technologies, principles, and processes to protect, analyze, prioritize, and handle incidents
  • Knowledge of the principles, methods, and tools for assessing vulnerabilities, and developing or recommending appropriate mitigation countermeasures
  • Knowledge of methods and controls to validate the identity of individuals to verify access approval
  • Training in computer science, information systems, information assurance, cybersecurity, or a similar field
  • Professional certification in information systems security
  • Professional experience assessing infrastructure and data to identify vulnerabilities in software and hardware that could expose the infrastructure to a security breach
  • Experience evaluating the effectiveness of existing security measures

Benefits

  • Training and professional advancement opportunities
  • A diverse training platform in many areas in support of career goals
  • A team dedicated to developing training plans to help employees meet their career goals
  • Retirement plans with employer contributions
  • Health insurance including medical, dental, and vision coverage with employer contributions
  • Group-based insurance benefits including term life, short-term disability, long-term disability, and pet insurance
  • Health insurance with employer contributions toward medical, vision, and dental coverage
  • Employer-paid Basic Life insurance, with additional coverage available depending on bargaining unit
  • Group-based insurance premiums for term life, long-term and short-term disability, accidental death and dismemberment, long-term care, and supplemental survivor benefits
  • Employee-funded flexible spending accounts for eligible health care or dependent care expenses
  • Membership in the Public Employees Retirement System (PERS)/Teachers' Retirement System (TRS)
  • Matching employer contribution into a defined contribution program for new employees
  • Employer contribution into a defined benefit or defined contribution program for current employees
  • Contributions to the Alaska Supplemental Annuity Plan in lieu of contributions to Social Security
  • Option to enroll in the Alaska Deferred Compensation Program
  • Personal leave with an accrual rate increase based on time served
  • Twelve (12) paid holidays a year
  • Suitable for up to 100% (in-state) telework if all job duties and expectations are able to be met

More jobs like this