Cybersecurity Analyst (Enterprise Supervising Technology Analyst)

CITY OF SAN JOSE
San Jose, California United States  View Map
Posted: Oct 15, 2024
  • Salary: $141,697.92 - $172,645.20 Annually USD Annually
  • Salary Top:172645
  • Full Time
  • Administrative Analysis and Research
  • Information Technology and Communication Services
  • Job Description

    Our diverse and inclusive workforce of more than 7,000 employees play a key role in the success of San José, the heart of the Silicon Valley. All City of San José employees work together as one team to make San José a vibrant, innovative, and desirable place to live and work. Visit here to learn more about our One Team Leadership Values and Expectations, including quality and excellent customer service and here to learn more about San José.

    About the Department

    The City of San José innovates to provide exceptional civic services using advanced technologies to help our community thrive.

    As one of the largest cities in the nation, the City manages a large set of services and assets. The City operates on a budget of $5 billion, with approximately 7,000 employees serving about 1 million residents and 80,000 businesses in the heart of Silicon Valley.

    The Information Technology Department’s (ITD) mission is to enrich the quality of life in San José through innovation, collaboration, and engagement. ITD enables that mission through business and infrastructure systems, cybersecurity, data management and analysis, responsible use of Artificial Intelligence (AI), productivity and collaboration tools, the San José 311 resident experience platform, data equity and privacy programs, and strategic planning. San José is powered by truly great people, a robust technology environment, and a strong sense of purpose.
    The IT department is a leader in innovation, embracing cutting-edge technologies and pioneering solutions to enhance efficiency and quality of life in San José. As part of this effort, the City leads a national initiative for AI through the GovAI Coalition, which was established to give local governments a voice in shaping the future of AI, ensuring it is developed responsibly for the public good.

    Promoting the City’s commitment to equity and inclusion, we believe that all members of the community, regardless of background, have access to the tools and resources needed to thrive in the digital age. San José is located in the heart of Silicon Valley, which boasts a rich history in technology, education, and agriculture. Over half of San José residents speak a language other than English at home, highlighting the importance of language accessibility in all City services. By fostering inclusivity, promoting digital literacy, and building accessible platforms, we are advancing technology while creating a more equitable future for everyone.

    At the City of San José, we promote work-life integration and a focus on growth to bring out the best in our people. Come join us in making San José the most vibrant, equitable, sustainable, and innovative city in the nation! Visit the Information Technology Department’s website to learn about our culture, vision, leadership, and innovative initiatives.

    Position Duties

    NOTE - The first review of applications was on Monday, August 5, 2024. We will conduct another round of application review on Wednesday, October 30, 2024. Please submit your application by 11:59 p.m. (PST) on Tuesday, October 29, 2024, if you would like your application to be included in the first review. Candidates who pass the first application review round will be invited to interviews on the week of November 18, 2024.

    The City of San José Information Technology Department (ITD) seeks a Cybersecurity Analyst (Enterprise Supervising Technology Analyst) to support new and existing initiatives in the Cybersecurity Office. The position will focus on Risk Mitigation as well as Identity & Access Management with exposure and support on all aspects of the Cybersecurity practice, including cross-support.

    The ideal candidate will be part of one of the largest, most innovative communities in the nation. Led by the City Information Security Officer (CISO), the Cybersecurity Analyst will implement and manage information and system security programs across the City that keep municipal services secure and resilient. The Cybersecurity Analysts will support the CISO and the City by administering risk identification, protection and compliance, threat detection, incident response, and recovery services for all City departments to achieve business resilience.

    The City of San José requires Cybersecurity Analysts to be highly skilled and adapt quickly to deal with emerging challenges. The candidate must be able to apply expertise in all aspects of security, interface with vendors, keep their skills current, manage security projects, and provide security services to City departments with strong outcomes.

    Key responsibilities include but are not limited to the following:
    • Building and maintaining a robust Identity and Access Management program with the following characteristics:
      • Auditing and Reporting
      • Role-based Access Control
      • Single Sign-On
      • Federation
      • Identity Lifecycle (Workflow management)
      • Privileged Identity Management
      • Provisioning
      • Compliance
      • Policy Management
    Defining, planning, and executing security-related projects from beginning to end.Managing vendors to execute tasks on demand or as part of a project.Building and managing a strong vulnerability management program. The ideal candidate will have hands-on experience with vulnerability management tools and a strong technical understanding and experience assessing vulnerabilities and identifying weaknesses in multiple operating system platforms, databases, and application servers.Building and managing a strong IT asset management program. The ideal candidate will have a strong background in maintaining IT asset inventories, software, hardware, and logical inventory of systems.Identifying and mitigating threats utilizing existing technologies. Working with other teams to mitigate identified vulnerabilities from identification to closure. Tracking and reporting mitigation efforts. Be familiar with the Plan of Action and Milestones in tracking, remediating, socializing, and getting them to completion.Working with other teams preparing, detecting, eradicating, and restoring operations in the event of incidents.Managing Plan of Action and Milestones for existing vulnerabilitiesWorking with relevant teams to ensure the restoration of systems and technologies in accordance with policy and based on business group needs.Interfacing with the Virtual Security Operations Center (V-SOC) and using deployed tools and services to ensure system and network monitoring is taking place in accordance with defined service levels, contracts, and established standards.This role requires flexibility and adaptability to meet the Security needs of the ITD. The individual must be able to support other areas of expertise within the security domain, such as but not limited to NIST Cybersecurity Framework implementation, Identity Access Management, Risk Management & Compliance, Risk Assessments, Training, Audit Support, and others.Please note that the Cybersecurity Analyst (Enterprise Supervising Technology Analyst) position is currently eligible for a hybrid telework schedule. The schedule for working remotely and onsite is subject to change.

    Salary Information: The final candidate’s qualifications and experience shall determine the actual salary. In addition to the starting salary, employees in the Enterprise Supervising Technology Analyst (ESTA) classification shall also receive an approximate five percent (5%) ongoing non-pensionable compensation pay.
    • Salary Range (including the 5% NPWI): $141,697.92 - $172,645.20
    The ESTA classification is represented by the City Association of Management Personnel (CAMP) bargaining unit.

    Minimum Qualifications

    Education and Experience
    A Bachelor’s Degree from an accredited college or university in a relevant field, AND four (4) years of progressively responsible professional/journey level experience, of which at least two (2) years of experience include lead technical work in development, implementation and maintenance of electronic business systems/solutions, or application development and/or support.

    Acceptable Substitution
    • Additional years of increasingly responsible directly related work experience may be substituted for education on a year-for-year basis up to two (2) years.
    • Completion of a Master's Degree in a relevant field from an accredited college or university may be substituted for one (1) year of the required two (2) years of experience which include lead technical work in development, implementation and maintenance of electronic business systems/solutions or application development and/or support.
    Required Licensing (such as driver’s license, certifications, etc.):
    • Possession of a valid State of California driver’s license may be required.
    • Certification as a Microsoft Certified Systems Engineer (MCSE) or equivalent certification from a professional organization acceptable to the City of San Jose may be required.
    Passing a San Jose Police Department (SJPD) background check is a condition of employment.

    Other Qualifications

    Competencies

    The ideal candidate will possess the following competencies, as demonstrated in past and current employment history. Desirable competencies for this position include:

    Job Expertise - Demonstrates knowledge of and experience with applicable professional/technical principles and practices and federal and state rules and regulations.
    • Breadth of expertise to enable managing major technology services, programs, and products across multiple departmental technology environments and ensuring cross-coordination between departments, including adherence to Citywide and departmental procedures/policies and federal and state rules and regulations.
    • Expertise in updating and/or optimizing the Incident Response (IR) plan on a yearly basis to ensure maximum effectiveness.
    • Expertise in Identity and Access Management using AD and Azure Entra
    • Expertise in handling incidents from identification to closure.
    • Highly skilled in updating and testing the Disaster Recovery Plan (DRP) on a yearly basis.
    • Ability to update and optimize the Threat & Vulnerability Management Plan on a yearly basis.
    • Strong experience in managing vulnerabilities from identification to closure.
    • Capability in overseeing aspects of a Virtual Security Operations Center and ensuring processes and procedures are followed.
    • Experience in working with patch assessment and vulnerability scanning technologies at scale/
    • Knowledge of application, network, and operating system security.
    • Hands-on experience with Linux patching.
    • Knowledge of vulnerability scoring systems (e.g. CVSSv3).
    • Experience with vulnerability scanning tools, dynamic scans, static scans, and penetration testing.
    • Experience in using monitoring tools.
    • 5+ years in a Vulnerability Management Plan is a plus. Knowing not only how to assess vulnerabilities but also prioritize and drive remediation activities.
    • Possession of a current (non-expired) Certified Information Systems Security Professional (CISSP) or equivalent certification is highly desirable.
    • Security architecture experience is a plus.
    Teamwork & Interpersonal Skills - Develops effective relationships with co-workers and supervisors by helping others accomplish tasks and using collaboration and conflict resolution skills.

    Project Management - Ensures support for projects and implements agency goals and strategic objectives.

    Analytical Thinking
    - Approaches a problem or situation by using a logical, systematic, sequential approach.

    Communication Skills - Effectively conveys information and expresses thoughts and facts clearly, orally and in writing; demonstrates effective use of listening skills; displays openness to other people’s ideas and thoughts.

    Selection Process

    The selection process will consist of an evaluation of the applicant's training and experience based on the application and responses to all the job-specific questions. You must answer all questions to be considered, or your application may be deemed incomplete and withheld from further consideration. Only those candidates whose backgrounds best match the position will be invited to proceed in the selection process. Additional phases of the selection process will consist of one or more interviews, one of which may include a practical and/or writing exercise.

    If you have questions about the duties of these positions, the selection process, or the hiring process, please contact Tram Nguyen at tramt.nguyen@sanjoseca.gov.

    Additional Information:

    Employment Eligibility: Federal law requires all employees to provide verification of their eligibility to work in this country. Please be informed that the City of San Jose will NOT sponsor, represent or sign any documents related to visa applications/transfers for H1-B or any other type of visa which requires an employer application.

    Please note that applications are currently not accepted through CalOpps or any other third party job board application system.

    This recruitment may be used to fill multiple positions in this, or other divisions or departments. If you are interested in employment in this classification, you should apply to ensure you are considered for additional opportunities that may utilize the applicants from this recruitment.

    Please allow adequate time to complete the application and submit before the deadline or the system may not save your application. If your online application was successfully submitted, you will receive an automatic confirmation email to the email address you provided. IF YOU DO NOT RECEIVE THE CONFIRMATION, please email CityCareers@sanjoseca.gov and we will research the status of your application.

    The City of San Jose offers a wide range of core health benefits including Medical, Dental, Vision, Employee Assistance Program, Life Insurance, Disability, and Savings Plans. Please visit the City's benefits pagefor detailed information on coverage, cost, and dependent coverage.

    For information on the City’s Retirement Plan(pension for full-time employees), please visit the Office of Retirement Services website. You will be able to view information based on different Sworn/Federated job classification.

    In additional to the benefits above, there is an additional perks siteto explore further benefits of working for the City of San Jose like paid leave, educational reimbursements, and holiday pay are specific to the job classification and union membership.
  • ABOUT THE COMPANY

    • City of San Jose
    • City of San Jose

    SanJoseCA.gov is the City of San José’s public website, offering information for our community 24/7. The City of San José is a large organization offering a wide variety of services and programs, and the website is intended to make it easier to find information about these services online.

    The purpose of the City website is to provide information of the City's choosing to the public in order to conduct the City’s business and promote the City's goals as guided by the City Council. The City’s website and the selection of sites to which any of them may be linked are not intended to serve as a forum for free discussion. Ample facilities for free expression are available both on the Internet and in the physical world. Instead, the City’s website is intended to serve the City’s need to make useful and practical information available to residents, businesses, and visitors which facilitates provision of a City service or furthers another specifically articulated purpose of the City.

    You can search our website by City servicesdepartment directory, or by topic. If you are looking for information on City policies and ordinances, try searching the City Council meetings, agendas and minutes database, the City Policy Manual or the Municipal Code. 

    The Mayor’s Office, the City Council, Boards and Commissions, and most City departments and offices are represented on SanJoseCA.gov. You can also find certain City departments and programs via separate websites for Mineta San José International AirportPolice DepartmentPublic Library and Happy Hollow Park & Zoo.

    You can find more information about City programs, services, and events through CivicCenterTV (Cable Channel 26), by subscribing to City News and Information, and by following us on FacebookGoogle+, and Twitter.

     

     

    Show more

MORE JOBS

  • Part-time Lecturer Pool for Department of Ethnic Studies AY 24-25

    • Hayward, California
    • Cal State University (CSU) East Bay
    • Jul 14, 2024
    • Education and Training
    • Parks and Recreation
  • SUPERVISOR 1, ASSOCIATE ENGINEER

    • Gardnerville, Nevada
    • State of Nevada
    • Oct 09, 2024
    • Full Time
    • Administrative Analysis and Research
    • Clerical and Administrative Support
    • Engineering
  • Environmental Health Specialist II

    • Concord, California
    • Contra Costa County, CA
    • Jul 14, 2024
    • Full Time
    • Environmental Services
    • Public Health
  • City of Santa Clara ARES/RACES - Volunteer

    • Santa Clara, California
    • City of Santa Clara, CA
    • Jul 14, 2024
    • non-profit management
  • SUPERVISOR 3, ASSOCIATE ENGINEER

    • Minden, Nevada
    • State of Nevada
    • Aug 17, 2024
    • Full Time
    • Administrative Analysis and Research
    • Clerical and Administrative Support
    • Engineering
  • Part-Time Lecturer Pool - Mathematics and Statistics

    • San Jose, California
    • Cal State University (CSU) San Jose
    • Jul 14, 2024
    • Education and Training
    • Parks and Recreation
Show More
Apply Now Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.
Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.